PKI and Certificate Cybersecurity Engineer

Hybrid in Austin, TX, US • Posted 14 hours ago • Updated 14 hours ago
Full Time
No Travel Required
Hybrid
$135,000 - $160,000/yr
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • PKI
  • Cerificate Life-cycle Management
  • Active Directory
  • Directory Services

Summary

***We are unable to sponsor for this permanent full-time role***

***Position is bonus eligible***

Prestigious Global Firm is currently seeking a Senior PKI Cybersecurity Engineer with strong Certificate Management experience. Candidate will work across a broad range of cybersecurity domains—including Public Key Infrastructure (PKI), certificate lifecycle management, endpoint security, cloud security, identity protection, and security operations—while partnering with teams across Information Technology (IT), architecture, and business functions to ensure secure and scalable technology solutions.

Responsibilities:

•    Certificate & PKI Management: Manage the full lifecycle of digital certificates, including discovery, issuance, renewal, monitoring, revocation, and automation, while administering Public Key Infrastructure (PKI) and Microsoft Active Directory Certificate Services (AD CS) environments.
•    Encryption & Key Security: Administer enterprise encryption key management platforms and Hardware Security Modules (HSMs), ensuring secure generation, storage, rotation, archival, and destruction of cryptographic keys.
•    Security Engineering: Design, implement, maintain, and continuously improve network, endpoint, cloud, and identity security controls through monitoring, tuning, and automation.
•    Threat Detection & Response: Optimize Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), Data Loss Prevention (DLP), Cloud Access Security Broker (CASB), and related security platforms to improve visibility, detection accuracy, and response effectiveness.
•    Risk Reduction: Identify security gaps, control weaknesses, and misconfigurations, then lead remediation initiatives and implement long-term solutions that strengthen the security posture.
•    Technical Leadership: Serve as a lead contributor on security initiatives, partnering with Information Technology (IT), architecture, product, and project teams to support secure onboarding and integration of applications and platforms.
•    Identity & Access Security: Advance secure endpoint and identity practices by collaborating with infrastructure and business teams to improve protection of critical systems and data.
•    Standards & Governance: Develop and maintain security standards, engineering patterns, and baselines aligned with industry frameworks such as the National Institute of Standards and Technology (NIST) and Center for Internet Security (CIS).
•    Automation & Operational Excellence: Enhance security operations through scripting, workflow automation, telemetry optimization, and continuous process improvement.
•    Mentorship & Knowledge Sharing: Support team growth through mentoring, documentation, reusable solutions, and technical guidance for less experienced engineers.
•    Incident & Escalation Support: Act as an escalation point for complex security issues, contributing to incident response readiness, runbooks, and on-call support processes.
•    Innovation & Technology Evaluation: Research emerging security technologies and recommend solutions that improve operational efficiency and reduce organizational risk.

Qualifications:

•    Education & Certifications: Bachelor’s degree or equivalent professional experience required. Industry certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), Offensive Security Certified Professional (OSCP), SC-200, or AZ-500 are preferred.
•    Relevant Experience: 5–8+ years of Information Technology (IT) experience, including 3–5+ years in cybersecurity engineering or a closely related security-focused role.
•    PKI & Cryptography Expertise: Advanced experience with digital certificate lifecycle management, Public Key Infrastructure (PKI), Microsoft Active Directory Certificate Services (AD CS), encryption key management platforms, and Hardware Security Modules (HSMs).
•    Security Operations Expertise: Strong knowledge of Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), threat detection, threat hunting, and incident response processes.
•    Security Platform Experience: Hands-on experience with technologies such as CrowdStrike, Microsoft Sentinel, Google SecOps, Netskope, Cisco Umbrella, BeyondTrust, Cribl, DigiCert, CyberArk Certificate Management (formerly Venafi), and Microsoft Entra.
•    Identity & Access Management: Deep understanding of authentication, federation, conditional access, privileged access management, and modern identity platforms.
•    Cloud & Enterprise Security: Experience implementing and supporting cloud security controls, particularly within Microsoft Azure and Microsoft Entra environments, with knowledge of Zero Trust principles and secure architecture practices.
•    Automation & Scripting: Ability to improve security operations through automation using tools and languages such as PowerShell, Python, and Kusto Query Language (KQL).
•    Problem Solving: Proven ability to troubleshoot and resolve complex technical and security issues across multiple systems, platforms, and teams.
•    Communication & Collaboration: Strong ability to translate technical concepts into actionable insights, influence stakeholders, and work effectively across technical and non-technical teams.
•    Business Mindset: Customer-focused approach with the ability to balance security, risk management, and business objectives while managing multiple priorities.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: napil006
  • Position Id: CJ-CertPKItx
  • Posted 14 hours ago
Contact the job poster
CJ

Craig Johnson

Recruiter @ Request Technology, LLC
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Manor, Texas

Yesterday

Easy Apply

Full-time

133,000 - 166,000

Austin, Texas

Today

Full-time

USD 129,986.00 - 216,609.00 per year

Remote

Today

Full-time

USD 93,750.00 - 175,000.00 per year

Remote

Today

Full-time

Search all similar jobs