HCLTech
Posted 1w ago

Senior Technical Lead - Python, Oracle PL/SQL, Java (151557)

HCLTech
United States
OnsiteFull Time
Responsibilities
  • analyzing practices
  • identifying secrets
  • defining requirements
Requirements
  • Requires 5+ years in a similar role
  • 2+ years on IAM projects
  • Enterprise IT security analysis
  • Secrets and credentials expertise
  • IAM/PAM knowledge
  • Requirements engineering
  • Documentation, and English communication
Technical tools mentioned
CyberArkHashiCorp VaultAzure Key VaultAWS Secrets ManagerGCP Secret ManagerPythonOracle PL/SQLJava

Job description

Requisition ID 151557 - Posted 


Job Summary

IT Security Analyst – project: Secrets & Credential Management

Short Description

Supports the enterprise-wide implementation of the Secrets & Credential Management project by analyzing current-state processes, identifying security and control gaps, defining requirements, and driving the secure governance of technical and workforce secrets. Ensures that secrets such as passwords, SSH keys, API keys, certificates, tokens and non-personal credentials are identified, classified, documented and prepared for controlled lifecycle management in line with security, compliance and operational requirements.

Key Responsibilities

Tasks & Responsibilities

  • Conduct end-to-end analysis of existing secret and credential management practices across applications, infrastructure, platforms and operational processes.
  • Identify, classify and document technical and workforce secrets, including ownership, usage, storage location, criticality, lifecycle stage, access model and associated risks.
  • Assess current-state control weaknesses such as unmanaged SSH keys, hardcoded credentials, shared accounts, undocumented secret usage, insufficient rotation and weak auditability.
  • Define and document detailed functional and non-functional requirements for centralized secrets management capabilities.
  • Support the design of compliant lifecycle processes for creation, storage, access, usage, rotation, revocation, emergency access and decommissioning of secrets.
  • Analyze dependencies across systems, applications, service accounts, technical users and operational teams to support onboarding and migration planning.
  • Prepare clear and defensible security analysis deliverables, including gap assessments, process documentation, risk assessments, control requirements and remediation recommendations.
  • Facilitate and document workshops with technical, operational and business stakeholders to gather requirements, validate findings and resolve ambiguities.
  • Contribute to tool evaluation activities by translating operational and security needs into concrete assessment criteria and use cases.
  • Validate whether proposed solution approaches meet defined security, compliance and operational expectations.
  • Support reporting and governance activities by maintaining traceability of findings, risks, requirements, remediation items and implementation dependencies.
  • Ensure analysis outputs are audit-ready, internally consistent and suitable for decision-making at project and stakeholder governance level.
  • Operations / Support Teams

Skill Requirements

Requirements

  • At least 5 years of experience in a similar position.
  • At least 2 years of experience in working with IAM projects.
  • Strong experience in IT security analysis, security requirements engineering, control assessment or security governance in complex enterprise environments.
  • Proven knowledge of secrets and credential types, including passwords, SSH keys, API keys, tokens, certificates, service accounts and privileged credentials.
  • Experience in analyzing IT processes, identifying control gaps and translating findings into implementable security requirements.
  • Strong understanding of IAM, PAM, least privilege, segregation of duties, auditability and secure access governance.
  • Ability to work across technical and non-technical stakeholder groups and drive structured analysis in ambiguous environments.
  • Strong documentation, workshop facilitation and communication skills in English.
  • Experience in regulated, global or highly controlled environments.

Other Requirements

Nice to Have

  • Experience with CyberArk, HashiCorp Vault, Azure Key Vault, AWS Secrets Manager, GCP Secret Manager or similar platforms.
  • Knowledge of ISO 27001, NIST, CIS Controls or enterprise security governance frameworks.
  • Experience in transformation or migration projects involving credential centralization and legacy cleanup.


About HCLTech

Global provider of information technology services and software consulting.

Similar jobs

IT Security Analyst roles
1d
Save
Mark Applied
Hide
Office of Cyber Security Senior IT Security Analyst (DoIT #10117004)
Santa Fe, New Mexico, United States
$36-$55/hr OnsiteFull Time, Temporary
New Mexico Children, Youth and Families Department
New Mexico Children, Youth and Families Department: Provides child protective, juvenile justice, and family support services.
3+ YOEBachelor's degree in a technical field and 3 years of IT security or compliance experience, or equivalent combination. Requires current ID or driver's license and background investigation.
NIST 800-53, NIST CSF 2.0, Securin Panther, ASM, KnowBe4, Microsoft Power Platform, Microsoft Office 365, Microsoft Defender, Azure Active Directory, Nessus Tenable, Cisco Security Solutions, SIEM
2d
Save
Mark Applied
Hide
IT Security Analyst
San Francisco, California, United States
$120k-$175k/yr HybridFull Time
University of California, San Francisco
University of California, San Francisco: Public research university dedicated to health sciences and education.
5+ YOEBachelor’s degree or equivalent experience, 5+ years of related experience, cybersecurity expertise, project management, cross-functional collaboration, and knowledge of NIST, HIPAA, and FERPA.
NIST, HIPAA, FERPA, phishing simulation tools, e-learning platforms
2d
Save
Mark Applied
Hide
IT - Analyst II, Security Systems
Nashville, Tennessee, United States
OnsiteFull Time
ArchWell Health
ArchWell Health: Provides primary care services specifically for senior citizens.
4+ YOEBachelor’s degree or equivalent experience and 4+ years in cybersecurity, security operations, incident response, vulnerability management, threat hunting, or related information security functions.
SIEM, EDR/XDR, Active Directory, Entra ID, Windows 10, Windows 11, Windows Server, Microsoft 365, Azure, Defender, Sentinel, Intune, Conditional Access, MDM, Microsoft Defender XDR, Defender for Cloud, KQL, DNS, DHCP, TCP/IP, Meraki, LAN/WAN
6d
Save
Mark Applied
Hide
IT Security Analyst
Concord, New Hampshire, United States
$80k-$105k/yr OnsiteFull Time
Riverbend Community Mental Health
Riverbend Community Mental Health: Provides behavioral health and addiction treatment services.
3+ YOEBachelor's degree in cybersecurity, IT, computer science, or related field required unless substituted by experience; 3–5 years in information security or related IT disciplines; experience with enterprise security, incident response, and endpoint/mobile security.
Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), antivirus, Mobile Device Management (MDM), Mobile Application Management (MAM), firewalls, VPNs, Intrusion Detection System (IDS), Intrusion Prevention System (IPS), Multi-Factor Authentication (MFA), Privileged Access Management (PAM)
1w
Save
Mark Applied
Hide
IT Security Analyst
Baton Rouge or Livingston or San Marcos or Duluth
OnsiteFull Time
Epic Piping
Epic Piping: Provider of turn-key industrial pipe fabrication and distribution services.
5+ YOERequires 5+ years in information security, incident response, vulnerability assessment, firewalls, SIEM, Windows security, Microsoft 365/Azure, AI security, and cybersecurity frameworks.
Windows, Windows Server, SIEM, Arctic Wolf, Managed Detection and Response (MDR), Sophos, Microsoft 365, Microsoft Azure, Cisco Meraki, Fortinet FortiGate, VPN, Microsoft Copilot, Microsoft 365 Copilot, Azure AI, Microsoft Purview, Data Loss Prevention (DLP), NIST Cybersecurity Framework, CIS Controls, ISO 27001, NIST AI Risk Management Framework (AI RMF), ISO/IEC 42001
1w
Save
Mark Applied
Hide
Security Sr Analyst (IT)
New Jersey, United States
$70k-$106k/yr RemoteFull Time
DaVita
DaVitaNYSE: DVA: Provides kidney dialysis and integrated chronic disease management services.
3+ YOERequires a high school diploma or equivalent, three years of healthcare reimbursement experience preferred, insurance and coordination-of-benefits knowledge preferred, and proficiency in Microsoft Word, Excel, and Outlook.
Microsoft Word, Microsoft Excel, Microsoft Outlook
1w
Save
Mark Applied
Hide
IT Security Analyst
Elkhart, Indiana, United States
OnsiteFull Time
Patrick Industries
Patrick IndustriesNASDAQ: PATK: Supplies manufactured components to RV, marine, and housing industries.
3+ YOEAssociate degree in cybersecurity, information technology, or related field, or equivalent experience; 3+ years of IT cybersecurity experience; networking knowledge and familiarity with security tools.
SIEM, XDR, IDS/IPS, Microsoft Sentinel, Splunk, Logscale, MITRE ATT&CK, Python, PowerShell, Microsoft Azure, AWS, GCP, Claroty, Dragos, Nozomi Networks, Tenable.ot, TCP/IP, DNS, Modbus, DNP3, OPC-UA, EtherNet/IP
1w
Save
Mark Applied
Hide
IT Security Analyst
Mobile, Alabama, United States
OnsiteFull Time
Infirmary Health
Infirmary Health: Largest non-profit healthcare provider in Alabama.
4+ YOEBachelor's degree in computing or related field, or four of the last six years in IT security; knowledge of security practices and strong oral and written communication skills.