Information Technology Security Specialist
About the role
Job Title: Senior Security Platform Engineer
Location: Remote- Canada Duration: Contract Rate : CAD$ 90 - 100/hr
Position Summary
The Security Platform Engineering team is seeking an experienced Senior Security Platform Engineer to accelerate delivery of a large-scale TLS Certificate Rotation Program and enterprise Machine Identity Security initiatives. This hands-on engineering role focuses on certificate lifecycle automation, platform integrations, PKI modernization, and application onboarding. The successful candidate will work closely with application teams, infrastructure teams, cloud engineering teams, and security stakeholders to implement automated certificate management solutions and expand enterprise adoption of CyberArk Machine Identity Security (formerly Venafi) and HashiCorp Vault capabilities. The ideal candidate has strong experience in PKI, SSL/TLS certificates, automation engineering, cloud technologies, API integrations, and enterprise security platforms.
Key Responsibilities
Certificate Lifecycle Automation Design, develop, and implement automated certificate lifecycle management solutions. Build automation for certificate issuance, renewal, deployment, rotation, and revocation. Support enterprise SSL certificate rotation initiatives across production and non-production environments. Identify and eliminate manual certificate management processes through automation.
Machine Identity Security & Venafi Engineering
Support and enhance CyberArk Machine Identity Security (Venafi) capabilities. Develop integrations between certificate management platforms and enterprise systems. Implement reusable onboarding and automation patterns for application teams. Improve certificate visibility, compliance, governance, and operational efficiency.
Platform Integration Engineering
Design and implement certificate management integrations with enterprise platforms including: F5 Akamai AWS Certificate Manager (ACM) Amazon EKS / Kubernetes Microsoft Graph HashiCorp Vault Container platforms and cloud-native workloads Additional enterprise applications and infrastructure services HashiCorp Vault Automation Develop certificate automation solutions leveraging HashiCorp Vault PKI capabilities. Build and enhance integrations between Vault and enterprise applications. Create automated certificate issuance and rotation workflows. Support onboarding of applications to Vault-based certificate management services.
Application Onboarding & Support
Partner with application and infrastructure teams to implement certificate automation solutions. Provide technical guidance, troubleshooting, onboarding support, and best practices. Develop technical documentation, implementation guides, and operational runbooks. Lead knowledge-sharing and enablement sessions for stakeholders.
Engineering & Delivery
Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices. Participate in Agile delivery processes including backlog refinement, estimation, sprint planning, and implementation activities. Contribute to platform resiliency, monitoring, operational support, and continuous improvement initiatives.
Must have Requirements
Technical Experience 5+ years of experience in Security Engineering, Infrastructure Engineering, Platform Engineering, or related disciplines. Strong experience with PKI, SSL/TLS certificates, and certificate lifecycle management. Hands-on experience with CyberArk Machine Identity Security (Venafi) or equivalent certificate management platforms. Experience implementing certificate automation at enterprise scale. Strong knowledge of cryptography principles, certificate trust chains, and machine identity security.
Platform & Cloud Experience: Hands-on experience with several of the following
HashiCorp Vault AWS Certificate Manager (ACM) Amazon EKS / Kubernetes Microsoft Graph F5 Load Balancers Akamai Azure and/or AWS cloud services REST APIs and platform integrations Automation & DevOps: Experience with: Python PowerShell Terraform Ansible Git CI/CD pipelines Infrastructure as Code API-based automation
Infrastructure Skills
Linux and Windows administration Networking fundamentals TLS/SSL protocols Load balancers and reverse proxies Kubernetes and container platforms Monitoring and logging solutions
Preferred Qualifications
Experience with HashiCorp Vault PKI Secrets Engine. Experience supporting large-scale certificate management programs. Experience working in Agile delivery environments. Security certifications such as CISSP, CCSP, Security+, GIAC, or equivalent. Experience supporting enterprise security platforms and cloud-native technologies.
Success Measures
During the contract term, the successful candidate will: Accelerate delivery of the enterprise SSL Certificate Rotation Program. Increase certificate lifecycle automation across strategic platforms. Deliver integrations with F5, Akamai, ACM, EKS, Microsoft Graph, HashiCorp Vault, and other enterprise technologies. Reduce manual certificate management activities through automation. Improve application onboarding velocity and adoption of automated certificate management services. Enhance operational efficiency, compliance, and overall machine identity security posture.
About Hays
We are leaders in specialist recruitment and workforce solutions, offering advisory services such as learning and skill development, career transitions and employer brand positioning.
As the Leadership Partner to our customers, we invest in lifelong partnerships that empower people and businesses to succeed. We help you achieve your career goals and deliver your business needs by combining meaningful innovation with our global scale and insights.
Last year we helped over 280,000 people find their next career. Join the millions of people around the world that our specialist recruitment consultants provide with up-to-date information on career options, interesting insights and specific industry trends.
We help our customers define and implement strategies to create inclusive and equitable workplaces. Through harnessing and analysing data, we support business decision making and advise on how to access Talent Networks. We also assist in identifying attractive employer propositions by truly understanding a company’s identity, and support clients with all aspects of their Early Careers proposition, from strategic planning through to operational execution.
Hays is the market leader in the UK and Asia Pacific and one of the market leaders in Continental Europe and Latin America. The c.12,800 people we employ around the world partner with clients and candidates to power the world of work. Every day our expert consultants help thousands of candidates find their next role, and they also help clients reshape workforces and deal with talent shortages. In the year to 30 June 2021, we placed 77,000 people in permanent jobs and 244,000 people into temporary roles. For more information about our global network, strategy and Group financial results, visit www.haysplc.com
Similar Jobs
Information Technology Security Specialist
About the role
Job Title: Senior Security Platform Engineer
Location: Remote- Canada Duration: Contract Rate : CAD$ 90 - 100/hr
Position Summary
The Security Platform Engineering team is seeking an experienced Senior Security Platform Engineer to accelerate delivery of a large-scale TLS Certificate Rotation Program and enterprise Machine Identity Security initiatives. This hands-on engineering role focuses on certificate lifecycle automation, platform integrations, PKI modernization, and application onboarding. The successful candidate will work closely with application teams, infrastructure teams, cloud engineering teams, and security stakeholders to implement automated certificate management solutions and expand enterprise adoption of CyberArk Machine Identity Security (formerly Venafi) and HashiCorp Vault capabilities. The ideal candidate has strong experience in PKI, SSL/TLS certificates, automation engineering, cloud technologies, API integrations, and enterprise security platforms.
Key Responsibilities
Certificate Lifecycle Automation Design, develop, and implement automated certificate lifecycle management solutions. Build automation for certificate issuance, renewal, deployment, rotation, and revocation. Support enterprise SSL certificate rotation initiatives across production and non-production environments. Identify and eliminate manual certificate management processes through automation.
Machine Identity Security & Venafi Engineering
Support and enhance CyberArk Machine Identity Security (Venafi) capabilities. Develop integrations between certificate management platforms and enterprise systems. Implement reusable onboarding and automation patterns for application teams. Improve certificate visibility, compliance, governance, and operational efficiency.
Platform Integration Engineering
Design and implement certificate management integrations with enterprise platforms including: F5 Akamai AWS Certificate Manager (ACM) Amazon EKS / Kubernetes Microsoft Graph HashiCorp Vault Container platforms and cloud-native workloads Additional enterprise applications and infrastructure services HashiCorp Vault Automation Develop certificate automation solutions leveraging HashiCorp Vault PKI capabilities. Build and enhance integrations between Vault and enterprise applications. Create automated certificate issuance and rotation workflows. Support onboarding of applications to Vault-based certificate management services.
Application Onboarding & Support
Partner with application and infrastructure teams to implement certificate automation solutions. Provide technical guidance, troubleshooting, onboarding support, and best practices. Develop technical documentation, implementation guides, and operational runbooks. Lead knowledge-sharing and enablement sessions for stakeholders.
Engineering & Delivery
Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices. Participate in Agile delivery processes including backlog refinement, estimation, sprint planning, and implementation activities. Contribute to platform resiliency, monitoring, operational support, and continuous improvement initiatives.
Must have Requirements
Technical Experience 5+ years of experience in Security Engineering, Infrastructure Engineering, Platform Engineering, or related disciplines. Strong experience with PKI, SSL/TLS certificates, and certificate lifecycle management. Hands-on experience with CyberArk Machine Identity Security (Venafi) or equivalent certificate management platforms. Experience implementing certificate automation at enterprise scale. Strong knowledge of cryptography principles, certificate trust chains, and machine identity security.
Platform & Cloud Experience: Hands-on experience with several of the following
HashiCorp Vault AWS Certificate Manager (ACM) Amazon EKS / Kubernetes Microsoft Graph F5 Load Balancers Akamai Azure and/or AWS cloud services REST APIs and platform integrations Automation & DevOps: Experience with: Python PowerShell Terraform Ansible Git CI/CD pipelines Infrastructure as Code API-based automation
Infrastructure Skills
Linux and Windows administration Networking fundamentals TLS/SSL protocols Load balancers and reverse proxies Kubernetes and container platforms Monitoring and logging solutions
Preferred Qualifications
Experience with HashiCorp Vault PKI Secrets Engine. Experience supporting large-scale certificate management programs. Experience working in Agile delivery environments. Security certifications such as CISSP, CCSP, Security+, GIAC, or equivalent. Experience supporting enterprise security platforms and cloud-native technologies.
Success Measures
During the contract term, the successful candidate will: Accelerate delivery of the enterprise SSL Certificate Rotation Program. Increase certificate lifecycle automation across strategic platforms. Deliver integrations with F5, Akamai, ACM, EKS, Microsoft Graph, HashiCorp Vault, and other enterprise technologies. Reduce manual certificate management activities through automation. Improve application onboarding velocity and adoption of automated certificate management services. Enhance operational efficiency, compliance, and overall machine identity security posture.
About Hays
We are leaders in specialist recruitment and workforce solutions, offering advisory services such as learning and skill development, career transitions and employer brand positioning.
As the Leadership Partner to our customers, we invest in lifelong partnerships that empower people and businesses to succeed. We help you achieve your career goals and deliver your business needs by combining meaningful innovation with our global scale and insights.
Last year we helped over 280,000 people find their next career. Join the millions of people around the world that our specialist recruitment consultants provide with up-to-date information on career options, interesting insights and specific industry trends.
We help our customers define and implement strategies to create inclusive and equitable workplaces. Through harnessing and analysing data, we support business decision making and advise on how to access Talent Networks. We also assist in identifying attractive employer propositions by truly understanding a company’s identity, and support clients with all aspects of their Early Careers proposition, from strategic planning through to operational execution.
Hays is the market leader in the UK and Asia Pacific and one of the market leaders in Continental Europe and Latin America. The c.12,800 people we employ around the world partner with clients and candidates to power the world of work. Every day our expert consultants help thousands of candidates find their next role, and they also help clients reshape workforces and deal with talent shortages. In the year to 30 June 2021, we placed 77,000 people in permanent jobs and 244,000 people into temporary roles. For more information about our global network, strategy and Group financial results, visit www.haysplc.com