Trust Requirements Engineer
Listed on 2026-08-06
-
IT/Tech
Cybersecurity
As a Trust Requirements Engineer, you play a critical role in ensuring compliance with global trust and certificate standards. You analyze evolving regulatory frameworks and translate them into actionable requirements that guide product development, certificate issuance practices, and compliance operations.
Swiss Sign is a recognised Swiss Trust Service Provider (TSP). We build the foundation for secure digital business based on robust certificate services and advanced digital trust services across multiple regulatory frameworks. Our certificate services provide a fully Swiss made public key infrastructure for digital certificates, ensuring secure communication, data protection and compliance throughout the entire certificate lifecycle. Complementing this, our digital trust services enable legally compliant digital signatures, seals and timestamps, supporting end to end digital business processes based on verifiable, reusable credentials.
Anoverview of your tasks
Conduct in-depth compliance analysis of certificate issuance practices against industry standards, including:
Extended Validation (EV) Guidelines
S/MIME Baseline Requirements
Relevant RFCs, IETF, and ISO frameworks
Develop and maintain clear, structured compliance requirements specifications for internal stakeholders.
Collaborate cross-functionally with Product, Engineering, and Information Security & Compliance (ISC) teams to embed regulatory requirements into the software development lifecycle
Act as a Subject Matter Expert (SME) on:
Public Key Infrastructure (PKI)
Certificate profiles and life cycles
Cryptographic algorithms
Trust store requirements
Drafting ballots and proposals
Participating in technical discussions
Driving alignment with industry peers
Assess proposed changes to standards and regulations, translating them into practical guidance for engineering and operations teams
Monitor emerging trends and regulatory developments, including:
Certificate lifecycle changes
Automation protocols such as ACME
Root Store Policies
Support audit readiness by preparing materials and walkthroughs in collaboration with ISC and engineering teams
Contribute to root cause analysis and remediation efforts related to compliance incidents
What you bring along2+ years of experience in PKI, digital certificates, or a related domain
Strong understanding of:
X.509 certificate standards
RFC 5280
Ability to analyze complex technical and policy documents and convert them into clear compliance requirements
Hands-on experience with:
Certificate tools like ASN.
1
PKI troubleshooting and analysis methods
Excellent written and verbal communication skills in English
Any additional languages are an advantage
Nice to HaveExperience participating in standards bodies or working groups
Familiarity with audit frameworks (e.g., Web Trust, ETSI)
Exposure to secure software development practices
Knowledge of modern cryptographic trends (e.g., PQC)
About Swiss Sign.Empowering Digital Sovereignty Swiss Sign is a recognised Swiss Trust Service Provider (TSP). We build the foundation for secure digital business based on robust certificate services and advanced digital trust services across multiple regulatory frameworks. Our certificate services provide a fully Swiss made public key infrastructure for digital certificates, ensuring secure communication, data protection and compliance throughout the entire certificate lifecycle.
Complementing this, our digital trust services enable legally compliant digital signatures, seals and timestamps, supporting end to end digital business processes based on verifiable, reusable credentials. Swiss Sign enables firms to uphold the highest standards of data protection, privacy, and compliance while empowering digital sovereignty and ensuring that their business operates securely and within regulations. Our fully self-managed, geo-redundant infrastructure, - located exclusively in Switzerland - guarantees that sensitive customer data is handled with unparalleled protection, offering our clients and their customers unmatched peace of mind.
Swiss Sign is a wholly owned subsidiary of Swiss Post.
Competitive base salary with a wide range of extra benefits, like
- Training and development opportunities
- Contribution to a new mobile device after successful completion of the probation period (up to max. CHF 300)
- Half-fare travelcard
- 5-6 weeks of vacation / an additional week from age 50
- Attractive pension fund contributions - employer contributes 65%, employee 35%
We value diversity and inclusion, regardless of social identity, sexual orientation, religion and ideology, physical and mental disability, gender, ethnicity, nationality, or age. We are committed to fostering a welcoming environment that celebrates all forms of diversity, including those not explicitly mentioned.
#J-18808-LjbffrTo Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: