What are the responsibilities and job description for the Certificate Authority Information Security Engineer position at Techaxis, Inc?
We are looking for a CISO Technical Lead – Certificate Authority Engineer
Location : Jacksonville, FL (Hybrid)
Required Skills/Expertise:
• Bachelor’s degree in computer science, Information Security, or a related technical field, or equivalent practical experience.
• 5 years of dedicated experience in information security, with at least 3 years focused specifically on Public Key Infrastructure (PKI) and Certificate Authority technologies.
• Understanding of cryptographic principles, digital certificates, certificate chains, and trust models (X.509, SSL/TLS).
• Knowledge of Active Directory, networking concepts, and operating systems (Windows, Linux).
• Proficiency in scripting languages (e.g., PowerShell) for automation and administration tasks.
• Excellent analytical, problem-solving, and communication skills, with the ability to articulate complex technical concepts.
• Required: English fluency (oral and written).
Services:
• Divestiture Strategy & Execution:
o Develop and execute comprehensive strategies for the secure separation, migration, or consolidation of Certificate Authority infrastructures and associate certificate lifecycle management processes for divested business units.
o Plan and implement PKI solutions to maintain cryptographic trust and secure communications for users, applications, and devices transitioning between organizations.
o Oversee the establishment of new CA hierarchies, certificate templates, and revocation mechanisms for the divested environment, ensuring minimal disruption and adherence to security policies.
• PKI/CA System Implementation & Management:
o Design, deploy, configure, and maintain enterprise-grade Certificate Authority solutions (e.g., Microsoft PKI).
o Administer certificate templates, CRL Distribution Points (CDP), Authority Information Access (AIA), Online Responder (OCSP), and certificate enrollment processes.
o Manage the entire certificate lifecycle, including issuance, renewal, revocation, and archival of digital certificates for servers, applications, users, and devices.
• Integration & Ecosystem Management:
o Integrate PKI solutions with various enterprise systems, including Active Directory, network devices, web servers (IIS, Apache, Nginx), application load balancers, and cloud environments.
o Automate certificate management processes where possible, reducing manual effort and potential errors.
o Collaborate with application owners, infrastructure teams, and security architects to ensure seamless certificate deployment and secure communication channels.
• Security, Compliance & Operations:
o Implement and enforce security best practices for PKI infrastructure, ensuring alignment with corporate security policies, regulatory requirements (e.g., FIPS, NIST), and industry standards during the divestiture process.
o Monitor CA system health, performance, and security events, responding to incidents and anomalies proactively.
o Develop and maintain comprehensive documentation, architectural diagrams, runbooks, and standard operating procedures (SOPs) for the PKI infrastructure.
• Collaboration & Support:
o Provide expert-level support for certificate-related issues, working closely with IT operations, security operations, and other technical teams.
o Communicate effectively with project managers and stakeholders on PKI project status, risks, and challenges related to the divestiture.
Deliverables:
• Independent Cryptographic Trust Establishment
• Enterprise PKI Platform & Certificate Lifecycle Governance
• Regulatory Aligned PKI Operations & Audit Readiness
Company Description:
Techaxis is a US-based firm that specializes in discovering, engaging, and placing top talent globally, for full-time or contract positions in leadership and mid to senior-level positions for companies in the technology, healthcare, energy, and education space. Techaxis Inc. is headquartered in Northern Virginia, USA. We are ranked #3294 in Inc 5000 and #105 in Inc 5000 DC Metro Series, SWaM, and WBE Certified technology talent search firm.
Equal Opportunities Employer:
Our clients provide equal opportunities to all its employees and all qualified applicants for employment, without regard to their race, caste, religion, color, ancestry, marital status, sex, age, nationality, disability, and veteran status. Employees of our client shall be treated with dignity and in accordance with their policy to maintain a work environment free of sexual harassment, whether physical, verbal, or psychological. Employee policies and practices shall be administered in a manner that would ensure that in all matters equal opportunity is provided to those eligible and the decisions are merit-based.