High level knowledge on crypto and PKI is a Must
have
Experience with certificate management tools
(ideally Venafi)
Design, test, implement changes/additions to Venafi
Certificate Management system and associated PKI
Infrastructure.
In-depth knowledge of the various phases of the
Digital Certificate Lifecycle
Customer focus for supporting hundreds of
applications / services using thousands of
certificates
Strong communication skills in dealing with IT
developers and system administrators
Consult with other members of project team and end
users to identify PKI requirements and develop
requirements documentation
Contribute to the technical direction on all areas of
PKI architecture, including policies, standards,
strategies, automation and governance
Provide guidance to key stakeholders on PKI life-
cycle, processes and procedures
Computer security knowledge, specifically in
Windows/LINUX OS environment.
Administer the PKI certificate lifecycle for various
solutions
Propose and implement improvements to Client’s
[Type text]
PKI in accordance with standard procedures and
change control policies and procedures
Participate in projects to deploy new PKI
applications and services
Partnering with engineering, architecture,
integration, operations, administration and client
groups.
Direct experience with Public Key Infrastructure,
Identity and Access processes, controls and
systems and expertise in the Digital Certificates and
Keys strongly preferred.
MS PKI Administration, operational support, and
policy/template creation.
Issuance exception processes & documentation
Liaison with individuals, communities, and LOBs to
ensure the adoption of standards and practices set
forth by the Digital Certificates team.
Proficiency with Cryptography, cipher suites, and
trust stores
Proficiency with Public Key Infrastructure (PKI)
technologies ( SSH, SSL, TLS)
Proficiency with Active Directory and Windows
networking environments
Experience with Venafi Encryption Director / Trust
Protection Platform
Must have an extensive background in PKI
Technology, including Online Certificate Status
Protocol (OCSP), Secure Hash Algorithm 1 & 2
(SHA1 & SHA2), HSMs, systems engineering
Privilege Access management
Must have deep knowledge and exposure to
Privilege access management.
worked on any of the PAM solutions.
familiar with Security Operations activities.
Experience required: 7+or more years’ experience with design,
configuration, and support PKI infrastructure and
Venafi.
Experience in handling key signing ceremonies and
certificate generation.