Lead PKI Security Engineer
DTCC
Are you ready to make an impact at DTCC?
Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.
Pay and Benefits:
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
The Impact you will have in this role:
Being a member of CISO team, as a Lead PKI Engineer, you will significantly contribute to the advancement of our Public Key Infrastructure. You will be involved in the design, implementation, and maintenance of our PKI systems, leveraging your skills to enhance security and operational efficiency. Utilizing tools such as Venafi, ADCS, and HSMs, and automating processes with Ansible, Terraform, and PowerShell, you will streamline our certificate management lifecycle. Your efforts will directly impact DTCC's cybersecurity framework, ensuring robust and efficient PKI operations. In our fast-paced team environment, you will have extensive opportunities for professional growth and development.
Join our PKI Engineering team and embark on a rewarding career journey with abundant learning opportunities in a supportive and energetic setting.
Your Primary Responsibilities:
- Supporting CLM for the certificates in use in our environment
- Maintain and update the PKI systems
- Develop and enforce security policies related to key management encryption standards.
- Support, troubleshoot issues related to PKI, and assist in certificate related issues to maintain seamless operations of the secure systems
**NOTE: The Responsibilities of this role are not limited to the details above. **
Qualifications:
- Minimum of 6 years of related experience
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
Talents Needed for Success:
- Solid understanding of PKI concepts and experience working with certificate inventory management systems, RAs, ADCS, HSMs, Ansible, Terraform, and PowerShell for automation
- Certifications such as CompTIA Security+, CISSP, or similar are highly beneficial
- Strong communication skills, a proactive approach to learning, and the ability to thrive in a dynamic, fast-paced team environment
- Strong Information Security experience, specifically in multi-tier PKI/Cryptography environment.
- Proven experience with configuring certificate authorities, templates and troubleshooting certificates (TLS handshakes)
- Proficient in using PKI tools like RAs, ADCS, and HSMs, along with automation tools such as Ansible, Terraform, and PowerShell
- Strong analytical skills to diagnose and resolve complex PKI-related technical issues
- Meticulous approach to managing and automating certificate lifecycle processes
- Ability to quickly adapt to new technologies and evolving technical environments
The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you’ll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It’s the chance to make a difference at a company that’s truly one of a kind.
Learn more about Clearance and Settlement by clicking here.
Being a member of CISO team, as a Lead PKI Engineer, you will significantly contribute to the advancement of our Public Key Infrastructure. You will be involved in the design, implementation, and maintenance of our PKI systems, leveraging your skills to enhance security and operational efficiency. Utilizing tools such as Venafi, ADCS, and HSMs, and automating processes with Ansible, Terraform, and PowerShell, you will streamline our certificate management lifecycle. Your efforts will directly impact DTCC's cybersecurity framework, ensuring robust and efficient PKI operations. In our fast-paced team environment, you will have extensive opportunities for professional growth and development. Join our PKI Engineering team and embark on a rewarding career journey with abundant learning opportunities in a supportive and energetic setting.