Public Key Infrastructure (PKI) Engineer

Posted 2 Days Ago
Be an Early Applicant
Dallas, TX, USA
In-Office
85K-145K Annually
Expert/Leader
Information Technology • Professional Services • Cybersecurity • Defense
The Role
Design, implement, and automate enterprise PKI and certificate lifecycle management. Integrate PKI with authentication systems (Active Directory, Unix), apply encryption/HSM/TLS/PGP protections, ensure compliance and auditability, and collaborate with security and infrastructure teams in an Agile/DevSecOps environment.
Summary Generated by Built In

Location: Hybrid - Onsite in Dallas, TX

Job Type: Full-Time

Salary: $85,000 - $145,000

*This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary

Position Overview

We are seeking an experienced Public Key Infrastructure (PKI) Engineer responsible for the design, implementation, and management of secure certificate and encryption services across enterprise environments. This role will focus on automating and managing Public Key Infrastructure processes, ensuring platform-level authentication across Windows and Unix systems, and integrating PKI controls with infrastructure and security operations.

The ideal candidate has a strong understanding of cryptographic principles, automation, and compliance-focused design.

Key ResponsibilitiesPKI Design and Certificate Lifecycle Management
  • Design, implement, and manage PKI and certificate lifecycle management processes and controls.
  • Automate and manage certificate issuance, renewal, and revocation using industry tools.
  • Evaluate and maintain cryptographic standards and practices for enterprise systems.
  • Ensure compliance and auditability of PKI solutions through effective documentation and tooling.
Authentication, Encryption, and Security Integration
  • Integrate certificate authority management with enterprise authentication platforms, including Active Directory and Unix-based systems.
  • Assess and implement encryption technologies, including TLS, PGP, and HSM, for data protection.
  • Support secure infrastructure design by implementing and reviewing cryptographic and authentication mechanisms.
  • Collaborate with security and infrastructure teams to ensure full integration and automation of PKI solutions.
Agile Delivery and Initiative Management
  • Contribute to Agile team environments, including Scrum and Kanban, with a focus on continuous integration and delivery.
  • Prioritize and manage multiple ongoing initiatives, balancing delivery timelines and technical quality.
QualificationsExperience
  • 10+ years of experience in IT infrastructure or related fields with demonstrated design and engineering capabilities.
  • 3+ years working in a PKI environment, including experience with CA and certificate lifecycle management.
  • Hands-on experience with encryption and cryptographic technologies such as TLS, PGP, PKI, and HSM.
  • Experience with Linux platforms.
  • Familiarity with Windows Server is a plus.
  • Familiarity with Agile methodologies and DevSecOps principles.
Skills
  • Solid understanding of key management, tokenization, and data masking.
  • Knowledge of system vulnerabilities, penetration testing methods, and remediation techniques.
  • Proficiency with scripting languages such as Python, PowerShell, Bash, or KornShell.
  • Ability to collaborate across technical teams and effectively communicate with stakeholders at all levels.
  • Strong organizational and prioritization skills, with the ability to manage multiple projects with competing demands.
Preferred Qualifications
  • Experience with certificate management tools such as Venafi, Keyfactor, or similar platforms.
  • Working knowledge of Entrust or other public certificate providers.
  • Experience with configuration and infrastructure automation tools such as Ansible, Puppet, or Terraform.
  • Familiarity with Identity and Access Management tools such as IBM TIM/TAM.
  • Exposure to IoT device security and management.
  • Hands-on experience with Red Hat technologies, including Identity Management, RHV, Satellite, RHDS, and Ceph.
  • Experience with AWS cloud services, including EC2, S3, Lambda, RDS, ALB/NLB.
  • Proven ability to design, optimize, and troubleshoot public cloud infrastructure and complex application stacks.
  • Background in architectural or design roles such as Solutions Architect, Technical Architect, or Technical Design Authority.

Skills Required

  • 10+ years of experience in IT infrastructure or related fields with demonstrated design and engineering capabilities
  • 3+ years working in a PKI environment, including experience with CA and certificate lifecycle management
  • Hands-on experience with encryption and cryptographic technologies such as TLS, PGP, PKI, and HSM
  • Experience with Linux platforms
  • Familiarity with Windows Server
  • Familiarity with Agile methodologies and DevSecOps principles
  • Solid understanding of key management, tokenization, and data masking
  • Knowledge of system vulnerabilities, penetration testing methods, and remediation techniques
  • Proficiency with scripting languages such as Python, PowerShell, Bash, or KornShell
  • Ability to collaborate across technical teams and effectively communicate with stakeholders at all levels
  • Strong organizational and prioritization skills, with the ability to manage multiple projects with competing demands
  • Experience with certificate management tools such as Venafi, Keyfactor, or similar platforms
  • Working knowledge of Entrust or other public certificate providers
  • Experience with configuration and infrastructure automation tools such as Ansible, Puppet, or Terraform
  • Familiarity with Identity and Access Management tools such as IBM TIM/TAM
  • Exposure to IoT device security and management
  • Hands-on experience with Red Hat technologies including Identity Management, RHV, Satellite, RHDS, and Ceph
  • Experience with AWS cloud services, including EC2, S3, Lambda, RDS, ALB/NLB
  • Background in architectural or design roles such as Solutions Architect, Technical Architect, or Technical Design Authority
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
200 Employees
Year Founded: 2011

What We Do

The Amatriot Group is a talent solutions firm providing technology expertise to the federal and commercial sectors. With over a decade of experience delivering mission-critical support to the intelligence, defense, and national security sectors, the company specializes in delivering cutting-edge technology solutions by securing top-tier talent to bridge workforce gaps in the most complex and secure environments.

Similar Jobs

GoodRx Logo GoodRx

Sr. Pharma Direct Sales Director

Consumer Web • Coupons • Healthtech • Social Impact • Pharmaceutical
Remote or Hybrid
USA
800 Employees
75K-254K Annually

Capital One Logo Capital One

Lead Data Engineer

Fintech • Machine Learning • Payments • Software • Financial Services
Hybrid
4 Locations
55000 Employees
179K-225K Annually

Capital One Logo Capital One

Consultant

Fintech • Machine Learning • Payments • Software • Financial Services
Hybrid
4 Locations
55000 Employees
209K-286K Annually
Remote or Hybrid
United States
500 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account