Senior Certificate Engineer (PKI / Active Directory)

Jacksonville, FL, US • Posted 6 days ago • Updated 7 hours ago
Full Time
On-site
USD $85,000.00 - 121,400.00 per year
Company Branding Image
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • FOCUS
  • Microsoft
  • ROOT
  • Cloud Computing
  • High Availability
  • Scalability
  • Group Policy
  • AIA
  • SAS Cloud Analytic Services
  • Procurement
  • Lifecycle Management
  • SCEP
  • Regulatory Compliance
  • HIPAA
  • Payment Card Industry
  • Risk Assessment
  • Hierarchical Storage Management
  • Tier 3
  • Authentication
  • Smart Card
  • Distribution
  • Reporting
  • Workflow
  • ServiceNow
  • Microsoft Azure
  • DevOps
  • Management
  • Computer Science
  • Information Technology
  • PKI
  • Active Directory
  • Microsoft Windows Server
  • Microsoft Operating Systems
  • Scripting
  • Windows PowerShell
  • X.509
  • TLS
  • SSL
  • Algorithms
  • Expect
  • Video
  • Leadership
  • Health Care
  • Collaboration
  • Innovation

Summary

Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You'll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You'll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities.

Summary

We are seeking a highly skilled Senior Certificate Engineer to design, implement, and manage enterprise Public Key Infrastructure (PKI) solutions. This role will focus on Active Directory Certificate Services (AD CS), public certificate authority integrations, and end-to-end certificate lifecycle management across hybrid environments.

The ideal candidate has deep expertise in Microsoft PKI architecture, certificate automation, and identity/security integration, along with experience working with public CAs (e.g., DigiCert, Entrust, Sectigo) in a large-scale enterprise environment.

Your role in our mission

PKI Architecture & Engineering
  • Design and maintain enterprise PKI solutions, including offline root CAs, issuing CAs, and certificate policies
  • Lead PKI modernization efforts, including hybrid and cloud-integrated certificate services
  • Architect solutions that support high availability, scalability, and security compliance

Active Directory Integration
  • Implement and manage Active Directory Certificate Services (AD CS)
  • Configure and maintain:
    • Certificate templates
    • Group Policy-based auto-enrollment
    • CRL distribution points (CDPs) and AIA locations
  • Integrate PKI with Active Directory, Azure AD, and hybrid identity environments

Public Certificate Authority Management
  • Manage enterprise relationships and integrations with external/public CAs
  • Oversee procurement, issuance, renewal, and revocation of public SSL/TLS certificates
  • Integrate public CA services into automation workflows and enterprise platforms

Certificate Lifecycle Management
  • Manage certificate lifecycle processes including:
    • Issuance
    • Renewal
    • Revocation
    • Expiration monitoring
  • Implement automation using tools such as:
    • PowerShell
    • ACME / EST / SCEP protocols
    • Certificate management platforms

Security & Compliance
  • Ensure PKI solutions meet enterprise security policies and regulatory requirements (e.g., NIST, CIS, HIPAA, PCI)
  • Conduct risk assessments related to certificate usage and cryptographic standards
  • Maintain secure key management practices, including HSM integration where applicable

Operations & Troubleshooting
  • Provide Tier 3 escalation support for PKI and certificate-related issues
  • Troubleshoot:
    • Authentication failures (TLS, smart card, etc.)
    • Certificate chain issues
    • Revocation and CRL distribution problems
  • Develop monitoring, alerting, and reporting for certificate health and usage

Automation & Innovation
  • Develop and maintain automation scripts and workflows for certificate deployment and management
  • Integrate PKI processes with:
    • ServiceNow
    • Azure services
    • DevOps pipelines
  • Drive adoption of modern certificate management solutions and practices


What we're looking for

  • Bachelor's degree in Computer Science, Information Technology, or related field (or equivalent experience)
  • 7+ years of experience in:
    • Enterprise PKI engineering
    • Active Directory administration
  • Strong experience with:
    • Active Directory Certificate Services (AD CS)
    • Windows Server environments
    • Public certificate authorities (DigiCert, Entrust, Sectigo, etc.)
  • Proficiency in scripting and automation (PowerShell preferred)
  • Deep understanding of:
    • X.509 certificates
    • TLS/SSL protocols
    • Cryptographic algorithms and standards


What you should expect in this role

  • Remote position (US continental only)
  • Opportunities to travel through your work (0-10%)
  • Video cameras must be used during all interviews, as well as during the initial week of orientation
  • The deadline to submit applications for this posting is 6/30/2026


The pay range for this position is $85,000.00 - $121,400.00 per year, however, the base pay offered may vary depending on geographic region, internal equity, job-related knowledge, skills, and experience among other factors. Put your passion to work at Gainwell. You'll have the opportunity to grow your career in a company that values work flexibility, learning, and career development. All salaried, full-time candidates are eligible for our generous, flexible vacation policy, a 401(k) employer match, comprehensive health benefits , and educational assistance. We also have a variety of leadership and technical development academies to help build your skills and capabilities.

We believe nothing is impossible when you bring together people who care deeply about making healthcare work better for everyone. Build your career with Gainwell, an industry leader. You'll be joining a company where collaboration, innovation, and inclusion fuel our growth. Learn more about Gainwell at our company website and visit our Careers site for all available job role openings.

Gainwell Technologies is committed to a diverse, equitable, and inclusive workplace. We are proud to be an Equal Opportunity Employer, where all qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical condition), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We celebrate diversity and are dedicated to creating an inclusive environment for all employees.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91124603
  • Position Id: 1398260700
  • Posted 6 days ago

Company Info

About Gainwell Technologies LLC

 Gainwell is more than the technology we develop and the services we provide. Our mission-driven culture fuels everything we do, and our strength lies in the unique contributions of our team members.  By fostering an environment where every idea is heard and valued, we create stronger solutions, richer collaborations, and a workplace where innovation thrives. This commitment empowers us to deliver high-quality, client-focused solutions that drive meaningful impact in healthcare. 

A Workplace Built on Strengths
Gainwell actively cultivates a culture where employees feel supported and encouraged to contribute their best. Our employees take pride in their work, knowing that their contributions directly impact the success of our clients and the communities we serve.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs