Are you an experienced PKI Engineer ready to take greater ownership of complex, secure infrastructure? Sopra Steria is delivering a unique solution from the ground up for the Defence sector, integrating infrastructure and applications within highly secure, mission‑critical environments.
This is an opportunity to play a leading role in shaping PKI services for a nationally significant programme, influencing design decisions, strengthening governance, and ensuring secure certificate services operate at scale. In this role, you will act as a senior technical specialist for PKI, providing engineering leadership across certificate management, certificate template design, HSM administration, PKI governance, and lifecycle processes.
Please note this role requires the person to be on site full time in our office.
What you will be doing:
- Lead PKI engineering and operational activities across secure enterprise environments.
- Own the design, review, deployment, and governance of certificate templates.
- Provide senior technical guidance on certificate management across Windows, Linux, web‑based platforms, enterprise applications, and infrastructure services.
- Work with architects, engineers, security teams, and application owners to define PKI integration requirements and ensure appropriate certificate usage.
- Lead the definition, documentation, and ongoing maintenance of PKI governance artefacts, including the Certification Policy Statement.
- Drive certificate lifecycle management processes, including issuance, renewal, revocation, auditing, reporting, and governance.
- Administer and provide technical oversight of HSM environments, including operational processes and security controls.
- Identify opportunities to improve PKI processes, automation, resilience, and operational maturity.
- Act as an escalation point for complex PKI issues across project and operational workstreams.
- Provide technical assurance that PKI services align with security, regulatory, and programme requirements.
What you will bring:
- Strong knowledge of DPKI / PKI within enterprise or secure environments.
- Proven experience in PKI engineering, administration, and architecture support.
- Experience providing technical leadership or acting as a senior escalation point for PKI‑related activities.
- Hands‑on experience with HSMs, ideally Thales HSM products.
- Strong experience in certificate management, certificate template design, and certificate template deployment.Experience managing certificate templates across enterprise‑scale environments.
- Good understanding of certificate lifecycle management, PKI governance, and policy documentation.
- Ability to work with infrastructure, application, security, and architecture teams to translate requirements into secure PKI solutions.
- Experience improving PKI processes, documentation, controls, or operational maturity.
It would be great if you had:
- Experience supporting enterprise applications and infrastructure with PKI integration requirements.
- Experience working in complex, secure, regulated, or Defence environments.
- Experience contributing to PKI strategy, service design, automation, or operational transformation.
- Experience mentoring engineers or providing technical direction within a project or service team.
Employment Type: Permanent Location: Hertfordshire Security Clearance Level: Eligible for Developed Vetting (DV) Salary: Competitive, based on experience Benefits: £5,400 car allowance, medical insurance, flex fund to purchase additional benefits, 25 days annual leave with the choice to buy extra days, life assurance, and 6% pension
#J-18808-Ljbffr