- Robust experience in IAM and Secrets Management across Azure, AWS and on-prem environments.
- Hands-on with Azure Entra ID, Azure Managed Identity, AWS IAM, Roles, Policies, STS and OIDC .
- Experience with 2+ Secrets Management tools such as Azure Key Vault, AWS Secrets Manager, HashiCorp Vault, CyberArk, Akeyless, etc.
- Strong knowledge of CyberArk PAM, workload identity, federation, RBAC/ABAC and least privilege .
- Experience with Kubernetes, CI/CD, DevSecOps and cloud security .
- Hands-on with Terraform, Azure Policy, AWS SCP/Organizations, OPA or similar tools.
- Experience with secret scanning tools such as GitHub Advanced Security, GitGuardian, Gitleaks or TruffleHog.
- Ability to define security architecture, standards, governance, migration plans and onboarding processes .
- Strong stakeholder management across security, cloud, infrastructure and application teams.
- Enterprise experience in regulated industries is preferred.