What are the responsibilities and job description for the PKI Cyber Security Engineer with AWS position at Digitive LLC?
Job Title: PKI Cyber Security Engineer with AWS
Location: Atlanta, GA – Hybrid (minimum 3 days/week onsite at customer location)
Experience Required: 8–10 years
Duration: 6 months
Top Skills Required
Cyber Security
AWS DevOps and Automation
Public Key Infrastructure (PKI)
Must-Have Technical / Functional Skills
- Strong working experience with scripting platforms (PowerShell, Batch, JSON, Python, YAML, etc.).
- Expert-level capability in PKI design, implementation, administration, and provisioning in AWS, with extensive experience across AWS PKI services: KMS, CloudHSM, ACM, CloudFront, Secrets Manager, and CloudTrail.
- Experience with PKI-based products (including web servers and certification authorities) and common PKI-based protocols (SSL/TLS, HTTPS, LDAPS).
- Solid understanding of Public Key Infrastructure — technology, standards, and implementations — with experience managing, configuring, or supporting a PKI certificate authority.
- Experience with certificate authority (CA) implementation in compliance with the Federal PKI (FPKI) Common Policy Authority.
- Ability to conduct technical research and set cloud security direction and strategy.
- Experience automating certificate renewal and certificate lifecycle management.
- Experience with Microsoft PKI technologies and current Windows and Linux server platforms.
- Experience integrating Venafi with Microsoft PKI technologies and public PKI providers.
- Experience with IBM Mainframe platform encryption (TKE, UKO, SGKLM, etc.).
- Experience across identity management, provisioning, authentication, authorization, certification/governance, and monitoring, including HSPD-12 compliance.
- Experience developing and implementing IT contingency plans.
Roles and Responsibilities
- Support and mature the enterprise PKI program, including strategy, governance, implementation, operations, and continuous alignment with compliance and regulatory requirements.
- Engage with system owners, business teams, and IT stakeholders in strategic discussions to provide best-in-class PKI security strategy and industry guidance supporting long-term business objectives.
- Design, implement, and manage PKI and security solutions in a self-directed, high-performing capacity.
- Support PKI-based products and common PKI-based protocols across the environment.
- Implement certificate authorities in compliance with the Federal PKI Common Policy Authority.
- Review and patch Red Hat Certificate System source code for defects.
- Develop Red Hat Certificate System source code to implement new capability.
- Provide PKI engineering support and advanced troubleshooting.
- Design and implement HSM solutions.
- Apply working knowledge of OSI layer 2–7 security tactics and common attack vectors.
Preferred Qualifications and Skills
- Bachelor's degree in Information Security, Computer Science, or a related field.
- 5 years of professional experience across PKI, Venafi, digital certificate management, IBM Mainframe, scripting, and information security domains.
- Experience with Agile software development methodologies.
- One or more certifications preferred: CISSP, AWS cloud certifications, CISM, or another cyber security credential.