UBS→
IT Security Consultant at UBS in Location not listed
Mid LevelOn-siteNot specified
Job Description
You will work as a Technical Security Consultant supporting a time-critical audit and risk remediation program within ISE Security. A key objective of this role is to strengthen enterprise security posture by driving integration of application and infrastructure credentials into centralized secrets management (HashiCorp Vault), ensuring robust governance of Non-Personal Technical Accounts (NPTAs) and compliance with regulatory controls.
Key Responsibilities
• IAM / PAM & Security Integration
- Drive implementation of Identity & Access Management (IAM) and Privileged Access Management (PAM) controls across applications and platforms.
- Ensure secure onboarding of applications to enterprise secrets management (HashiCorp Vault) aligned with AC5 compliance requirements.
- Collaborate with platform owners, software managers, and governance teams to enforce secure authentication, authorization, and access policies.
• Secrets Management & Vault Adoption
- Lead and support integration of applications with HashiCorp Vault, including:
- Credential onboarding and secure storage
- Authentication and authorization setup
- Automated password rotation and secrets lifecycle management
- Promote adoption of centralized credential management practices across teams.
• Risk, Compliance & Governance
- Support audit and risk remediation initiatives, ensuring alignment with AC5 and regulatory frameworks, ECB, CBEST, MERs etc..
- Work closely with risk, governance, and KPIs owners to ensure security control implementation and tracking.
- Investigate and resolve issues related to privileged access and credential exposure risks.
• Automation & Engineering Enablement
- Enable automation-driven onboarding of applications to Vault and PAM solutions.
- Identify opportunities to improve efficiency in credential management processes through scripting and tooling.
• User Support & Stakeholder Management
- Provide L2/L3 support for AC5 compliance and Vault onboarding issues via ServiceNow (or equivalent ticketing tools).
- Act as a liaison between application teams, infrastructure teams, and security stakeholders.
- Manage communication during audits and compliance reviews.
• Documentation & Knowledge Sharing
- Create and maintain technical documentation, onboarding guides, and best practices for IAM/PAM/Vault usage.
- Capture lessons learned and standardize processes for broader team adoption.
• Continuous Learning & Adaptability
- Adapt quickly to new tools, technologies, and evolving security requirements within the program.
- Contribute to continuous improvement of IAM, PAM, and secrets management capabilities.
Key Responsibilities
• IAM / PAM & Security Integration
- Drive implementation of Identity & Access Management (IAM) and Privileged Access Management (PAM) controls across applications and platforms.
- Ensure secure onboarding of applications to enterprise secrets management (HashiCorp Vault) aligned with AC5 compliance requirements.
- Collaborate with platform owners, software managers, and governance teams to enforce secure authentication, authorization, and access policies.
• Secrets Management & Vault Adoption
- Lead and support integration of applications with HashiCorp Vault, including:
- Credential onboarding and secure storage
- Authentication and authorization setup
- Automated password rotation and secrets lifecycle management
- Promote adoption of centralized credential management practices across teams.
• Risk, Compliance & Governance
- Support audit and risk remediation initiatives, ensuring alignment with AC5 and regulatory frameworks, ECB, CBEST, MERs etc..
- Work closely with risk, governance, and KPIs owners to ensure security control implementation and tracking.
- Investigate and resolve issues related to privileged access and credential exposure risks.
• Automation & Engineering Enablement
- Enable automation-driven onboarding of applications to Vault and PAM solutions.
- Identify opportunities to improve efficiency in credential management processes through scripting and tooling.
• User Support & Stakeholder Management
- Provide L2/L3 support for AC5 compliance and Vault onboarding issues via ServiceNow (or equivalent ticketing tools).
- Act as a liaison between application teams, infrastructure teams, and security stakeholders.
- Manage communication during audits and compliance reviews.
• Documentation & Knowledge Sharing
- Create and maintain technical documentation, onboarding guides, and best practices for IAM/PAM/Vault usage.
- Capture lessons learned and standardize processes for broader team adoption.
• Continuous Learning & Adaptability
- Adapt quickly to new tools, technologies, and evolving security requirements within the program.
- Contribute to continuous improvement of IAM, PAM, and secrets management capabilities.