Sr. Security Engineer

Datum Software, Inc

  • Atlanta, GA
  • 22 days ago

    Highlights

    Risk Management & Incident Support Identify and remediate certificate-related risks, including expiration, trust failures, and misconfigurations. This role requires someone who can quickly contribute to ongoing PKI operations while helping modernize and automate certificate management across the organization.

    Numbers & Facts

    LocationAtlanta, GA

    Description

    Sr.Security Engineer
    Contract/ Contract to Hire 
    Atlanta, GA 


    Top 5 Must-Have Skills:
    • Public Key Infrastructure (PKI) Administration & Operations
    • Certificate Lifecycle Management (Issuance, Renewal, Revocation)
    • PKI Platforms (Venafi, DigiCert, Microsoft CA, AWS ACM)
    • TLS/SSL, Cryptography & Key Management
    • PKI Automation, Scripting & Cloud Certificate Services (AWS/Azure)
     
     
    Job Summary:
    We are seeking an experienced PKI Engineer to manage and enhance enterprise Public Key Infrastructure (PKI) services. The ideal candidate will have hands-on experience supporting PKI infrastructure, certificate lifecycle management, automation, and enterprise security standards. This role requires someone who can quickly contribute to ongoing PKI operations while helping modernize and automate certificate management across the organization.
     
    Key Responsibilities:
    PKI Infrastructure & Operations
    • Maintain the availability, resiliency, and security of enterprise PKI infrastructure.
    • Perform system maintenance, patching, and operational support.
    • Manage certificate issuance, renewal, revocation, and lifecycle operations.
    Certificate Lifecycle Management
    • Administer large-scale certificate environments across enterprise applications and infrastructure.
    • Ensure timely certificate renewals and replacements.
    • Maintain certificate chain integrity and trust store management.
    Automation & Integration
    • Develop and implement automation for certificate lifecycle management.
    • Integrate PKI services with enterprise applications, CI/CD pipelines, cloud platforms, and infrastructure.
    • Deploy and maintain automation tools, connectors, and orchestration workflows.
    Governance & Security Compliance
    • Enforce enterprise security policies related to PKI and cryptographic standards.
    • Establish and maintain certificate issuance, validity, and usage standards.
    • Support compliance with industry and regulatory frameworks, including:
      • NIST
      • PCI-DSS
      • CMMC
      • TSA Directives
    Cross-Functional Collaboration
    • Partner with infrastructure, DevOps, cloud, and application teams to enable certificate automation.
    • Provide technical guidance for PKI implementation and best practices.
    • Assist teams with onboarding and adoption of PKI services.
    Risk Management & Incident Support
    • Identify and remediate certificate-related risks, including expiration, trust failures, and misconfigurations.
    • Support incident response involving certificates, encryption, and PKI infrastructure.
    • Improve monitoring, reporting, and certificate health visibility.
    Emerging Technologies
    • Support adoption of modern cryptographic standards, including post-quantum cryptography initiatives.
    • Assist with PKI architecture modernization and evaluation of new security technologies.
    • Recommend scalable and resilient PKI solutions.
     
    Required Qualifications:
    • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent experience).
    • 3–7+ years of experience in PKI, Cybersecurity Engineering, or Infrastructure Security.
    • Strong hands-on experience with certificate lifecycle management.
    • Experience administering PKI platforms such as:
      • Venafi
      • DigiCert
      • Microsoft Certificate Services (CA)
      • AWS Certificate Manager (ACM)
    • Strong understanding of:
      • TLS/SSL
      • PKI architecture
      • Cryptographic principles
      • Key management
    • Ability to work independently and contribute immediately in a fast-paced environment.
    • Authorized to work in the United States.
    • High school diploma, GED, or equivalent.
     
    Preferred Qualifications:
    • Experience with Hardware Security Modules (HSMs).
    • PKI automation using APIs, scripting, and CI/CD pipelines.
    • Experience with AWS and Azure certificate management services.
    • Knowledge of security and compliance frameworks:
      • NIST
      • PCI-DSS
      • CMMC
    • Experience supporting enterprise-scale PKI environments.
    • Familiarity with trust store management across distributed systems.
    • Experience modernizing PKI infrastructure and implementing automation solutions.
     
    “All qualified applicants will be considered without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.”
     
     
     
     
     
     

    Similar Jobs

    See more jobs