Quick Overview
Seniority
Mid Senior
Work mode
On Site
Location
Irving, TX, United States
Posted
Yesterday
Job Description
Our client is seeking a fully onsite PKI Engineer for a 12+ month contract in Irving, TX. No C2C!
Required
Day to Day
Required
- Bachelor's degree in IT, Computer Science, Cybersecurity, or related field (or equivalent experience).
- Security+, CISSP, GSEC, or equivalent security certifications.
- Microsoft security or identity certifications preferred.
- Experience with Azure, AWS, or Google Cloud Platform certificate management services.
- Knowledge of Zero Trust principles and modern authentication technologies.
- 3-5 years of PKI engineering, information security, or infrastructure security experience.
- Experience managing Microsoft Active Directory Certificate Services (AD CS) or equivalent PKI platforms.
- Strong understanding of PKI, certificate lifecycle management, SSL/TLS, X.509 certificates, and cryptographic principles.
- Experience with certificate enrollment, issuance, renewal, revocation, and validation processes.
- Knowledge of HSMs and cryptographic key management.
- Strong troubleshooting, analytical, and documentation skills.
- Experience with PowerShell or other automation/scripting technologies.
Day to Day
- PKI Infrastructure Administration: Manage and maintain enterprise PKI platforms, including Certificate Authorities (CAs), Registration Authorities (RAs), HSMs, OCSP responders, and certificate enrollment services.
- Certificate Lifecycle Management: Issue, renew, revoke, and replace digital certificates for users, devices, servers, applications, cloud services, and network appliances.
- PKI Security & Compliance: Implement and enforce PKI security controls, certificate policies, certificate practice statements, and cryptographic standards.
- Certificate Automation & Integration: Design and support automated certificate management solutions using Microsoft AD CS, Venafi, Keyfactor, DigiCert, ACME, and scripting technologies.
- Cryptographic Key Management: Manage cryptographic key generation, storage, rotation, escrow, and destruction processes.
- Troubleshooting & Support: Diagnose and resolve certificate-related issues impacting applications, websites, VPNs, and authentication systems.
- PKI Standards & Documentation: Develop and maintain PKI architecture diagrams, procedures, technical documentation, and governance standards.
- Security Operations & Continuous Improvement: Participate in security assessments, incident investigations, vulnerability remediation, and infrastructure modernization efforts.
Similar jobs
- CA
Network Security Engineer- remote with light travel
NewCalance
Detroit, MI🇺🇸RemoteYesterdayTCP/IPAzureDNSTechnology - MI
Senior Network Engineer - Wireless & Physical Security
NewModern IT
La Verne, California🇺🇸$150k - $180k/yrOn-siteYesterdayIoTSchedulingTechnology - RH
Senior Security Engineer (IT)
NewRobert Half
Milwaukee, WI🇺🇸HybridYesterdayAWSMFAActive Directory+4Technology - HA
Senior Security Engineer - Akamai & Edge Security Services
NewHAYS
Orlando, FL🇺🇸$75 - $83/hrRemoteYesterdayDockerShellEncryption+16Technology - LS
Communications Systems Engineer - Offensive Security Engineer
NewLV8D Solutions
Chantilly, Virginia🇺🇸On-site14 hours agoRisk ManagementTechnology - JM
Director of Security Engineering- SaaS Intelligence (Enterprise Technology)
NewJ.P. Morgan
Plano, Texas🇺🇸On-site2 hours agoAdministrative