Staff Software Engineer, Certificate Lifecycle Management

New
K
Keeper SecurityCybersecurity Software
United StatesFull-TimeStaff
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
8+ years
Required Skills
KubernetesDistributed Systems

Requirements

  • 8+ years of professional software engineering experience, including significant experience building backend, infrastructure or security-focused systems
  • Deep hands-on experience with certificate lifecycle management, PKI, machine identity security or a closely related domain
  • Strong understanding of X.509 certificates, certificate authorities, certificate chains, trust stores, private keys and public key cryptography
  • Experience with certificate lifecycle operations including discovery, enrollment, issuance, deployment, renewal, rotation, revocation and expiration management
  • Strong knowledge of certificate and PKI protocols and technologies such as ACME, SCEP, EST, OCSP, CRLs and TLS
  • Strong backend software engineering experience using languages such as Java, Go, Python, C++, C# or similar
  • Experience designing scalable APIs, distributed systems and automation workflows
  • Experience integrating with enterprise PKI systems, certificate authorities, cloud platforms or infrastructure technologies
  • Strong understanding of secure key handling, authentication, authorization and cryptographic trust
  • Ability to lead architecture discussions and make sound technical tradeoffs across security, scalability, reliability and usability
  • Proven ability to mentor engineers and influence technical direction across teams
  • Bachelor’s degree in Computer Science, Engineering or a related field, or equivalent practical experience

Responsibilities

  • Architect and develop certificate lifecycle management capabilities spanning discovery, inventory, enrollment, issuance, deployment, renewal, rotation and revocation
  • Design scalable backend services and APIs for managing certificates, machine identities and related cryptographic metadata across enterprise environments
  • Build certificate discovery and automation workflows across cloud platforms, Kubernetes, web servers, load balancers, databases, network devices and other infrastructure
  • Design integrations with public and private certificate authorities and enterprise PKI environments
  • Develop secure workflows for certificate enrollment, key handling, trust validation and certificate deployment
  • Solve complex engineering challenges involving certificate chains, trust stores, expiration, ownership, policy enforcement and cryptographic compliance
  • Provide technical leadership on PKI architecture, machine identity, cryptographic standards and certificate automation
  • Lead technical design reviews, mentor engineers and help establish engineering standards for security-sensitive certificate management capabilities
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now