Keeper Security is a leading cybersecurity company transforming security for people and organizations globally. They are seeking a Senior Customer Integration Engineer, Identity & Secrets to lead complex customer integrations and migrations for their Privileged Access Management and Secrets Manager solutions, partnering with various teams to implement secure identity and secrets-management patterns.
Responsibilities:
- Lead technical discovery and implementation planning for enterprise integrations and migrations involving Keeper PAM and Keeper Secrets Manager (KSM)
- Drive end-to-end migration engagements from legacy PAM and secrets solutions to Keeper, including environment assessment, migration planning, execution, validation, and cutover readiness
- Implement secure identity, credential, and secrets-management patterns for both human and non-human identities across customer environments (e.g., Active Directory, Entra ID/Okta, Kubernetes, CI/CD systems, cloud services)
- Conduct customer-facing workshops, architecture reviews, and technical planning sessions with stakeholders ranging from engineering teams to executive leadership
- Build and automate integration and migration workflows using scripting and APIs (e.g., Python, PowerShell, Bash) to improve reliability, speed, and repeatability
- Provide CI/CD and DevSecOps implementation guidance related to secrets injection, credential rotation, access controls, approvals, and policy-based guardrails
- Create and maintain reusable technical assets: reference integrations, templates, scripts, runbooks, troubleshooting guides, and best-practice playbooks for common ecosystems (Azure DevOps, GitHub Actions, GitLab CI, Jenkins, Terraform/Helm, Kubernetes)
- Serve as a technical advisor across pre-sales and post-sales activities for high-complexity opportunities, including evaluations and deployment planning (non-quota role)
- Resolve complex technical issues during implementations and migrations, acting as an escalation resource to ensure customer success
- Partner with Product, Engineering, and Support teams to communicate integration gaps, validate solutions, and improve product readiness based on field feedback
- Maintain clear documentation of technical decisions, deployment status, and outcomes to enable effective handoffs and organizational learning
Requirements:
- 6+ years of experience in a technical, customer-facing role such as Solutions Engineer, Migration Engineer, Professional Services, Solutions Architect, DevSecOps consultant, or Platform Engineering (customer-facing)
- Proven experience leading complex enterprise integrations or migrations end-to-end, including planning, execution, and stakeholder management
- Strong knowledge of identity and access concepts, including SSO/MFA, RBAC/ABAC, service accounts/service principals, and credential lifecycle management
- Hands-on experience with scripting and automation (Python and/or PowerShell strongly preferred) and comfort working with APIs to integrate systems and automate workflows
- Practical experience with cloud and modern infrastructure environments (AWS/Azure/GCP concepts), including Kubernetes and containerized deployments
- Ability to translate customer requirements into secure, scalable implementation plans and guide customers through technical tradeoffs
- Strong written and verbal communication skills, including the ability to explain complex technical concepts to both engineers and executive stakeholders
- Willingness to travel up to 10%
- Direct experience with PAM, secrets management, or privileged identity programs in enterprise environments
- Experience migrating from CyberArk, BeyondTrust, Delinea/Thycotic, or similar competing platforms
- Familiarity with CI/CD and GitOps patterns, including infrastructure-as-code and pipeline integration approaches (Terraform, Helm, GitHub Actions, GitLab CI, Azure DevOps, Jenkins)
- Experience implementing policy gates or automation controls in delivery workflows (approvals, policy checks, secure release patterns)
- Comfort supporting regulated or compliance-driven customer environments (SOC 2, ISO 27001, FedRAMP/NIST 800-53)
- Security or cloud certifications (optional; not required)