Location: Charlotte, NC
Salary: $64.00 USD Hourly - $69.00 USD Hourly
Description: Lead Information Security Analyst, Cryptography & PKI Governance (P4)We are not accepting C2C or 1099 arrangements.Location: Charlotte, NC
Employment Type: Contract
Spotlight Call Required: Yes
Minimum Qualifications- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or equivalent practical experience.
- 7+ years of experience in Information Security, Cryptography, Public Key Infrastructure (PKI), Key Management, or related cybersecurity disciplines.
- 5+ years of experience supporting enterprise-scale certificate lifecycle management programs.
- Experience with cryptographic governance, risk assessments, and regulatory compliance within large financial or highly regulated organizations.
- Experience managing certificate lifecycle platforms such as Venafi, Keyfactor, DigiCert, or comparable solutions.
- Experience working with Hardware Security Modules (HSMs), encryption technologies, and enterprise key management systems.
Preferred Qualifications- Expertise in Post-Quantum Cryptography (PQC) readiness planning and emerging cryptographic standards.
- Experience with cloud-native cryptographic services and enterprise key management platforms.
- Experience building automation solutions using scripting, workflow orchestration, AI-assisted tools, or low-code platforms.
- Experience leveraging enterprise analytics and visualization tools such as Power BI, Tableau, Power Platform, or ServiceNow Analytics.
- Knowledge of ServiceNow CMDB, asset inventory management, and certificate discovery technologies.
- Professional certifications such as CISSP, CCSP, CISM, CRISC, or security certifications focused on PKI, cryptography, and cloud security.
About the RoleAs a Lead Information Security Analyst focused on Cryptography, PKI, and Digital Certificate Governance, you will provide technical leadership for enterprise cryptographic services and security controls. You will partner across security, engineering, infrastructure, architecture, and application teams to establish governance standards, assess risk, modernize certificate management capabilities, and support the organization's cryptographic strategy.
You will serve as a trusted advisor on encryption technologies, digital certificate lifecycle management, key management practices, and cryptographic risk. You will also drive automation and data-driven governance initiatives that improve visibility, compliance, operational efficiency, and security resilience across the enterprise.
ResponsibilitiesCryptography & PKI Leadership- Serve as a subject matter expert for cryptography, PKI, digital certificates, encryption controls, and key management practices.
- Provide technical leadership for enterprise certificate lifecycle governance and cryptographic risk management.
- Develop and maintain cryptographic standards, policies, control frameworks, and implementation guidance.
- Collaborate with architecture, engineering, cloud, infrastructure, and application teams to design secure cryptographic solutions.
Governance, Risk & Compliance- Conduct assessments of cryptographic implementations to identify vulnerabilities, control gaps, and operational risks.
- Evaluate certificate management, key management, trust architectures, and encryption controls against internal and regulatory requirements.
- Support audit, regulatory examination, and risk management activities related to cryptographic technologies.
- Establish metrics, reporting, and governance processes that improve compliance visibility and control effectiveness.
Certificate Lifecycle Management- Lead initiatives focused on certificate discovery, inventory management, lifecycle governance, and automation.
- Evaluate and optimize enterprise certificate management platforms, including Venafi, Keyfactor, DigiCert, and related technologies.
- Develop strategies to improve certificate visibility, reduce operational risk, and prevent certificate-related outages.
- Partner with technology teams to implement scalable automation and remediation capabilities.
Data Analytics & Automation- Analyze large-scale security, cryptographic, and certificate datasets to identify risk trends, compliance gaps, and opportunities for improvement.
- Design and implement automation solutions that enhance governance monitoring, policy enforcement, and remediation tracking.
- Utilize approved AI-assisted technologies and analytics platforms to streamline investigations, reporting, and operational workflows.
- Develop dashboards and executive reporting that communicate cryptographic risk posture and key performance indicators.
Strategy & Innovation- Evaluate emerging threats, industry trends, and regulatory developments impacting enterprise cryptography.
- Assess organizational readiness for future cryptographic requirements, including Post-Quantum Cryptography (PQC).
- Influence enterprise roadmaps and modernization initiatives related to encryption, PKI, trust services, and key management.
- Provide recommendations for improving security resilience, operational maturity, and long-term cryptographic strategy.
Leadership Expectations- Act as the primary escalation point for complex cryptographic, PKI, and certificate management challenges.
- Influence strategic technology decisions involving encryption, trust services, and enterprise security architecture.
- Build strong partnerships across Cybersecurity, Infrastructure, Engineering, Architecture, Risk, Audit, and Regulatory organizations.
- Mentor analysts, engineers, and architects while promoting security best practices across the enterprise.
- Translate complex technical concepts into actionable business recommendations and risk-based decisions.
- Drive continuous improvement initiatives that strengthen governance maturity, audit readiness, automation, and operational resilience.
Key Skills- Public Key Infrastructure (PKI)
- Digital Certificate Lifecycle Management
- Cryptography & Encryption Technologies
- Key Management
- Hardware Security Modules (HSM)
- Venafi
- Keyfactor
- DigiCert
- Post-Quantum Cryptography (PQC)
- Cybersecurity Governance
- Risk Assessment
- Security Automation
- ServiceNow CMDB
- Power BI / Tableau
- Cloud Security
- Enterprise Security Architecture
Target Candidate Profile: Senior-level cybersecurity professional with deep expertise in PKI, cryptographic governance, certificate lifecycle management, and enterprise-scale risk management in highly regulated environments. Strong combination of technical leadership, governance expertise, analytics, and automation capabilities.
By providing your phone number, you consent to: (1) receive automated text messages and calls from the Judge Group, Inc. and its affiliates (collectively "Judge") to such phone number regarding job opportunities, your job application, and for other related purposes. Message & data rates apply and message frequency may vary. Consistent with Judge's Privacy Policy, information obtained from your consent will not be shared with third parties for marketing/promotional purposes. Reply STOP to opt out of receiving telephone calls and text messages from Judge and HELP for help.
Contact: This job and many more are available through The Judge Group. Please apply with us today!