Public Key Infrastructure (PKI) & Encryption Engineer

Hybrid in Dallas, TX, US • Posted 2 days ago • Updated 5 hours ago
Contract W2
6 Months
No Travel Required
Hybrid
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • PKI/X.509
  • TLS/SSL
  • Certificate Authority (CA)
  • certificate lifecycle management
  • Keyfactor/Venafi/DigiCert/Sectigo/ADCS
  • PowerShell
  • Python

Summary

Responsibilities:

  • Design, implement, and support enterprise PKI and X.509 certificate infrastructure, including Certificate Authorities (CA), certificate issuance, enrollment, renewal, rotation, revocation, and TLS/SSL certificate management.
  • Administer and integrate enterprise certificate lifecycle management platforms such as Keyfactor, Venafi, DigiCert, Sectigo, and Microsoft ADCS across application, infrastructure, and cloud environments.
  • Develop PowerShell and Python automation using REST APIs, ACME, and platform-specific APIs to automate certificate discovery, provisioning, renewal, rotation, revocation, compliance monitoring, and reporting.
  • Perform root cause analysis and troubleshooting of certificate, TLS/SSL, encryption, trust-chain, authentication, and connectivity issues across systems such as F5, NGINX, IIS, and enterprise applications.
  • Design secure, scalable PKI and encryption solutions across Azure/AWS and on-premises environments, leveraging Azure Key Vault, HashiCorp Vault, infrastructure-as-code, and DevOps practices where applicable.
  • Partner with Security, Infrastructure, Cloud, and DevOps teams to establish certificate security standards, encryption controls, automation, monitoring, technical risk mitigation, and reusable PKI solutions while reducing technical debt and operational overhead.

Requirements:

  • 3–5+ years of hands-on experience in PKI, certificate management, encryption, cybersecurity, or related infrastructure engineering.
  • Strong knowledge of PKI architecture, X.509 certificates, TLS/SSL, certificate chains, CA/RA concepts, certificate issuance, renewal, rotation, and revocation.
  • Experience with enterprise Certificate Lifecycle Management (CLM) platforms such as Keyfactor, Venafi, DigiCert, Sectigo, or Microsoft ADCS.
  • Strong scripting and automation skills using PowerShell and/or Python, including REST APIs and certificate-management automation.
  • Experience troubleshooting TLS/SSL, certificate trust, authentication, encryption, and connectivity issues across enterprise infrastructure and applications.
  • Understanding of cloud security, DevOps, CI/CD, Infrastructure as Code (IaC), secrets management, and automated certificate deployment.

Education:

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related field.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10120357
  • Position Id: PKI-0926
  • Posted 2 days ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Irving, Texas

•

Today

Easy Apply

Contract

Depends on Experience

Irving, Texas

•

Today

Easy Apply

Contract

$50 - $60

Fort Worth, Texas

•

Today

Easy Apply

Full-time, Part-time, Contract, Third Party

USD 50-55

Hybrid in Dallas, Texas

•

Today

Contract

Depends on Experience

Search all similar jobs