Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Systems Engineer, Secrets and Vault Engineering

$149.4k - $180k

Intercontinental Exchange Holdings, Inc.

Overview

Job Purpose

The Lead Systems Engineer joins our Secrets and Vault Engineering team within Identity and Access Management. The team is responsible for the platforms and services that protect secrets, certificates, encryption keys, and machine identity across the enterprise - a foundational layer that nearly every application at ICE depends on.

This is a hands-on engineering role with a strong design and architecture component. The ideal candidate has built or operated a HashiCorp Vault platform in production, writes clean automation code in Python and Ansible, and is comfortable working at the intersection of cryptography, identity, and platform engineering. You will help shape how the next generation of our secrets and machine-identity services are built, including emerging areas such as workload identity for AI and agentic workloads, policy-as-code, and proactive non-human identity governance.

We are looking for someone who can move fluidly between writing the code, designing the system, and explaining the trade-offs to stakeholders. You should be the kind of engineer who pushes back on a design when there's a better way, and who can mentor others through the why, not just the how.

What You'll Gain

This role offers direct, hands-on exposure to areas that few enterprise engineering teams are working on in earnest today:
  • Post-quantum cryptography (PQC). You'll be part of the team thinking through how an enterprise cryptography platform evolves to meet PQC readiness, including algorithm migration strategies, key lifecycle implications, and the operational realities of running hybrid classical/post-quantum systems at scale.
  • Agentic and AI workload identity. As AI agents and machine-driven workflows become first-class citizens in the enterprise, the question of how they authenticate, what they're allowed to do, and how that's governed is largely unsolved. You'll help build that foundation from the ground up - workload identity, dynamic credentials, policy enforcement, and proactive anomaly detection for non-human identities.
  • A platform being designed, not just operated. The team is actively shaping its next-generation architecture rather than maintaining a legacy stack. You'll have meaningful influence on design decisions and the chance to shape patterns the rest of the organization will adopt.
Responsibilities
  • Design, build, and maintain platform services for secrets management, certificate lifecycle, encryption key management, and policy enforcement.
  • Develop automation and tooling in Python and Ansible to streamline operations, enforce security controls, and reduce manual provisioning effort.
  • Contribute to a self-service model for application teams, including golden-pattern templates, declarative manifests, and approval workflows integrated with enterprise systems such as ServiceNow.
  • Collaborate with cross-functional teams (application, infrastructure, security, compliance) to translate requirements into reliable, well-governed services.
  • Help shape the team's roadmap in emerging areas including workload identity (SPIFFE/SPIRE), policy-as-code, and identity controls for AI and machine-driven workloads.
  • Participate in code reviews, design reviews, and architecture discussions; mentor and coach engineers earlier in their career.
  • Contribute to internal documentation, runbooks, and knowledge-sharing.
  • Participate in a light on-call rotation supporting the team's services.
Knowledge and Experience
  • 7+ years of infrastructure, platform, or systems engineering experience.
  • Production experience with HashiCorp Vault - secret engines, authentication methods, policies, and operational concerns. Architect-level depth is not required, but you should have shipped against it and understand how it fits into a broader platform.
  • Strong proficiency in Python and Shell scripting for automation and tooling.
  • Experience with Ansible for configuration management and orchestration.
  • Solid understanding of identity, authentication, and secure communication protocols (TLS, OAuth, OIDC, x.509).
  • Working knowledge of CI/CD tooling (Jenkins, GitHub Actions, GitLab CI, or similar) and Infrastructure-as-Code (Terraform preferred).
  • Experience designing and consuming RESTful APIs.
  • Strong fundamentals in Linux systems.
  • Demonstrated ability to write production-quality code, communicate design trade-offs clearly, and collaborate across teams.
Preferred Knowledge and Experience
  • Bachelor's degree in Computer Science, Engineering, or related field.
  • Experience building or contributing to a self-service Vault, secrets, or cryptography platform.
  • Familiarity with SPIFFE/SPIRE or other workload identity frameworks.
  • Familiarity with policy-as-code tooling such as Open Policy Agent (OPA) or HashiCorp Sentinel.
  • Exposure to AI/ML infrastructure or interest in identity controls for AI and agentic workloads.
  • Awareness of post-quantum cryptography standards (NIST PQC, hybrid key exchange) and their operational implications.
  • Experience with cloud platforms (AWS, GCP, or hybrid environments) and cloud-native secrets services such as AWS Secrets Manager or KMS.
  • Exposure to container platforms (Docker, Kubernetes, OpenShift).
  • Understanding of threat modeling, secrets rotation, secret-zero patterns, and zero trust architectures.
  • Experience in fintech, financial services, mortgage technology, or other regulated and security-sensitive domains.

New York Base Salary Range

The expected base salary for this role, if located in New York, is between $149,400 - 180,000 USD. The base salary range does not include Intercontinental Exchange's incentive compensation. While we provide this range as general guidance, at ICE we compensate employees based on the skillset and experience of the individual. Regular full-time ICE employees are eligible for a suite of competitive employee benefits, including healthcare coverage (medical, dental and vision), a 401(k) plan, life insurance, time off, and paid leave for qualifying circumstances.


#LI-SH3

#LI-ONSITE

-

Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.
Vacancy posted 20 days ago
Similar jobs that could be interesting for youBased on the Lead Systems Engineer, Secrets and Vault Engineering in Jacksonville, FL vacancy
  •  ...Stellar Group Inc, based in Plummers, Florida, is seeking a Senior Mechanical Engineer to design mechanical systems for food processing plants and warehouses. This role involves leading projects from design to construction, requiring extensive technical knowledge and leadership... 
    Suggested

    Stellar

    Jacksonville, FL
    11 hours ago
  •  ...Watershed Security, based in Jacksonville, FL, is seeking a Systems Security Engineer. This position focuses on managing and securing a mission-...  ...experience in systems administration and must possess a DoD Secret security clearance. Competitive compensation and benefits,... 
    Suggested

    Watershed Security

    Jacksonville, FL
    1 day ago
  •  ...Senior Navy Combat System Expert ESN is looking for Senior Navy Combat System experts...  ...individuals to provide technical and engineering support for the planning, execution and...  ...varying durations. Clearance Required: Secret Multiple Positions and locations: San... 
    Suggested

    Fullscope

    Jacksonville, FL
    2 days ago
  •  ...Technical Lead, Forward Deployed Engineering Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services...  ...: Rapidly build and deploy end-to-end AI systems as part of a pod of elite, AI-native full-stack engineers... 
    Suggested
    H1b

    Kpmg India

    Jacksonville, FL
    2 days ago
  •  ...Epsilon Systems Solutions, Inc. is seeking a full-time Electronic Technician VI – Combat...  ...Systems Satellite Communications (SATCOM) Engineering Technician in Mayport, FL. Summary: The...  ..., 731A; others may apply. Possess a DOD Secret clearance. ADA Notations Tasks performed... 
    Suggested
    Full time
    Work at office

    Epsilon Systems

    Jacksonville, FL
    11 hours ago
  • $142.6k - $261.5k

     ...data scientists, designers, and software engineers enable our clients to solve their most complex...  ...Design and Development, you will lead the effective management and delivery of...  ...and testing practices. Knowledgeable in system development lifecycle and technology integration... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Jacksonville, FL
    4 days ago
  •  ...Site Reliability Engineer We are FIS. Our technology...  ...solutions. Our industry-leading offering includes an...  ...Strong experience in Linux systems and networking. ~...  ..., KeyFactor, HashiCorp Vault, CyberArk, SNOW, Jira,...  ...PostgreSQL DB, EC2, EKS, KMS, Secrets Manager (Stores... 
    Work at office

    Fisglobal

    Jacksonville, FL
    4 days ago
  •  ...Lead and manage Citi’s Active Directory and Hybrid Entra ID environment, ensuring secure...  ...on operations, incident resolution, engineering collaboration, and continuous improvement...  ...teams to enforce identity governance and system standards Identify and implement process... 
    Permanent employment

    Veriipro

    Jacksonville, FL
    4 days ago
  •  ...Role CISO Technical Lead – Directory Services Engineer (AD, DS, LDAP) Responsibilities Effectively manage Citi’s Active Directory and Hybrid Entra...  ...major incidents Partner closely with risk teams to build systemic processes that help maintain Citi’s system desired state... 
    Permanent employment

    TechAxis

    Jacksonville, FL
    3 days ago
  • $93k - $139k

     ...Remote/Hybrid Job Overview ABOUT THE ROLE This role will be the lead technical expert and own all integrations for Workday Financials and related matters. The Senior Financial Systems Engineer will partner closely with various stakeholders to research, design,... 
    Remote work
    Home office

    Relativity

    Jacksonville, FL
    3 days ago
  •  ...About Our Client Our client, the leading material handling provider in the Southeast, has helped customers in Florida and Georgia...  ...The company's core business is forklifts and service, while the systems division focuses on full warehouse design and installation with... 
    Work at office
    Local area
    Remote work
    Relocation package
    3 days per week

    Naviga

    Jacksonville, FL
    2 days ago
  • $99k - $232k

     ...At PwC, our people in data and analytics engineering focus on leveraging advanced...  ...and optimising algorithms, models, and systems to enable intelligent decision-making and...  ...success of our Firm. You are expected to lead with integrity and authenticity, articulating... 
    Full time
    H1b

    PwC

    Jacksonville, FL
    3 days ago
  •  ...System Engineer The System Engineer defines the specification, the architecture, and the interfaces of the product to satisfy customer requirements. They are responsible for performance/technical requirements of the product and their implementation into sub-systems.... 

    Pinnacle Professional Services

    Jacksonville, FL
    1 day ago
  •  ...Job Title :- Systems Engineer Duration :- 8+ months Location :- Hybrid ( 2-3 days per week minimum Jacksonville, FL) *Candidates must be local to Jacksonville 2-3 days per week minimum (will have to come onsite to build machines with SCCM) Description... 
    Work experience placement
    Local area
    2 days per week
    3 days per week

    Ruri Software Technologies LLC

    Jacksonville, FL
    1 day ago
  • $66.3k - $78k

     ...OPEN UNTIL FILLED SALARY: $66,300.00 - $78,000.00 - ENTRY SALARY RANGE FLSA: NON-EXEMPT WHAT YOU'LL DO The Systems Engineer IV ensures the stability, integrity, and efficient operation and delivery of the information systems and college-wide server... 
    Work experience placement
    Work at office
    Local area
    Immediate start

    Florida State College at Jacksonville

    Jacksonville, FL
    2 days ago
  •  ...Job Title: Sr. Systems Engineer Duration: 8+ months Location: Jacksonville, FL Description: Senior IT Systems Engineers are responsible...  ...are assigned to multiple complex systems/applications. They lead initiatives, oversee work results, provide training, and serve... 
    Work experience placement

    Ruri Software Technologies LLC

    Jacksonville, FL
    23 hours ago
  •  ...company, is a highly innovative surveying and engineering company with over 60 years of industry...  ...expanding team. About The Role: As a Lead Engineer, you will provide leadership...  ...extra high‑voltage (EHV) overhead utility systems. Some of the main responsibilities will... 
    Full time
    Temporary work
    For subcontractor

    ESP Associates

    Jacksonville, FL
    4 days ago
  •  ...Foth is a 100% member-owned science and engineering consulting firm headquartered in Wisconsin, with over 85 years of success. Our 750 members...  ..., and forward-thinkers. We're currently on the lookout for a Lead Coastal Engineer who's not only passionate about coastal and... 
    Contract work
    Remote work
    Flexible hours

    Foth

    Jacksonville, FL
    11 hours ago
  • $124k - $280k

     ...At PwC, our people in data and analytics engineering focus on leveraging advanced...  ...and optimising algorithms, models, and systems to enable intelligent decision-making and...  ...knowledge, and experiences you need to lead and deliver value at this level include... 
    Full time
    H1b

    PwC

    Jacksonville, FL
    1 day ago
  •  ...looking for a Development Manager / Technical Lead to join our IT team. As part of the IT...  ...a row, Moffatt & Nichol is Ranked #1 in Engineering News-Record for Marine & Port Facilities...  ..., Software Engineering, Information Systems, or a related field, or an equivalent combination... 
    For contractors
    Worldwide

    Moffatt & Nichol

    Jacksonville, FL
    4 days ago
  •  ...contractor in Mayport, FL is seeking a Network Engineer to deliver technical support for shipboard information systems. The role involves configuring and troubleshooting...  ...skills, and the ability to maintain a Secret clearance. This position offers a competitive salary... 
    For contractors

    JSL TECHNOLOGIES INCORPORATED

    Atlantic Beach, FL
    11 hours ago
  • $131k - $174k

     ...applications' database and platforms. Aligning technology initiatives with business goals and enterprise architecture standards. Lead, coach, and develop database teams to drive performance, accountability, and continuous professional growth. Oversee planning and... 
    Permanent employment
    Contract work
    For contractors
    Remote work
    Visa sponsorship
    Work visa
    Relocation package
    Weekend work

    GE Aerospace

    Jacksonville, FL
    1 day ago
  •  ...A leading aerospace company is seeking a Lead Technical Program Manager in Jacksonville, Florida. This role requires at least 8 years in technical program management, focusing on product development in a collaborative environment. The ideal candidate will demonstrate strong... 
    Remote work

    Otto Aviation

    Jacksonville, FL
    2 days ago
  • $101.9k - $175k

     ...that help learners achieve their goals and lead a choice-filled life. Our culture values...  ...role as Technology Lead, Experience Engineering within our Digital organization, you are...  ...frontend solutions, including component systems Contribute directly to critical development... 
    Work experience placement
    Local area

    Cengage Group

    Jacksonville, FL
    4 days ago
  • $101.9k - $163k

     ...that help learners achieve their goals and lead a choice-filled life. Our culture...  ...What you'll do here: As the Software Engineering Manager, you will lead a team dedicated...  ...or monolithic architectures, migrating systems to modular, cloud-native platforms, and... 
    Work experience placement
    Local area
    Remote work
    Worldwide

    Cengage Group

    Jacksonville, FL
    2 days ago
  •  ...A leading engineering firm in Jacksonville is looking for a Mechanical Engineer specializing in plumbing system design for food processing facilities. Responsibilities include project-based collaboration with various engineering disciplines, conducting assessments, and... 

    The Stellar Group

    Jacksonville, FL
    4 days ago
  •  ...seamless, high-performance user experiences, as well as site reliability engineering initiatives, leveraging cloud-native technologies and methodologies to create robust, high-performance systems. The Lead Engineer, Software Development will utilize their extensive... 
    Work experience placement

    Intercontinental Exchange

    Jacksonville, FL
    3 days ago
  • $124k - $280k

     ...At PwC, our people in data and analytics engineering focus on leveraging advanced...  ...and optimising algorithms, models, and systems to enable intelligent decision-making and...  ...knowledge, and experiences you need to lead and deliver value at this level include... 
    Full time
    H1b

    PwC

    Jacksonville, FL
    3 days ago
  •  ...Software Systems Engineer III We are seeking an experienced Software Systems Engineer III to join our cloud data engineering team. This senior...  ...data solutions using modern cloud technologies. You will lead the hands-on design and development of complex data pipelines,... 

    ECA Staffing Solutions, Inc.

    Jacksonville, FL
    11 hours ago
  •  ...Paysafe Paysafe is a leading payments platform with an...  ...Infrastructure Platform Engineering team is a new initiative...  ...applications, and debug complex systems, enabling you to...  ...Certificate Lifecycle Management, Secrets Management, Azure Key Vault, AWS Certificate Manager,... 
    Work at office
    Remote work
    2 days per week

    PAYSAFE

    Jacksonville, FL
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Systems Engineer, Secrets and Vault Engineering. Be the first to apply!