Not OP but the last couple releases of Nomad have added quite a few QoL features without having to reach for/or setup Consul or Vault depending on your needs. At least in regard to basic service discovery and secrets management.
I'm unsure if something like open policy agent can directly work with the orchestrator and may have to be at the application level.