IT Architect Design & Implementation?specialist

Overview

On Site
BASED ON EXPERIENCE
Full Time
Contract - W2
Contract - Independent

Skills

PKI
CERTIFICATE
CRYPTOGRAPHIC
CRYPTOGRAPHY
ENCRYPTION
IDENTITY
KEY
PUBLIC KEY INFRASTRUCTURE
ACTIVE DIRECTORY CERTIFICATE SERVICES
ADCS
AD CS
CERTIFICATE LIFECYCLE MANAGEMENT
CLM
CERTIFICATE
CERTIFICATE AUTHORITIES
OCSP
NDES
VENAFI
APPVIEWX
KEYFACTOR
HSMS
NCIPHER
UTIMACO
THALES
CISSP
SANS
GIAC
MICROSOFT CERTIFIED: AZURE SECURITY ENGINEER ASSOCIATE
GSEC
GCWN
EXPERIENCE
MICROSOFT
PKI
SECURITY

Job Details

Job Title: IT Architect Design & Implementation specialist (Senior PKI Architect)
Onsite/Hybrid
Location: Greenville, SC
Duration: Long-Term Renewable Contract
Job ID - 5243
Work Authorization: W2 Only (No C2C or subcontracting)

Position Purpose/Scope: What are the key objectives of the position?
This role leads the architecture, design, implementation, and management of enterprise-level Public Key Infrastructure (PKI) solutions, ensuring high availability, scalability, and security across global Group locations. Drives strategic PKI initiatives, including the adoption of new technologies and best practices.

Position Responsibilities/Accountabilities: List the major duties/accountabilities to achieve the position's key objectives.

  • Architects and deploys Microsoft Active Directory Certificate Services (AD CS) components, including Certificate Authorities (CAs), Online Responders (OCSP), Certificate Revocation Lists (CRLs) and Network Device Enrollment Service (NDES).
  • Manages the full certificate lifecycle using advanced Certificate Lifecycle Management (CLM) platforms and Hardware Security Modules (HSMs).
  • Develops and implements automation scripts (PowerShell, Python) for PKI operations, certificate issuance, revocation, and monitoring.
  • Implements proof of concepts for PKI solutions.
  • Provides expert-level (Tier 3) support for complex PKI and Certificate Management incidents, performing root cause analysis and implementing permanent solutions.
  • Collaborates with cross-functional teams, including Product Owners, DevOps, and IT Security, to integrate PKI solutions into various applications and services.
  • Contributes to the overall security architecture, providing expert guidance on cryptographic standards, key management, and secure communication protocols.
  • Conducts comprehensive risk assessments for PKI deployments and develop mitigation strategies to ensure compliance with industry regulations and internal security policies.
  • Creates and maintains high-quality technical documentation, including design specifications, operational procedures, and test plans.
  • Conducts research on existing systems and devise solutions that work within those systems.
  • Responds to questions regarding PKI and Certificate Management capabilities and requirements.
  • Maintains a high-level understanding of the organization's IT-Security processes and requirements.
  • Works on the delivery of DevOps User Stories within specified functional area(s).
  • Supports the roll-out and operation of global Public Key Infrastructure (PKI) and Certificate Management initiatives within the Group for multiple departments and all global locations.
  • Understands and models VPS (Value Added Production System) Principles and concepts of Standard Work and Problem Solving.
  • Adheres to 5S and Safety Standards and Principles.
  • Performs other duties as assigned by Group Operations Supervisor.

Education:
  • Bachelor's or Master's degree in Computer Science, Information Security, or a related technical field.

Licenses and/or Certifications:
  • Relevant industry certifications (or equivalents) such as CISSP, SANS GIAC (e.g., GSEC, GCWN), or Microsoft Certified: Azure Security Engineer Associate (preferred).
Experience:
  • 10+ years of hands-on experience with Microsoft Active Directory Certificate Services (AD CS) -OR Equivalent platform, including design, deployment, and troubleshooting of Certificate Authorities (CAs), Online Responders (OCSP), and Network Device Enrollment Service (NDES).
  • 3+ years of expertise in certificate lifecycle management (CLM) platforms (e.g., Venafi, AppViewX, Keyfactor) and Hardware Security Modules (HSMs) (e.g., Thales, nCipher, Utimaco).
  • 5+ years of proven track record of successfully delivering complex PKI projects in large- scale enterprise environments.
  • 5+ years of experience driving products from concept and ideation through successful launch.
  • 5+ years of experience working on a team employing standardized project delivery methods (Agile/Scrum development methods preferred).
  • 5+ years of experience in understanding of and working with non-functional requirements.
  • 5+ years of experience of working in an enterprise environment.
  • Trainings and experience in the field of PKI / Cryptography solutions

Knowledge/Skills/Abilities:
  • Intermediate proficiency in PowerShell for AD Certificate Services administration and automation; experience with Python for security tool development is a plus.
  • Intermediate knowledge of (functional) testing methodologies and tools, including test automation.
  • Intermediate knowledge of root cause analysis, debugging methods, and diagnostic tools.
  • Intermediate knowledge of Databases and query language (e.g., SQL).
  • Intermediate knowledge of modern operating systems (especially but not limited to MS Windows and Unix/Linux derivates).
  • Intermediate knowledge of IT Security and risk assessment.
  • Intermediate knowledge of certificate lifecycle management and Public Key Infrastructure.
About our Company
DataSoft Technologies is a highly recognized provider of professional IT Consulting services in the US. Founded in 1994, DataSoft Technologies, Inc. provides staff augmentation services for Information Technology and Automotive Services. Our team member benefits include:
  • Paid Holidays/Paid Time Off (PTO)
  • Medical/Dental Insurance
  • Vision Insurance
  • Short Term/Long Term Disability
  • Life Insurance
  • 401 (K)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Datasoft Technologies, Inc.