




Job Description
Sr. Security Engineer
Location: Onshore
Job Summary –
Senior PKI Security Engineer
Years of experience needed – 6- 8 year.
Technical Skills:
Security professionals with extensive hands-on experience on PKI technology and market trends, assess the impact of emerging security threats on the enterprise risk level, recommend technology direction and/or adjustments to incorporate in the business plans. Consults with other members of team, client, and end users to identify PKI requirements and develop requirements documentation.
Good working experience with scripting platforms (PowerShell, Batch, Json, Python, YAML, etc)
· Expert in PKI design, implementation, administration, and provisioning in AWS. Extensive experience in AWS PKI services: KMS, CloudHSM, ACM, CloudFront, Secrets Manager, CloudTrail
· Experience with PKI-based products (including Web servers and certification authorities) and Common PKI-based protocols (including SSL and TLS, HTTPs, or LDAPs).
· A solid understanding of Public Key Infrastructure (PKI) including technology, standards, and implementations, with experience managing, configuring, or supporting a PKI certificate authority
· Experience with certificate authority (CA) implementation in compliance with the Federal PKI (FPKI) Common Policy Authority.
· Conduct technical research and set cloud security direction and strategy
· Experience in automating certificate renewal and certificate life cycle management.
· Experience with Microsoft's PKI Technologies and latest Windows and Linux server platforms.
· Experience with integration of Venafi with Microsoft PKI Technologies and Public PKI Providers.
· Experience on IBM Mainframe platforms Encryption (TKE, UKO, SGKLM, etc).
· Experience in areas such as identity management, provisioning, authentication, authorization, certification/governance, monitoring along, including HSPD-12 compliance.
· Experience developing and implementing IT Contingency Plans.
· Strong communication skills.
· Strong attention to detail.
· Keen diagnostic and problem solving skills.
TECHNICAL/PROFESSIONAL CERTIFICATIONS & SKILLS (PREFERRED)
· Bachelor’s Degree in Information Security, Computer Science, or related field.
· 5+ years of professional experience in PKI, Venafi, digital certificates management, IBM-Mainframe, Scripting and Information Security domains.
· Experience with Agile software development methodologies.
· Preferred one or more certifications: CISSP, AWS Cloud Certificates, CISM or other Cyber Security related certification.
High performing and self-motivated, extensive professional experience in designing, implementing and managing PKI and security solutions. · Solid understanding of PKI concepts and security properties. · Support PKI-based products (including Web servers and certification authorities) and Common PKI-based protocols (including SSL and TLS, HTTPs, or LDAPs). · Experience with certificate authority (CA) implementation in compliance with the Federal PKI (FPKI) Common Policy Authority. · Review, patch, the Red Hat Certificate System source code for defects. · Develop Red Hat Certificate System source code to implement new capability. · Strong expertise in PKI Engineering Support and troubleshooting. · Experience with HSM design and implementation. · Working knowledge with OSI layer 2-7 security tactics and different kinds of attacks. · Demonstrated abilities in working with team to deliver projects to clients within specified timeframe and as per specifications.
Certification:
N/A
Equal opportunity Employer:
Mphasis is an equal opportunity/affirmative action employer. We provide equal employment opportunities to applicants and existing associates and evaluate qualified candidates without regard to race, gender, national origin, ancestry, age, color, religious creed, marital status, genetic information, sexual orientation, gender identity, gender expression, sex (including pregnancy, breast feeding and related medical conditions), mental or physical disability, medical conditions military and veteran status or any other status or condition protected by applicable federal, state, or local laws, governmental regulations and executive orders.
Skills
PRIMARY COMPETENCY : Information Security PRIMARY SKILL : Cyber Security for Cloud PRIMARY SKILL PERCENTAGE : 70 SECONDARY COMPETENCY : Information Security SECONDARY SKILL : Cryptography / PKI / Encryption SECONDARY SKILL PERCENTAGE : 20 TERTIARY COMPETENCY : Information Security TERTIARY SKILL : Security Design & Integration TERTIARY SKILL PERCENTAGE : 10
Equal opportunity Employer:
Mphasis is an equal opportunity/affirmative action employer. We provide equal employment opportunities to applicants and existing associates and evaluate qualified candidates without regard to race, gender, national origin, ancestry, age, color, religious creed, marital status, genetic information, sexual orientation, gender identity, gender expression, sex (including pregnancy, breast feeding and related medical conditions), mental or physical disability, medical conditions military and veteran status or any other status or condition protected by applicable federal, state, or local laws, governmental regulations and executive orders.