Fidelity Investments

Principal Systems Analyst, Non-Human Identity and Secrets Management

Westlake, TX
HashiCorp Vault SPIFFE SPIRE AWS Azure Kubernetes X.509
Description

Principal Systems Analyst, Non‑Human Identity and Secrets Management

Location: Westlake, TX

Time Type: Full time

Job Description

Job Description:

Note: Fidelity will not provide immigration sponsorship for this position

Principal Systems Analyst, Non‑Human Identity and Secrets Management

The Role

The Principal Systems Analyst for Non-Interactive Secrets Management is the technical and analytical lead responsible for backlog refinement, requirements, and assisting in delivery of the firm’s non‑interactive secrets platforms. This role translates complex cybersecurity needs into clear requirements, structured user stories, measurable outcomes, and actionable acceptance criteria. With deep expertise in HashiCorp Vault and broader non‑human identity frameworks, including SPIFFE/SPIRE, workload identities, and service authentication patterns, this ensures our platform architecture and onboarding models are robust, secure, and scalable. The analyst drives the earliest and most critical stages of work: discovery, requirements definition, dependency mapping, and bringing clarity to ambiguous, cross-domain challenges.

The Expertise and Skills You Bring

  • Lead discovery, analysis requirements gathering.

  • Break large initiatives into well‑defined epics and user stories.

  • Serve as the team’s primary analytical authority, ensuring requirements are technically sound.

  • Define functional specifications, workflows, integration requirements, and service consumption models for secrets management.

  • Partner closely with engineers across the full delivery lifecycle, providing clarity and alignment from design through deployment.

  • Drive consistent onboarding and service patterns, self‑service enablement, and operational excellence.

  • Contribute to platform roadmaps, architecture discussions, control patterns, and capability evolution.

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or related field (Master’s preferred).

  • Required: 5 years’ experience in systems and technical analysis

  • Strong expertise in HashiCorp Vault and non‑interactive secrets workflows (policies, auth methods, KV, Transit, dynamic secrets, integrations).

  • Advanced analytical and problem‑solving skills with the ability to decompose complex, multi‑domain problems into clear, actionable components.

  • Proven experience writing high-quality user stories, acceptance criteria, requirements documents, and systems/process specifications.

  • Excellent communication and facilitation skills, capable of driving alignment across engineering, product, and business stakeholders.

  • Strong understanding of cloud infrastructure and identity (AWS IAM roles/policies, Azure Managed Identities, Kubernetes workload identities, service mesh patterns).

  • Knowledge of non-human identity and workload identity technologies such as SPIFFE/SPIRE, cloud workload identities, X.509/SVID issuance, and service authentication models.

Certifications:

Category:

Information Technology

Please be advised that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.

Fidelity Investments
Fidelity Investments

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say