PKI Implementation Engineer
Job Description
Location: London or Brighton (Open to either location)
\nContract Duration: 6 Months
\nJob Type: Contract
About the Role\nAre you an experienced Public Key Infrastructure (PKI) professional looking for your next challenge? We are currently seeking a highly skilled and motivated PKI Engineer for a 6-month contract. In this role, you will play a critical part in designing, deploying, and managing certificate lifecycles, working with industry-leading PKI products and cloud identity platforms.
\nIf you have a strong background in cryptography, certificate management, and Azure ecosystems, we want to hear from you!
Key Requirements (What You Bring)\nTo be successful in this role, you should have hands-on experience and a solid understanding of the following:
\n- \n
- Core PKI Expertise: Strong working knowledge of PKI management and concepts, including Certificate Authority (CA) deployment, template creation, and end-to-end certificate lifecycle management. \n
- PKI Products: Proven experience or exposure implementing solutions such as Keyfactor, EJBCA, Auto-enrollment, and Orchestration services. \n
- Microsoft & Azure Ecosystem: Solid understanding of Azure federation, identity synchronization, ADFS, and core networking concepts. Hands-on experience with Active Directory (AD), Azure AD, and Active Directory Certificate Services (ADCS), as well as NDES. \n
- Architecture & Design: Working knowledge of creating high-level architecture design diagrams (a specific focus on PKI architecture is a major plus). \n
- Identity & Access: Familiarity with Single Sign-On (SSO), SAML, and a strong understanding of claims-aware applications. \n
- Systems Administration: Deep understanding of roles and permissions across both Windows and Linux environments. \n
- Automation & Scripting: Proficiency in PowerShell scripting with the ability to create custom workflows for API integrations. \n
- Hardware & Lifecycle Management: Hands-on experience working with Hardware Security Modules (HSM) and Certificate Lifecycle Management (CLM) tools. \n
While not strictly required, the following skills will make your application stand out:
\n- \n
- Protocols: Knowledge and practical experience working with SCEP (Simple Certificate Enrollment Protocol), as well as ACME, CMP, and EST protocols. \n
- EJBCA: Advanced knowledge or specialized experience working specifically with EJBCA. \n
- IAM: Broad exposure to Identity and Access Management (IAM) principles and technologies. \n
- OS Familiarity: Comfort and familiarity working within Linux/Unix operating systems. \n
- ITSM Tools: Experience utilizing IT Service Management solutions such as ServiceNow or BMC Remedy. \n
Apply today at Prasanna . merugu @ randstaddigital . comwith your CV highlighting your relevant PKI and Azure experience, along with your availability to start.
\nRandstad Technologies is acting as an Employment Business in relation to this vacancy.
