Senior Security Platform Engineer to implement certificate lifecycle automation using PKI, SSL/TLS, (Ontario)

Senior Security Platform Engineer to implement certificate lifecycle automation using PKI, SSL/TLS, (Ontario)

02 Aug
|
S.i. Systems
|
Ontario

02 Aug

S.i. Systems

Ontario

Senior Security Platform Engineer to implement certificate lifecycle automation using PKI, SSL/TLS, CyberArk Machine Identity Security (Venafi), and HashiCorp Vault
Duration:December 31, 2026 (possibility of extension)

Location:Canada (Remote/Hybrid) - Onsite Wednesdays at Downtown Toronto. Open to fully remote candidates across Canada if they can work EST hours

Join a high-visibility enterprise initiative focused on machine identity security, PKI modernization, and cloud-native security engineering within the insurance industry. This role supports large-scale SSL/TLS certificate rotation, platform integrations, application onboarding, and enterprise automation initiatives across CyberArk Machine Identity Security (Venafi), HashiCorp Vault, AWS, Kubernetes, and related platforms. The successful candidate will contribute to strategic security platform delivery through automation engineering, API integrations, and Infrastructure-as-Code practices. The contract includes potential extension opportunities through the end of 2026 based on project requirements and performance.

Must Haves

10+ years in Security Engineering , Infrastructure Engineering , or Platform Engineering

Solid expertise in PKI , SSL/TLS certificates , and certificate lifecycle management

Hands-on experience with CyberArk Machine Identity Security (Venafi) , HashiCorp Vault , AWS Certificate Manager (ACM) , and Amazon EKS/Kubernetes

Experience with Python , PowerShell , Terraform , Ansible , CI/CD pipelines , and Infrastructure as Code

Nice to Have

Experience with HashiCorp Vault PKI Secrets Engine

Experience working in Agile delivery environments

Security certifications such as CISSP, CCSP, Security+, or GIAC

Experience supporting enterprise security platforms and cloud-native technologies

Responsibilities





Design and implement automated certificate lifecycle management solutions

Build automation for certificate issuance, renewal, deployment, rotation, and revocation

Develop integrations between certificate management platforms and enterprise systems

Implement certificate management integrations with F5, Akamai, AWS Certificate Manager, Amazon EKS/Kubernetes, Microsoft Graph, and HashiCorp Vault

Partner with application and infrastructure teams to implement certificate automation solutions

Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices

Duration:December 31, 2026 (possibility of extension)

Location:Canada (Remote/Hybrid) - Onsite Wednesdays at Downtown Toronto. Open to fully remote candidates across Canada if they can work EST hours

Join a high-visibility enterprise initiative focused on machine identity security, PKI modernization, and cloud-native security engineering within the insurance industry. This role supports large-scale SSL/TLS certificate rotation, platform integrations, application onboarding, and enterprise automation initiatives across CyberArk Machine Identity Security (Venafi), HashiCorp Vault, AWS, Kubernetes, and related platforms. The successful candidate will contribute to strategic security platform delivery through automation engineering, API integrations, and Infrastructure-as-Code practices.



The contract includes potential extension opportunities through the end of 2026 based on project requirements and performance.

Must Haves

10+ years in Security Engineering , Infrastructure Engineering , or Platform Engineering

Strong expertise in PKI , SSL/TLS certificates , and certificate lifecycle management

Hands-on experience with CyberArk Machine Identity Security (Venafi) , HashiCorp Vault , AWS Certificate Manager (ACM) , and Amazon EKS/Kubernetes

Experience with Python , PowerShell , Terraform , Ansible , CI/CD pipelines , and Infrastructure as Code

Bachelor Science degree in computer science

Nice to Have

Experience with HashiCorp Vault PKI Secrets Engine

Experience supporting large-scale certificate management programs

Experience working in Agile delivery environments

Security certifications such as CISSP, CCSP, Security+, or GIAC

Experience supporting enterprise security platforms and cloud-native technologies

Responsibilities

Design and implement automated certificate lifecycle management solutions

Build automation for certificate issuance, renewal, deployment, rotation, and revocation

Develop integrations between certificate management platforms and enterprise systems

Implement certificate management integrations with F5, Akamai, AWS Certificate Manager, Amazon EKS/Kubernetes, Microsoft Graph, and HashiCorp Vault

Develop certificate automation solutions leveraging HashiCorp Vault PKI capabilities

Partner with application and infrastructure teams to implement certificate automation solutions

Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices

Disclaimer:

AI may be used in evaluating candidates.

This posting is for an existing vacancy.

#J-18808-Ljbffr

📌 Senior Security Platform Engineer to implement certificate lifecycle automation using PKI, SSL/TLS, (Ontario)
🏢 S.i. Systems
📍 Ontario

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior security platform engineer to implement certificate lifecycle automation using pki, ssl/tls, (ontario) / ontario

Subscribe to this job alert:

Get the latest job offers by email for: senior security platform engineer to implement certificate lifecycle automation using pki, ssl/tls, (ontario) / ontario