Sr. Security Engineer
NLB Services · Atlanta, GA · Yesterday
On-siteEngineeringContract
Your Responsibilities
- Ensure availability, resiliency, and patching of PKI infrastructure
- Support certificate issuance, renewal, revocation, and lifecycle management
- Manage large-scale certificate environments across applications and infrastructure
- Ensure timely renewal and replacement of certificates
- Support trust store management and certificate chain integrity
- Build and implement automation for certificate lifecycle management
- Integrate PKI services with enterprise platforms (CI/CD pipelines, cloud services, applications)
- Deploy and operationalize tools such as connectors and automation pipelines
- Enforce security policies related to certificate usage and cryptography
- Define and maintain standards for certificate issuance, validity, and usage
- Support compliance with regulatory frameworks (e.g., NIST, CMMC, PCI, TSA directives)
- Cross-Team Collaboration
- Partner with application and infrastructure teams to enable certificate automation
- Provide guidance and supporting tooling while ensuring clear ownership boundaries
- Aid teams with onboarding to PKI services and automation
- Risk Reduction & Incident Support
- Identify and remediate risks related to certificate expiration, misconfiguration, or trust failures
- Support incident response involving certificate or encryption issues
- Improve visibility and reporting for certificate health and compliance
- Emerging Crypto & Future Readiness
- Support adoption of new cryptographic standards (e.g., post-quantum cryptography)
- Assist in modernization of PKI architecture and tooling
- Evaluate new solutions for scalability and resilience
Qualifications
- Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience)
- 37+ years in PKI, cybersecurity engineering, or infrastructure security
- Hands-on experience with certificate lifecycle management
- Experience with PKI tools/platforms (e.g., Venafi, DigiCert, Microsoft CA, AWS ACM)
- Understanding of TLS/SSL, cryptographic principles, and key management
- Consistently prioritizes safety and security of self, others, and personal data
- Embraces diverse people, thinking, and styles
- Possesses a high school diploma, GED, or high school equivalency
- At least 18 years of age and has authorization to work in the United States