Staff Software Engineer, Certificate Lifecycle Management
New
K
Keeper SecurityCybersecurity Software
United StatesFull-TimeStaff
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 8+ years
- Required Skills
- KubernetesDistributed Systems
Requirements
- 8+ years of professional software engineering experience, including significant experience building backend, infrastructure or security-focused systems
- Deep hands-on experience with certificate lifecycle management, PKI, machine identity security or a closely related domain
- Strong understanding of X.509 certificates, certificate authorities, certificate chains, trust stores, private keys and public key cryptography
- Experience with certificate lifecycle operations including discovery, enrollment, issuance, deployment, renewal, rotation, revocation and expiration management
- Strong knowledge of certificate and PKI protocols and technologies such as ACME, SCEP, EST, OCSP, CRLs and TLS
- Strong backend software engineering experience using languages such as Java, Go, Python, C++, C# or similar
- Experience designing scalable APIs, distributed systems and automation workflows
- Experience integrating with enterprise PKI systems, certificate authorities, cloud platforms or infrastructure technologies
- Strong understanding of secure key handling, authentication, authorization and cryptographic trust
- Ability to lead architecture discussions and make sound technical tradeoffs across security, scalability, reliability and usability
- Proven ability to mentor engineers and influence technical direction across teams
- Bachelor’s degree in Computer Science, Engineering or a related field, or equivalent practical experience
Responsibilities
- Architect and develop certificate lifecycle management capabilities spanning discovery, inventory, enrollment, issuance, deployment, renewal, rotation and revocation
- Design scalable backend services and APIs for managing certificates, machine identities and related cryptographic metadata across enterprise environments
- Build certificate discovery and automation workflows across cloud platforms, Kubernetes, web servers, load balancers, databases, network devices and other infrastructure
- Design integrations with public and private certificate authorities and enterprise PKI environments
- Develop secure workflows for certificate enrollment, key handling, trust validation and certificate deployment
- Solve complex engineering challenges involving certificate chains, trust stores, expiration, ownership, policy enforcement and cryptographic compliance
- Provide technical leadership on PKI architecture, machine identity, cryptographic standards and certificate automation
- Lead technical design reviews, mentor engineers and help establish engineering standards for security-sensitive certificate management capabilities
View Full Description & ApplyYou'll be redirected to the employer's site