DISTINGUISHED ENGINEER, PLATFORM SECURITY ENGINEERING- SECRETS MANAGEMENT (REMOTE)

Geico Insurance
MARTINS ADD, MD, United States
$130K-$300K a year
Remote
Full-time

As a Distinguished Engineer, you will collaborate with our Sr Staff, Staff, and Sr. Engineers to innovate and construct new systems, enhance existing ones, and discover fresh opportunities to apply your specialized knowledge in Secrets Management to resolve critical issues.

You will spearhead the strategy and execution of a technical roadmap that accelerates product delivery and unlocks new engineering capabilities.

Your leadership will be crucial in the design, implementation, and maintenance of a robust Secrets Management platform, ensuring the protection of sensitive data throughout the organization.

Position Responsibilities

  • Lead the development and execution of Secrets Management tools, platforms, and strategies across the enterprise
  • Ensure the quality, usability, and performance of the Secrets Management solutions including ensuring high availability, disaster recovery, and auditable logging
  • Influence and educate leadership on the importance of secure Secrets Management practices
  • Share best practices and improve processes for Secrets management within and across teams
  • Manage the Secret lifecycle efficiently, including static, dynamic secrets, and rotation
  • Stay updated on emerging trends in cryptography and apply this knowledge to enhance data protection strategies
  • Provide technical guidance and mentorship, fostering a culture of innovation and continuous improvement
  • Collaborate with cross-functional teams to integrate Secrets Management solutions seamlessly with organizational goals
  • Build resilient and scalable Secrets Management architectures, driving innovation and cost efficiency

Qualifications

  • Strong understanding of security principles and secrets management (e.g., HashiCorp Vault, Azure Key Vault, AWS Secrets Manager, GCP Secret Manager, Doppler, CyberArk, Akeyless)
  • Demonstrated experience in designing and implementing resilient, scalable, and efficient secrets management solutions
  • Strong software engineering skills (experience with Go preferred)
  • Experience with PostgreSQL including its native replication mechanisms
  • Strong problem-solving abilities with a proactive approach to security risk mitigation
  • Strong expertise with site reliability engineering practices and operational excellence - Implementing and utilizing infrastructure observability and monitoring tools (Grafana, Prometheus, OpenTelemetry, eBPF)
  • Building and evolving CI / CD tools and pipelines (Bazel, Terraform, Argo CD / Workflows / Rollouts)
  • Excellent communication skills for conveying technical concepts to diverse stakeholder
  • Strong expertise with Docker and Kubernetes
  • Knowledge of industry standards and regulations related to Secrets Management, Cryptography, Tokenization, PKI and digital certificates
  • Ability to lead and execute projects from conception to deployment
  • Familiar with HSMs and key management practices
  • Familiar with Secret Detection capabilities and tools such as Trufflehog
  • Familiar with Identity & Access Management & HashiCorp Boundary
  • Desirable certifications : CISA, CISSP, CISM

Experience

  • 10+ years in security engineering with a focus on Secrets Management, cryptography, PKI and Certificate Management, and security engineering
  • 8+ years in security, encryption, architecture, and design
  • 6+ years with open-source frameworks related to security
  • 4+ years with cloud services and their security aspects, preferably with experience in AWS, GCP, Azure.

Education

Bachelor's degree in computer science, Information Systems, or equivalent with a focus on security and cryptography

Annual Salary

$130,000.00 - $300,000.00

The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate / annual salary to be offered to the selected candidate.

Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate's work experience, education and training, the work location as well as market and business considerations.

GEICO will consider sponsoring a new qualified applicant for employment authorization for this position.

Benefits :

As an Associate, you'll enjoy our Total Rewards Program* to help secure your financial future and preserve your health and well-being, including :

  • Premier Medical, Dental and Vision Insurance with no waiting period
  • Paid Vacation, Sick and Parental Leave
  • 401(k) Plan
  • Tuition Reimbursement
  • Paid Training and Licensures
  • Benefits may be different by location. Benefit eligibility requirements vary and may include length of service.

Coverage begins on the date of hire. Must enroll in New Hire Benefits within 30 days of the date of hire for coverage to take effect.

The equal employment opportunity policy of the GEICO Companies provides for a fair and equal employment opportunity for all associates and job applicants regardless of race, color, religious creed, national origin, ancestry, age, gender, pregnancy, sexual orientation, gender identity, marital status, familial status, disability or genetic information, in compliance with applicable federal, state and local law.

GEICO hires and promotes individuals solely on the basis of their qualifications for the job to be filled.

GEICO reasonably accommodates qualified individuals with disabilities to enable them to receive equal employment opportunity and / or perform the essential functions of the job, unless the accommodation would impose an undue hardship to the Company.

This applies to all applicants and associates. GEICO also provides a work environment in which each associate is able to be productive and work to the best of their ability.

We do not condone or tolerate an atmosphere of intimidation or harassment. We expect and require the cooperation of all associates in maintaining an atmosphere free from discrimination and harassment with mutual respect by and for all associates and applicants.

30+ days ago
Related jobs
Promoted
Geico - Government Employees Insurance Company
Martin's Additions, Maryland
Remote

Engineers to innovate and construct new systems, enhance existing ones, and discover fresh opportunities to apply your specialized knowledge in Secrets Management to Security Engineer, Engineer, Management, Security, Platform, Remote, Insurance, Technology. As a Distinguished Engineer, you will col...

Promoted
Aitopics
Bethesda, Maryland
Remote

Senior Security (AppSec) Engineer II, Remote. The Senior Security Engineer II will be responsible for designing, implementing, and maintaining security services that support our business. Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, ...

Promoted
Capital One
Rockville, Maryland
Remote

Distinguished Engineers will significantly impact our trajectory and devise clear roadmaps to deliver next generation technology solutions. Distinguished Engineers at Capital One are at the forefront of thought leadership with both deep technical knowledge and strong influencing skills. The person w...

GEICO
Chevy Chase, Maryland
Remote

Our Senior Engineer works with our Distinguished Engineer and Principal Engineers to innovate and build new systems, improve, and enhance existing systems as well as identify new opportunities to apply your knowledge to solve critical problems. The Cluster Management team is dedicated to realizing a...

Promoted
Capital One
Aspen Hill, Maryland
Remote

Distinguished Engineers will significantly impact our trajectory and devise clear roadmaps to deliver next generation technology solutions. This Distinguished Engineer role will have an opportunity to develop and drive the technology strategy supporting consumer experiences applying for a Capital On...

GEICO
Chevy Chase, Maryland
Remote

Our Staff Engineer works with our Distinguished Engineer and Sr. GEICO is seeking an experienced Staff Engineer with a passion for building high-performance, low maintenance, zero-downtime platforms, and applications. Develop and execute technical software development strategy for the Platform Engin...

Promoted
Capital One
Cabin John, Maryland
Remote

West Creek 4 (12074), United States of America, Richmond, VirginiaPlatform Engineer - Snowflake (Remote-Eligible)Do you enjoy working with data, have strong knowledge of SQL and want to work with the latest cloud technologies such as Snowflake and other AWS cloud technologies? In this role, you will...

GEICO
Chevy Chase, Maryland
Remote

Our Senior Manager is an engineering leader who works with the engineering staff to innovate and build new engineering solutions, improve, and enhance existing solutions as well as leverage engineering solutions to solve critical operational problems. The Cluster Management team’s mission is to brin...

CVS Health
Work from home, MD, US
Remote

Cloud Engineer will be a Technical Subject Matter Expert / Individual Contributor accountable for expertise and solution concept creation in the areas of cloud identity access management and authentication methods. Cloud Engineering, preferably in a senior capacity with expertise in Identity Access ...

Praxis Engineering
Laurel, Maryland

As an Information Systems Security Engineer (ISSE) at Praxis Engineering, you'll be at the forefront of safeguarding digital landscapes. With over 300 employees supporting more than 50 contracts, Praxis brings together world class engineers with proven engineering best practices, domain expertise, c...