API Risk Management Consultant responsible for managing the API key lifecycle securely and compliantly. Collaborating across teams to ensure seamless integration and access control of API credentials.
Responsibilities
Define and implement the strategy for API key rotation, expiration, and revocation.
Collaborate with product, security, and engineering teams to align API key policies with business and compliance requirements.
Conduct risk assessments and define access scopes for different API consumers.
Proactively monitor applications for non-compliant APIs.
Regularly review API key compliance and rotate keys as needed.
Ensure compliance with data protection regulations (e.g., PCI DSS).
Alert and notify users about upcoming key rotations and compliance requirements.
Create and maintain comprehensive documentation for API key usage, lifecycle policies, and integration guides.
Provide support to internal teams and external partners on API key-related issues.
Requirements
Bachelor's degree in computer science, Information Security, or related field.
3+ years of experience in API management, identity and access management (IAM)
Strong understanding of API lifecycle stages and key management tools (e.g., AWS Secrets Manager, HashiCorp Vault).
Experience with API gateways (e.g., Apigee, AWS API Gateway).
Excellent problem-solving, communication, and documentation skills.
Benefits
Hybrid or remote work options
Cross-functional collaboration with engineering, product, and security teams
Occasional travel for conferences or team meetings
Personnel Security Specialist leading intake operations at PSI. Focused on case coordination, quality assurance, and team training for security suitability tasks.
Security Coordinator overseeing supervision and training of security personnel for BronxWorks' homeless services programs. Ensuring compliance, safety, and coordination with social services directors in Bronx area.
Part - Time Security Officer safeguarding personnel and property at Kaman Air Vehicles. Providing access control, monitoring systems, and responding to incidents in Bloomfield, CT.
Security Officer responsible for maintaining a safe environment for clients and employees. Enforcing policies and responding to emergencies at the client's site.
Senior Security Advisor enhancing security measures to align with corporate objectives at Desjardins. Leading development of strategic initiatives and overseeing best practices in security.
Controls Professional assessing internal control frameworks at Barclays, improving control effectiveness and managing risks to ensure compliance with regulations.
Senior Information Security Engineer at Wells Fargo investigating insider threats and strengthening cybersecurity measures. Conducting advanced investigations and collaborating with cyber teams to mitigate risks.
Staff Product Manager overseeing enterprise security product strategy for Tenable. Collaborating with various teams to deliver customer - focused solutions and product features.
Information Systems Security Officer managing operational security posture for information systems at GDIT. Collaborating closely with ISSM and ISO, handling security aspects, and ensuring compliance with security standards.
Program Security Representative providing multi - discipline security support for Special Access Programs. Ensuring compliance, developing policies, and conducting security assessments in a military context.