TL;DR
Sr. Software Engineer, Public Key Infrastructure (PKI) (Cybersecurity): Contribute to the development, automation, and support of PKI and certificate lifecycle management capabilities across the enterprise environment. Focus on secure authentication, encryption, and digital trust within our systems.
Location: San Francisco, Los Angeles, or Bellevue
Company
hirify.global is a company delivering cloud-scale security software across multiple public cloud platforms and hirify.global’s internal infrastructure.
What you will do
- Contribute to the implementation, development, deployment, configuration, and enhancement of EJBCA-based PKI infrastructure.
- Develop and maintain certificate lifecycle automation, including provisioning, renewal, revocation, monitoring, and audit logging.
- Support internal stakeholders with certificate enrollment workflows and usage patterns.
- Help integrate certificate-based authentication into enterprise platforms, services, and workloads.
- Participate in incident response and troubleshooting for PKI-related issues.
- Contribute to documentation, operational runbooks, and standards for PKI operations.
Requirements
- 5+ years of hands-on experience in PKI systems, including EJBCA or similar CA/RA platforms.
- Strong understanding of X.509 certificates, CRLs, OCSP, certificate templates, trust chains and key usage extensions.
- Experience with enrollment protocols such as SCEP, EST, ACME, or CMP.
- Experience with scripting or programming languages (e.g., Python, Golang, Java)
- Familiarity with cloud environments (AWS) and how PKI integrates with cloud services.
- Solid understanding of DevOps practices, CI/CD, monitoring, and ownership of production systems.
Nice to have
- Experience with hardware-backed security mechanisms such as TPM, HSM, or secure enclaves.
- Experience with PKI in Kubernetes or service mesh environments.
- Familiarity with relevant security frameworks or compliance standards (e.g., NIST, ISO, SOC 2).
Culture & Benefits
- The Enterprise Security Technology team builds and operates highly scalable, fault-tolerant, distributed systems.
- Key investments are in the area of Identity & Access and Public Key Infrastructure.
- Empowering all engineers to operate these environments in a secure manner.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →