- Company Name
- ALGOSECURE
- Job Title
- Consultant Expert PKI (H/F)
- Job Description
-
Job title: Consultant Expert PKI (H/F)
Role Summary: Lead the design, deployment, and ongoing operation of large‑scale PKI/IGC solutions. Serve as technical authority across the full PKI lifecycle, from build and integration to run‑time support, in an Agile/SAFe environment. Drive continuous improvement, automation, and incident response for PKI components including EJBCA, Luna 7 HSMs, Keyfactor Command, and Ilex CMS.
Expectations: Minimum 5 years in PKI/IGC or complex cyber‑security infrastructure environments. Proven ability to architect and manage PKI systems, HSMs, and CMS platforms. Strong scripting and automation skills. Experience in Agile/SAFe frameworks and facilitating technical workshops. Excellent documentation practices and stakeholder communication.
Key Responsibilities:
- Design, configure, and document a full PKI architecture (EJBCA, Luna 7 HSM, Keyfactor, Ilex CMS).
- Develop scripts and technical specs for infrastructure deployment across virtual environments (VMs, PICs).
- Conduct technical workshops, define, and implement continuous improvement actions.
- Build and maintain the PKI operational model, ensuring SLA compliance.
- Provide N1/N2/N3 support for PKI products, troubleshoot performance, security, and scalability issues.
- Prepare and present change proposals in CAB meetings.
- Automate repetitive PKI tasks, correlate metrics, and proactively prevent service disruptions.
- Participate in crisis management, diagnosing and remediating critical incidents.
Required Skills:
- PKI architecture (EJBCA, key management, certificate issuance)
- HSM administration (Luna 7 S700/S750/S790/U700/B700)
- Keyfactor Command (policy, lifecycle)
- CMS (Ilex/Nexpublica)
- Scripting (Python, Bash, PowerShell)
- Automation (Ansible, Terraform, CI/CD pipelines)
- Incident analysis, forensics, and root‑cause remediation
- Agile/Scrum/SAFe methodologies
- Workshop facilitation and technical documentation
- Multi‑stakeholder communication
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Cyber‑security, or related field (or equivalent practical experience)
- PKI‑related certifications (e.g., Certified PKI Professional, CISA, CISSP, GIAC GCI) preferred.