NeverHard

Platform Engineer - Hashicorp Vault at Swim Recruiting — NeverHard

Platform Engineer - Hashicorp Vault at Swim Recruiting in Greater Vancouver, British Columbia. Skills: Automation, CI/CD, Disaster Recovery, Gitlab, HashiCorp Vault. Apply on NeverHard.

Company
Swim Recruiting
Location
Greater Vancouver, British Columbia
Type
contract

Required skills:

6-month contract Platform Engineer – HashiCorp Vault role with a global enterprise organization Gitlab SME with demonstrated experience managing Gitlab SaaS or Gitlab Self-Managed Platforms. Global enterprise organization In office work environment with 4 days a week in office. What & Why: Our client is seeking a Senior Platform Engineer to own, operate, and evolve their enterprise secrets management platform at global scale. This is a highly specialized security engineering role centered on HashiCorp Vault Enterprise. Candidates without direct, hands-on Vault experience will not be considered. The role sits at the intersection of platform engineering, security, and compliance, integrating secrets management deeply into CI/CD pipelines, infrastructure-as-code workflows, and developer tooling across a large, complex engineering organization. In this role, you will implement dynamic secrets, lease-based access, and just-in-time credential workflows, build and enforce secure patterns for secret injection, rotation, and lifecycle management, and develop policy-as-code controls for access governance and compliance. You will be responsible for ensuring high availability, disaster recovery, and replication architecture across global Vault cluster infrastructure, and for driving adoption of secure secrets usage patterns through automation and self-service tooling. You will partner closely with security, audit, and engineering teams to maintain alignment with enterprise controls including SOX and zero-trust security standards. This role suits a platform or security engineer who brings deep Vault expertise, strong identity and access management fundamentals, and the ability to operate mission-critical infrastructure with precision and rigour. Who: This client is one of the most recognizable Canadian brands, a true Vancouver success story who has expanded globally. They are well known for their corporate culture and has won major awards for their accomplishments. They have invested majorly in technology and have had an incredibly successful past few years, including a major strategic acquisition. They have an all-star leadership team who keeps you accountable and provides support while still affording you tremendous autonomy. This role is primarily in office, 4 days a week on site in their downtown Vancouver office. You: You will bring the following education, skills and experience to the role: 8+ years in platform engineering, security engineering, or infrastructure, with mandatory hands-on experience operating HashiCorp Vault Enterprise including Policy, Auth Methods, Dynamic Secrets Mounts, custom plugin development, and global cluster management Deep knowledge of identity systems including OIDC, OAuth, IAM, and LDAP/AD, with experience designing enterprise authentication and authorization systems under zero-trust and least-privilege principles Experience integrating secrets management into CI/CD pipelines and Terraform workflows, with proficiency in automation and scripting using Python, Go, or the Vault CLI/API Strong understanding of compliance and audit controls such as SOX and enterprise security standards; AWS certifications are a significant asset Compensation: This role pays between $80-90 per hour . Next Steps: If the sound of this opportunity excites you, and you’re confident that it’s a good fit for your experience and career goals, then we’d love to hear from you! Please send your updated resume to us by applying to this posting and one of our awesome team of recruiters will be in touch.