For an IOS XE site-to-site VPN using pre-shared keys, the pre-shared key is placed in an ISAKMP keyring and that keyring is then associated with a specific peer inside an ISAKMP profile. The profile is what the router actually uses during IKE negotiation, so the keyring must be configured and referenced under the ISAKMP profile hierarchy.