Senior Security Platform Engineer to implement certificate lifecycle automation using PKI, SSL/TLS, CyberArk Machine
Listed on 2026-08-01
-
IT/Tech
Systems Engineer, Cybersecurity, Cloud Computing: Infrastructure & Operations
Senior Security Platform Engineer to implement certificate lifecycle automation using PKI, SSL/TLS, Cyber Ark Machine Identity Security (Venafi), and Hashi Corp Vault
Duration:
December 31, 2026 (possibility of extension)
Location:
Canada (Remote/Hybrid) - Onsite Wednesdays at Downtown Toronto. Open to fully remote candidates across Canada if they can work EST hours
Join a high-visibility enterprise initiative focused on machine identity security, PKI modernization, and cloud-native security engineering within the insurance industry. This role supports large-scale SSL/TLS certificate rotation, platform integrations, application onboarding, and enterprise automation initiatives across Cyber Ark Machine Identity Security (Venafi), Hashi Corp Vault, AWS, Kubernetes, and related platforms. The successful candidate will contribute to strategic security platform delivery through automation engineering, API integrations, and Infrastructure-as-Code practices.
The contract includes potential extension opportunities through the end of 2026 based on project requirements and performance.
Must Haves
- 10+ years in Security Engineering
, Infrastructure Engineering
, or Platform Engineering - Strong expertise in PKI
, SSL/TLS certificates
, and certificate lifecycle management - Hands-on experience with Cyber Ark Machine Identity Security (Venafi),
Hashi Corp Vault
, AWS Certificate Manager (ACM), and Amazon EKS/Kubernetes - Experience with Python
, Power Shell
, Terraform
, Ansible
, CI/CD pipelines
, and Infrastructure as Code
Nice to Have
- Experience with Hashi Corp Vault PKI Secrets Engine
- Experience working in Agile delivery environments
- Security certifications such as CISSP, CCSP, Security+, or GIAC
- Experience supporting enterprise security platforms and cloud-native technologies
Responsibilities
- Design and implement automated certificate lifecycle management solutions
- Build automation for certificate issuance, renewal, deployment, rotation, and revocation
- Develop integrations between certificate management platforms and enterprise systems
- Implement certificate management integrations with F5, Akamai, AWS Certificate Manager, Amazon EKS/Kubernetes, Microsoft Graph, and Hashi Corp Vault
- Partner with application and infrastructure teams to implement certificate automation solutions
- Develop automation using scripting, APIs, Infrastructure-as-Code, and Dev Ops practices
Duration:
December 31, 2026 (possibility of extension)
Location:
Canada (Remote/Hybrid) - Onsite Wednesdays at Downtown Toronto. Open to fully remote candidates across Canada if they can work EST hours
Join a high-visibility enterprise initiative focused on machine identity security, PKI modernization, and cloud-native security engineering within the insurance industry. This role supports large-scale SSL/TLS certificate rotation, platform integrations, application onboarding, and enterprise automation initiatives across Cyber Ark Machine Identity Security (Venafi), Hashi Corp Vault, AWS, Kubernetes, and related platforms. The successful candidate will contribute to strategic security platform delivery through automation engineering, API integrations, and Infrastructure-as-Code practices.
The contract includes potential extension opportunities through the end of 2026 based on project requirements and performance.
Must Haves
- 10+ years in Security Engineering
, Infrastructure Engineering
, or Platform Engineering - Strong expertise in PKI
, SSL/TLS certificates
, and certificate lifecycle management - Hands-on experience with Cyber Ark Machine Identity Security (Venafi),
Hashi Corp Vault
, AWS Certificate Manager (ACM), and Amazon EKS/Kubernetes - Experience with Python
, Power Shell
, Terraform
, Ansible
, CI/CD pipelines
, and Infrastructure as Code - Bachelor Science degree in computer science
Nice to Have
- Experience with Hashi Corp Vault PKI Secrets Engine
- Experience supporting large-scale certificate management programs
- Experience working in Agile delivery environments
- Security certifications such as CISSP, CCSP, Security+, or GIAC
- Experience supporting enterprise security platforms and cloud-native technologies
Responsibilities
- Design and implement automated certificate lifecycle management solutions
- Build automation for certificate issuance, renewal, deployment, rotation, and revocation
- Develop integrations between certificate management platforms and enterprise systems
- Implement certificate management integrations with F5, Akamai, AWS Certificate Manager, Amazon EKS/Kubernetes, Microsoft Graph, and Hashi Corp Vault
- Develop certificate automation solutions leveraging Hashi Corp Vault PKI capabilities
- Partner with application and infrastructure teams to implement certificate automation solutions
- Develop automation using scripting, APIs, Infrastructure-as-Code, and Dev Ops practices
Disclaimer:
AI may be used in evaluating candidates.
This posting is for an existing vacancy.
#J-18808-LjbffrTo Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: