Logo
Tata Consultancy Services

PKI Security Engineer

Tata Consultancy Services, Atlanta, Georgia, United States, 30383

Save Job

Responsibilities

Support and mature PKI (Public Key Infrastructure) program, including strategy, governance, implementation, operations and continuous alignment with compliance and regulatory requirements. Engage with system owners, business teams, and IT stakeholders in strategic discussions to provide best in class PKI security strategy and industry guidance to maximize long-term business objectives. Design, implement and manage PKI and security solutions; provide PKI engineering support and troubleshooting. Manage PKI-based products (including Web servers and certification authorities) and common PKI-based protocols (including SSL and TLS, HTTPs, or LDAPs). Implement certificate authority (CA) solutions in compliance with the Federal PKI (FPKI) Common Policy Authority. Review, patch and contribute to Red Hat Certificate System; develop capabilities to meet security requirements. Work with HSM design and implementation; maintain security across OSI layers 2-7 and related attack vectors. Support and automate certificate renewal and certificate lifecycle management. Qualifications & Skills

Bachelor’s Degree in Information Security, Computer Science, or related field. 5+ years of professional experience in PKI, Venafi, digital certificates management, IBM-Mainframe, scripting and information security. Good working experience with scripting platforms (PowerShell, Batch, Json, Python, YAML, etc). Expert in PKI design, implementation, administration, and provisioning in AWS. Extensive experience in AWS PKI services: KMS, CloudHSM, ACM, CloudFront, Secrets Manager, CloudTrail. Experience with PKI-based products (including Web servers and certification authorities) and PKI-based protocols (SSL/TLS, HTTPS, LDAPs). Understanding of PKI technology, standards, and implementations; experience managing, configuring, or supporting a PKI certificate authority. Experience with certificate authority (CA) implementation in compliance with the FPki Common Policy Authority. Experience with Microsoft PKI Technologies and latest Windows and Linux server platforms; integration of Venafi with Microsoft PKI Technologies and Public PKI Providers. Experience with IBM mainframe encryption (TKE, UKO, SGKLM, etc) and related security controls. Experience in identity management, provisioning, authentication, authorization, governance, monitoring, including HSPD-12 compliance. Experience developing and implementing IT Contingency Plans. Experience with Agile software development methodologies. One or more certifications: CISSP, AWS Cloud Certificates, CISM or other cyber security related certification. Salary & Benefits

Salary Range: $90,000-$120,000 per year Seniority level

Mid-Senior level Employment type

Full-time Job function

Information Technology Industries

IT Services and IT Consulting

#J-18808-Ljbffr