Job Openings Senior PKI\Cryptography Architect

About the job Senior PKI\Cryptography Architect

Job Title: PKI & Cryptography Lead

We are seeking a seasoned and highly skilled professional to lead the design, development, and ongoing management of the firms Public Key Infrastructure (PKI) and Cryptography program. This role will be responsible for overseeing the implementation, operation, and evolution of enterprise-level PKI services, ensuring robust, secure, and scalable cryptographic solutions across the organization.

Key Responsibilities:

  • Lead the architecture, deployment, and administration of enterprise PKI systems, including Certificate Authorities (CAs), registration authorities, and key management systems.

  • Develop and enforce policies, standards, and governance for digital certificates, encryption, and key handling.

  • Integrate PKI solutions into cloud and on-premises environments, with a focus on automation, scalability, and resilience.

  • Work closely with cybersecurity, infrastructure, and application teams to support secure system design and implementation.

  • Evaluate cryptographic technologies, emerging threats, and industry trends to guide continuous improvement.

  • Provide technical leadership, mentorship, and guidance across engineering and security teams.

Required Qualifications:

  • 5 to 10 years of experience (preferably 10+ years) managing PKI infrastructure in an enterprise environment.

  • Deep expertise in cryptography, certificate lifecycle management, and cloud-based certificate authorities (especially Azure Key Vault).

  • Strong background in security engineering or server engineering, having evolved into a PKI and cryptography specialist.

  • Proven experience designing, deploying, and maintaining PKI and cryptographic systems at scale in enterprise settings.

  • Solid understanding of encryption standards, TLS/SSL, HSMs, key rotation, secure storage, and compliance frameworks (e.g., NIST, ISO 27001, GDPR).

Preferred Qualifications:

  • Professional certification such as CISSP (Certified Information Systems Security Professional) is a plus.