Piper Companies is seeking a PKI Administrator to join a large Hospital System Organization located in Philadelphia, PA for a 100% remote contract-to-hire role. The PKI Administrator will Manage the PKI environment for the Organization in their information security team. This team is growing so this is a brand new position for the organization!
Responsibilities of the PKI Administrator include:
• PKI Operations & Management • Administer and maintain internal and external Certificate Authorities (CAs), including Microsoft ADCS, HSM-integrated PKI, and third-party/public CAs (e.g., DigiCert, Entrust, GlobalSign). • Manage root and subordinate CA hierarchies, certificate templates, CRLs, AIA/CDP, and OCSP configurations • Oversee certificate issuance, renewal, and revocation workflows across the organization.
Qualifications for the PKI Administrator include:
• 5+ years Experience in PKI administration or infrastructure security roles • Understanding of cryptographic principles like: X.509 certificates, CAs, and key management lifecycle • Strong experience with Microsoft ADCS, OpenSSL, including hands-on experience with hardware security modules (e.g., Thales, nShield, Entrust) • Experience with certificate lifecycle management platforms (e.g., Venafi, CyberArk, Keyfactor, AppViewX) • Must have obtained a Bachelors Degree
Compensation for the PKI Administrator include:
• Salary Range: $120,000-130,000 • Comprehensive Benefits: Cigna Medical, Dental, Vision, 401K, PTO, Sick Leave if required by law, and Holidays
Job Details:
• This job opens for applications on 3/11/2026 • Applications for this job will be accepted for at least 30 days from the posting date
Keywords: PKI, Venafi, Administrator, Certificate Authorities, ADCS, HSM-integration, DigiCert, Entrust, GlobalSign, CRLs, AIA/CDP, OCSP, lifecycle management, automation, certificate enrollment, SCEP, ACME, Intune, audit logs, audit, security, compliance, cryptographic standards, NIST, PCI-DSS, PKI resilience, Infrastructure integration, IIS, NetScaler, F5, Azure/AWS/GCP workloads, VPNs, MDM solutions, network appliances, SL/TLS troubleshooting, code signing, email encryption/signing, smart cards, device authentication
#LI-SM2 #LI-remote