Lead Systems Engineer, Secrets and Vault Engineering
$149.4k - $180kIntercontinental Exchange Holdings, Inc.
Overview Job Purpose The Lead Systems Engineer joins our Secrets and Vault Engineering team within Identity and Access Management. The team is responsible for the platforms and services that protect secrets, certificates, encryption keys, and machine identity across the enterprise - a foundational layer that nearly every application at ICE depends on. This is a hands-on engineering role with a strong design and architecture component. The ideal candidate has built or operated a HashiCorp Vault platform in production, writes clean automation code in Python and Ansible, and is comfortable working at the intersection of cryptography, identity, and platform engineering. You will help shape how the next generation of our secrets and machine-identity services are built, including emerging areas such as workload identity for AI and agentic workloads, policy-as-code, and proactive non-human identity governance. We are looking for someone who can move fluidly between writing the code, designing the system, and explaining the trade-offs to stakeholders. You should be the kind of engineer who pushes back on a design when there's a better way, and who can mentor others through the why, not just the how. What You'll Gain This role offers direct, hands-on exposure to areas that few enterprise engineering teams are working on in earnest today:
#LI-SH3 #LI-ONSITE - Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.
- Post-quantum cryptography (PQC). You'll be part of the team thinking through how an enterprise cryptography platform evolves to meet PQC readiness, including algorithm migration strategies, key lifecycle implications, and the operational realities of running hybrid classical/post-quantum systems at scale.
- Agentic and AI workload identity. As AI agents and machine-driven workflows become first-class citizens in the enterprise, the question of how they authenticate, what they're allowed to do, and how that's governed is largely unsolved. You'll help build that foundation from the ground up - workload identity, dynamic credentials, policy enforcement, and proactive anomaly detection for non-human identities.
- A platform being designed, not just operated. The team is actively shaping its next-generation architecture rather than maintaining a legacy stack. You'll have meaningful influence on design decisions and the chance to shape patterns the rest of the organization will adopt.
- Design, build, and maintain platform services for secrets management, certificate lifecycle, encryption key management, and policy enforcement.
- Develop automation and tooling in Python and Ansible to streamline operations, enforce security controls, and reduce manual provisioning effort.
- Contribute to a self-service model for application teams, including golden-pattern templates, declarative manifests, and approval workflows integrated with enterprise systems such as ServiceNow.
- Collaborate with cross-functional teams (application, infrastructure, security, compliance) to translate requirements into reliable, well-governed services.
- Help shape the team's roadmap in emerging areas including workload identity (SPIFFE/SPIRE), policy-as-code, and identity controls for AI and machine-driven workloads.
- Participate in code reviews, design reviews, and architecture discussions; mentor and coach engineers earlier in their career.
- Contribute to internal documentation, runbooks, and knowledge-sharing.
- Participate in a light on-call rotation supporting the team's services.
- 7+ years of infrastructure, platform, or systems engineering experience.
- Production experience with HashiCorp Vault - secret engines, authentication methods, policies, and operational concerns. Architect-level depth is not required, but you should have shipped against it and understand how it fits into a broader platform.
- Strong proficiency in Python and Shell scripting for automation and tooling.
- Experience with Ansible for configuration management and orchestration.
- Solid understanding of identity, authentication, and secure communication protocols (TLS, OAuth, OIDC, x.509).
- Working knowledge of CI/CD tooling (Jenkins, GitHub Actions, GitLab CI, or similar) and Infrastructure-as-Code (Terraform preferred).
- Experience designing and consuming RESTful APIs.
- Strong fundamentals in Linux systems.
- Demonstrated ability to write production-quality code, communicate design trade-offs clearly, and collaborate across teams.
- Bachelor's degree in Computer Science, Engineering, or related field.
- Experience building or contributing to a self-service Vault, secrets, or cryptography platform.
- Familiarity with SPIFFE/SPIRE or other workload identity frameworks.
- Familiarity with policy-as-code tooling such as Open Policy Agent (OPA) or HashiCorp Sentinel.
- Exposure to AI/ML infrastructure or interest in identity controls for AI and agentic workloads.
- Awareness of post-quantum cryptography standards (NIST PQC, hybrid key exchange) and their operational implications.
- Experience with cloud platforms (AWS, GCP, or hybrid environments) and cloud-native secrets services such as AWS Secrets Manager or KMS.
- Exposure to container platforms (Docker, Kubernetes, OpenShift).
- Understanding of threat modeling, secrets rotation, secret-zero patterns, and zero trust architectures.
- Experience in fintech, financial services, mortgage technology, or other regulated and security-sensitive domains.
#LI-SH3 #LI-ONSITE - Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.
Vacancy posted 20 days ago
Similar jobs that could be interesting for youBased on the Lead Systems Engineer, Secrets and Vault Engineering in Jacksonville, FL vacancy
- ...Stellar Group Inc, based in Plummers, Florida, is seeking a Senior Mechanical Engineer to design mechanical systems for food processing plants and warehouses. This role involves leading projects from design to construction, requiring extensive technical knowledge and leadership...Suggested
- ...Watershed Security, based in Jacksonville, FL, is seeking a Systems Security Engineer. This position focuses on managing and securing a mission-... ...experience in systems administration and must possess a DoD Secret security clearance. Competitive compensation and benefits,...Suggested
- ...Senior Navy Combat System Expert ESN is looking for Senior Navy Combat System experts... ...individuals to provide technical and engineering support for the planning, execution and... ...varying durations. Clearance Required: Secret Multiple Positions and locations: San...Suggested
- ...Technical Lead, Forward Deployed Engineering Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services... ...: Rapidly build and deploy end-to-end AI systems as part of a pod of elite, AI-native full-stack engineers...SuggestedH1b
- ...Epsilon Systems Solutions, Inc. is seeking a full-time Electronic Technician VI – Combat... ...Systems Satellite Communications (SATCOM) Engineering Technician in Mayport, FL. Summary: The... ..., 731A; others may apply. Possess a DOD Secret clearance. ADA Notations Tasks performed...SuggestedFull timeWork at office
$142.6k - $261.5k
...data scientists, designers, and software engineers enable our clients to solve their most complex... ...Design and Development, you will lead the effective management and delivery of... ...and testing practices. Knowledgeable in system development lifecycle and technology integration...Summer holidayFlexible hours- ...Site Reliability Engineer We are FIS. Our technology... ...solutions. Our industry-leading offering includes an... ...Strong experience in Linux systems and networking. ~... ..., KeyFactor, HashiCorp Vault, CyberArk, SNOW, Jira,... ...PostgreSQL DB, EC2, EKS, KMS, Secrets Manager (Stores...Work at office
- ...Lead and manage Citi’s Active Directory and Hybrid Entra ID environment, ensuring secure... ...on operations, incident resolution, engineering collaboration, and continuous improvement... ...teams to enforce identity governance and system standards Identify and implement process...Permanent employment
- ...Role CISO Technical Lead – Directory Services Engineer (AD, DS, LDAP) Responsibilities Effectively manage Citi’s Active Directory and Hybrid Entra... ...major incidents Partner closely with risk teams to build systemic processes that help maintain Citi’s system desired state...Permanent employment
$93k - $139k
...Remote/Hybrid Job Overview ABOUT THE ROLE This role will be the lead technical expert and own all integrations for Workday Financials and related matters. The Senior Financial Systems Engineer will partner closely with various stakeholders to research, design,...Remote workHome office- ...About Our Client Our client, the leading material handling provider in the Southeast, has helped customers in Florida and Georgia... ...The company's core business is forklifts and service, while the systems division focuses on full warehouse design and installation with...Work at officeLocal areaRemote workRelocation package3 days per week
$99k - $232k
...At PwC, our people in data and analytics engineering focus on leveraging advanced... ...and optimising algorithms, models, and systems to enable intelligent decision-making and... ...success of our Firm. You are expected to lead with integrity and authenticity, articulating...Full timeH1b- ...System Engineer The System Engineer defines the specification, the architecture, and the interfaces of the product to satisfy customer requirements. They are responsible for performance/technical requirements of the product and their implementation into sub-systems....
- ...Job Title :- Systems Engineer Duration :- 8+ months Location :- Hybrid ( 2-3 days per week minimum Jacksonville, FL) *Candidates must be local to Jacksonville 2-3 days per week minimum (will have to come onsite to build machines with SCCM) Description...Work experience placementLocal area2 days per week3 days per week
$66.3k - $78k
...OPEN UNTIL FILLED SALARY: $66,300.00 - $78,000.00 - ENTRY SALARY RANGE FLSA: NON-EXEMPT WHAT YOU'LL DO The Systems Engineer IV ensures the stability, integrity, and efficient operation and delivery of the information systems and college-wide server...Work experience placementWork at officeLocal areaImmediate start- ...Job Title: Sr. Systems Engineer Duration: 8+ months Location: Jacksonville, FL Description: Senior IT Systems Engineers are responsible... ...are assigned to multiple complex systems/applications. They lead initiatives, oversee work results, provide training, and serve...Work experience placement
- ...company, is a highly innovative surveying and engineering company with over 60 years of industry... ...expanding team. About The Role: As a Lead Engineer, you will provide leadership... ...extra high‑voltage (EHV) overhead utility systems. Some of the main responsibilities will...Full timeTemporary workFor subcontractor
- ...Foth is a 100% member-owned science and engineering consulting firm headquartered in Wisconsin, with over 85 years of success. Our 750 members... ..., and forward-thinkers. We're currently on the lookout for a Lead Coastal Engineer who's not only passionate about coastal and...Contract workRemote workFlexible hours
$124k - $280k
...At PwC, our people in data and analytics engineering focus on leveraging advanced... ...and optimising algorithms, models, and systems to enable intelligent decision-making and... ...knowledge, and experiences you need to lead and deliver value at this level include...Full timeH1b- ...looking for a Development Manager / Technical Lead to join our IT team. As part of the IT... ...a row, Moffatt & Nichol is Ranked #1 in Engineering News-Record for Marine & Port Facilities... ..., Software Engineering, Information Systems, or a related field, or an equivalent combination...For contractorsWorldwide
- ...contractor in Mayport, FL is seeking a Network Engineer to deliver technical support for shipboard information systems. The role involves configuring and troubleshooting... ...skills, and the ability to maintain a Secret clearance. This position offers a competitive salary...For contractors
$131k - $174k
...applications' database and platforms. Aligning technology initiatives with business goals and enterprise architecture standards. Lead, coach, and develop database teams to drive performance, accountability, and continuous professional growth. Oversee planning and...Permanent employmentContract workFor contractorsRemote workVisa sponsorshipWork visaRelocation packageWeekend work- ...A leading aerospace company is seeking a Lead Technical Program Manager in Jacksonville, Florida. This role requires at least 8 years in technical program management, focusing on product development in a collaborative environment. The ideal candidate will demonstrate strong...Remote work
$101.9k - $175k
...that help learners achieve their goals and lead a choice-filled life. Our culture values... ...role as Technology Lead, Experience Engineering within our Digital organization, you are... ...frontend solutions, including component systems Contribute directly to critical development...Work experience placementLocal area$101.9k - $163k
...that help learners achieve their goals and lead a choice-filled life. Our culture... ...What you'll do here: As the Software Engineering Manager, you will lead a team dedicated... ...or monolithic architectures, migrating systems to modular, cloud-native platforms, and...Work experience placementLocal areaRemote workWorldwide- ...A leading engineering firm in Jacksonville is looking for a Mechanical Engineer specializing in plumbing system design for food processing facilities. Responsibilities include project-based collaboration with various engineering disciplines, conducting assessments, and...
- ...seamless, high-performance user experiences, as well as site reliability engineering initiatives, leveraging cloud-native technologies and methodologies to create robust, high-performance systems. The Lead Engineer, Software Development will utilize their extensive...Work experience placement
$124k - $280k
...At PwC, our people in data and analytics engineering focus on leveraging advanced... ...and optimising algorithms, models, and systems to enable intelligent decision-making and... ...knowledge, and experiences you need to lead and deliver value at this level include...Full timeH1b- ...Software Systems Engineer III We are seeking an experienced Software Systems Engineer III to join our cloud data engineering team. This senior... ...data solutions using modern cloud technologies. You will lead the hands-on design and development of complex data pipelines,...
- ...Paysafe Paysafe is a leading payments platform with an... ...Infrastructure Platform Engineering team is a new initiative... ...applications, and debug complex systems, enabling you to... ...Certificate Lifecycle Management, Secrets Management, Azure Key Vault, AWS Certificate Manager,...Work at officeRemote work2 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Systems Engineer, Secrets and Vault Engineering. Be the first to apply!
Related searches
- lead operating engineer Jacksonville, FL
- lead engineer Jacksonville, FL
- application system engineer Jacksonville, FL
- senior windows systems engineer Jacksonville, FL
- system performance engineer Jacksonville, FL
- senior staff systems engineer Jacksonville, FL
- systems engineer Jacksonville, FL
- software system engineer Jacksonville, FL
- operations support system engineer Jacksonville, FL
- operating system engineer Jacksonville, FL

