Senior Software Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Software Engineer (Cybersecurity): Contributing to the design, development, and automation of Enterprise grade Public Key Infrastructure (PKI) technologies with an accent on certificate lifecycle management capabilities across the enterprise environment. Focus on secure authentication, encryption, and digital trust within our systems.
Location: San Francisco, New York, or Bellevue, USA
Company
The Enterprise Security Technology team builds and operates highly scalable, fault-tolerant, distributed systems to deliver cloud-scale security software across multiple public cloud platforms and ’s internal infrastructure.
What you will do
- Contribute to the design, implementation, deployment, configuration, and enhancement of EJBCA-based PKI infrastructure.
- Define the technical roadmap for certificate lifecycle automation, secure key management, and high-assurance identity use cases.
- Develop and maintain certificate lifecycle automation, including provisioning, renewal, revocation, monitoring, and audit logging.
- Support internal stakeholders with certificate enrollment workflows and usage patterns.
- Collaborate with security architects, infrastructure, and application teams to align PKI solutions with organizational policies and compliance requirements.
- Participate in incident response and troubleshooting for PKI-related issues.
Requirements
- 5+ years of hands-on experience in PKI systems, including EJBCA or similar CA/RA platforms.
- 8+ years of experience with scripting or programming languages (e.g., Python, Golang, Java).
- Strong understanding of X.509 certificates, CRLs, OCSP, certificate templates, trust chains and key usage extensions.
- Experience with enrollment protocols such as SCEP, EST, ACME, or CMP.
- Familiarity with HSM integration, key escrow, and secure enclaves.
- Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or equivalent experience.
Nice to have
- Experience with hardware-backed security mechanisms such as TPM, HSM, or secure enclaves.
- Experience with PKI in Kubernetes or service mesh environments.
- Familiarity with relevant security frameworks or compliance standards.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →