D

PKI Engineer

Distro
2 months ago
Full-time
Remote
Worldwide
Remote Other
PKI JD Summary: We are looking for a PKI/CLM Engineer with hands-on experience in ADCS, AWS ACM, and Venafi to design, implement, and manage enterprise PKI and Certificate Lifecycle Management services. The role includes certificate automation, policy enforcement, infrastructure and application integration, and ensuring compliance with security and audit standards. Required skills include CRL and OCSP maintenance, AWS Key Vault, cloud and hybrid environments, and PowerShell scripting for automation. Roles Responsibilities: - Manage enterprise PKI infrastructure including Root and Issuing Certificate. Responsibilities: · Manage certificate lifecycle activities: issuance, renewal, revocation, rekey, rollover, and retirement. · Configure and maintain Offline Root CA, Issuing CAs, certificate templates/profiles, and policy constraints. · Manage CRL/OCSP publishing and ensure high availability. · Maintain PKI documentation aligned with standards like CP/CPS, operational runbooks, and SOPs. · Support audits and compliance requirements, including CAB Forum standards. · Manage and monitor PKI/HSM operations end-to-end, including health checks, backups, configurations, and policies. · Imple... Click Apply to read the full job description.