A managed service Senior Security Engineer plays a key role in the daily operations of the system, ensuring it’s running efficiently and that requests via ticketing systems are completed with SLAs.
The candidate requires hands-on experience with CyberArk Machine Identity Management and managing its "business as usual" type tasks.
The role frequently involves investigating and resolving technical problems, so demonstrated troubleshooting skills are required, along with effective organization skills, the ability to multi-task, and efficient time-management skills.
Requirements
Minimum 5 to 8 years administration experience in working on Venafi Trust Protection Platform (TPP), including TLS Protect, SSH Protect, and Code Signing Protect.
Experience of working with On-Prem and SaaS environment for Venafi product solution.
Integrate Venafi with various certificate authorities like DigiCert, Entrust, Microsoft CA, GlobalSign, Let’s Encrypt, etc.
Managing the certificates for the load balancers, web servers, cloud services providers like AWS, Azure, GCP, and DevOps tools.
Hands-on experience with integrating Venafi into CI/CD pipelines and container orchestration tools.
Experience with automating certificate lifecycle processes through REST APIs, Venafi Drivers, and custom scripts.
Experience/Knowledge on integrating Venafi solution with SIEM, SNMP, ticketing system and multi- factor authentication etc.
Experience with configuring certificate issuance policies, expiration alerts, and renewal processes.
Experience in the Design, scalable, secure Framework for managing the certificates and SSH keys.
Regular discovery and assessments of current certificate management practices and define roadmaps for automation and maturity.
Experience in the support and optimization of the Venafi platform, including performance tuning, patching, and upgrades.
Monitor certificate inventories and proactively address certificate-related risks and incidents.
Conduct health check monitoring on all the Venafi solutions to ensure consistent availability of system to end users.
In-depth Knowledge of ITIL processes like Incident Management, Problem Management, Configuration Management and Change Management processes.
Advanced trouble shooting skills and identifying the severity of the issue, ability to resolve issues quickly to account/customer satisfaction and conduct RCA.
Documentation of technical configuration
Provide operational support on a 24x7/8X5 rotation basis.
Provides production support and participates in on-call rotation.
CyberArk Certified Certificate Manager or Certified Venafi Administrator. Add-on: CDE-PAM/CDE-CPC
Knowledge/Experience of CyberArk PAM On-prem and Pcloud solution or any other PAM Solution.
Knowledge/Experience in Remote Access (Alero), Secure Infrastructure Access (SIA), HTML5GW, Identity, etc.
Knowledge/Experience in integrating Conjur with various DevOps tools like Jenkins, Ansible, Kubernetes, OpenShift, Github, and Terraform.
Benefits
Equal Opportunity Employer (EOE)
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.