Information Technology Security Specialist (Ontario)

Information Technology Security Specialist (Ontario)

03 Aug
|
Hays
|
Ontario

03 Aug

Hays

Ontario

Job Title: Senior Security Platform Engineer

Location: Remote- Canada

Duration: Contract

Rate : CAD$ 90 - 100/hr

Position Summary The Security Platform Engineering team is seeking an experienced Senior Security Platform Engineer to accelerate delivery of a large-scale TLS Certificate Rotation Program and enterprise Machine Identity Security initiatives.

This hands-on engineering role focuses on certificate lifecycle automation, platform integrations, PKI modernization, and application onboarding. The successful candidate will work closely with application teams, infrastructure teams, cloud engineering teams, and security stakeholders to implement automated certificate management solutions and expand enterprise adoption of CyberArk Machine Identity Security (formerly Venafi) and HashiCorp Vault capabilities.

The ideal candidate has strong experience in PKI, SSL/TLS certificates, automation engineering, cloud technologies, API integrations, and enterprise security platforms.

Key Responsibilities

Certificate Lifecycle Automation

- Design, develop, and implement automated certificate lifecycle management solutions.
- Build automation for certificate issuance, renewal, deployment, rotation, and revocation.
- Support enterprise SSL certificate rotation initiatives across production and non-production environments.
- Identify and eliminate manual certificate management processes through automation.

Machine Identity Security & Venafi Engineering

- Support and enhance CyberArk Machine Identity Security (Venafi) capabilities.
- Develop integrations between certificate management platforms and enterprise systems.
- Implement reusable onboarding and automation patterns for application teams.
- Improve certificate visibility, compliance, governance, and operational efficiency.

Platform Integration Engineering Design and implement certificate management integrations with enterprise platforms including:

- F5
- Akamai
- AWS Certificate Manager (ACM)




- Amazon EKS / Kubernetes
- Microsoft Graph
- HashiCorp Vault
- Container platforms and cloud-native workloads
- Additional enterprise applications and infrastructure services

HashiCorp Vault Automation

- Develop certificate automation solutions leveraging HashiCorp Vault PKI capabilities.
- Build and enhance integrations between Vault and enterprise applications.
- Create automated certificate issuance and rotation workflows.
- Support onboarding of applications to Vault-based certificate management services.

Application Onboarding & Support

- Partner with application and infrastructure teams to implement certificate automation solutions.
- Provide technical guidance, troubleshooting, onboarding support, and best practices.
- Develop technical documentation, implementation guides, and operational runbooks.
- Lead knowledge-sharing and enablement sessions for stakeholders.

Engineering & Delivery

- Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices.
- Participate in Agile delivery processes including backlog refinement, estimation, sprint planning, and implementation activities.
- Contribute to platform resiliency, monitoring, operational support, and continuous improvement initiatives.

Must have Requirements

Technical Experience

1. 5+ years of experience in Security Engineering, Infrastructure Engineering, Platform Engineering, or related disciplines.
2. Strong experience with PKI, SSL/TLS certificates, and certificate lifecycle management.
3.



Hands-on experience with CyberArk Machine Identity Security (Venafi) or equivalent certificate management platforms.
4. Experience implementing certificate automation at enterprise scale.
5. Robust knowledge of cryptography principles, certificate trust chains, and machine identity security.
6. P latform & Cloud Experience : Hands-on experience with several of the following:

- HashiCorp Vault
- AWS Certificate Manager (ACM)
- Amazon EKS / Kubernetes
- Microsoft Graph
- F5 Load Balancers
- Akamai
- Azure and/or AWS cloud services
- REST APIs and platform integrations

1. Automation & DevOps: Experience with:

- Python
- PowerShell
- Terraform
- Ansible
- Git
- CI/CD pipelines
- Infrastructure as Code
- API-based automation

1. Infrastructure Skills

- Linux and Windows administration
- Networking fundamentals
- TLS/SSL protocols
- Load balancers and reverse proxies
- Kubernetes and container platforms
- Monitoring and logging solutions

Preferred Qualifications

1. Experience with HashiCorp Vault PKI Secrets Engine.
2. Experience supporting large-scale certificate management programs.
3. Experience working in Agile delivery environments.
4. Security certifications such as CISSP, CCSP, Security+, GIAC, or equivalent.
5. Experience supporting enterprise security platforms and cloud-native technologies.

Success Measures During the contract term, the successful candidate will:

- Accelerate delivery of the enterprise SSL Certificate Rotation Program.
- Increase certificate lifecycle automation across strategic platforms.
- Deliver integrations with F5, Akamai, ACM, EKS, Microsoft Graph, HashiCorp Vault, and other enterprise technologies.
- Reduce manual certificate management activities through automation.
- Improve application onboarding velocity and adoption of automated certificate management services.
- Enhance operational efficiency, compliance, and overall machine identity security posture.

📌 Information Technology Security Specialist (Ontario)
🏢 Hays
📍 Ontario

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: information technology security specialist (ontario) / ontario

Subscribe to this job alert:

Get the latest job offers by email for: information technology security specialist (ontario) / ontario