FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Security Engineer – Certificate Automation Engineer
TruistSenior Security Engineer automating certificate deployment and validation across Truist’s financial services infrastructure. Scaling PKI lifecycle automation, reducing operational risk, and supporting crypto agility.
Posted 8/5/2026full-timeCharlotte • North Carolina, Virginia • 🇺🇸 United StatesSenior💰 $120,000 - $160,000 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in automation for certificate management, including deployment, installation, and lifecycle management across various infrastructure platforms. Proficient in security engineering principles, with a strong focus on integrating automation with existing systems and ensuring compliance with security best practices.
Highest-signal resume keywords
Certificate Lifecycle ManagementAutomation Development Using AnsiblePublic Key Infrastructure (PKI)Security Engineering ExperienceIntegration With F5 Load Balancers
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Automation Framework DevelopmentScripting (Python)API IntegrationThreat ModelingSecurity TestingPenetration TestingCertificate DeploymentNetwork SecurityEncryptionCI/CD Pipeline Understanding
Soft Skills
Strong CommunicationCross-Functional Stakeholder Engagement
Tools & Technologies
AnsibleServiceNowVenafiF5 Load BalancersIISApacheNGINXMiddlewareDatabase ServersApplication Servers
Certifications & Qualifications
CISSPGIAC
Industry Keywords
CybersecurityInformation SecurityFinancial ServicesRegulated IndustriesCrypto Agility
Tech Stack
Tools & technologiesAnsibleApacheCloudCyber SecurityNGINXPythonServiceNow
About the role
Key responsibilities & impact- Design and implement automation for certificate installation, deployment, and binding across servers, load balancers, web servers, and middleware
- Extend certificate issuance and renewal automation into end-to-end lifecycle automation, emphasizing last-mile deployment
- Develop and maintain automation frameworks using Ansible, APIs, and scripting
- Integrate certificate automation with F5 load balancers, IIS, Apache, NGINX, application servers, and database servers
- Partner with application and infrastructure teams to onboard systems to automated certificate deployment
- Establish standardized certificate installation and deployment patterns
- Implement pre- and post-installation validation to confirm certificates are deployed, trusted, and actively serving traffic
- Identify and remediate deployment-process gaps that cause outages, failed renewals, or misconfigurations
- Troubleshoot certificate incidents and perform root cause analysis
- Collaborate with engineering and business teams to align automation with operational and risk objectives
- Contribute to shortened certificate lifecycle and crypto agility initiatives, including future quantum-safe requirements
- Provide technical leadership and guidance on certificate deployment best practices
- Lead or contribute to moderately to highly complex projects delivering scalable, resilient solutions
Requirements
What you’ll need- Bachelor’s degree or equivalent education, training, and work-related experience
- Minimum 7 years of experience in security engineering or related cybersecurity roles
- Deep specialized knowledge of cybersecurity principles, theories, and concepts
- Proven experience with software development lifecycle security practices
- Deep knowledge of threat modeling, security testing, and penetration testing
- Experience implementing and managing complex information security technologies
- Knowledge of encryption, Public Key Infrastructure (PKI), certificate authorities, identity management, and network security
- Hands-on certificate lifecycle management experience, especially certificate deployment and installation across infrastructure platforms
- Experience with servers, load balancers, and web/application servers
- Experience developing automation using scripting or tools such as Ansible, Python, and APIs
- Experience with certificate management platforms such as Venafi or similar enterprise PKI solutions
- Experience integrating automation with ServiceNow or similar workflow/orchestration platforms
- Experience automating deployment on F5 load balancers, IIS, Apache, NGINX, application servers, and middleware
- Familiarity with ACME protocols and API-driven certificate deployment
- Experience in large, complex enterprise environments, preferably financial services or highly regulated industries
- Understanding of DevOps and CI/CD pipelines as they relate to certificate deployment
- Exposure to crypto agility, shorter certificate lifecycles, and quantum-safe cryptography initiatives
- Strong communication and cross-functional stakeholder engagement skills
- Relevant certifications such as CISSP, GIAC, or cloud/security certifications are a plus
Benefits
Comp & perks- Medical insurance
- Dental insurance
- Vision insurance
- Life insurance
- Disability insurance
- Accidental death and dismemberment coverage
- Tax-preferred savings accounts
- 401k plan
- At least 10 days of vacation during the first year, prorated
- 10 sick days, prorated
- Paid holidays
- Defined benefit pension plan, depending on position and division
- Restricted stock units, depending on position and division
- Deferred compensation plan, depending on position and division
- Additional incentive pay