PKI Engineer with Venafi Expertise (10+ years exp)
Contract
Chicago, IL
Role Descriptions: Certificate Lifecycle Management Administer and support enterprise Certificate Lifecycle Management (CLM) services. Manage the complete certificate lifecycle including: oDiscoveryoRequestoIssuanceoRenewaloRevocationoDeploymentoMonitoringoRetirementEnsure certificates remain compliant with enterprise standards and industry requirements.Support certificate inventory management and visibility initiatives. Assist with remediation of expiring| unmanaged| self-signed| and non-compliant certificates Venafi Platform Administration Administer and maintain the Venafi platform and supporting infrastructure. Configure and manage: oPolicies oWorkflows oCertificate Authorities oIntegrations
oDiscovery jobs o Notifications oReporting oAccess controlsSupport platform upgrades| maintenance activities| and technology refresh initiatives. Collaborate with Venafi support and vendors to resolve technical issues and implement enhancements.Application Onboarding & Solution Engineering Lead application onboarding activities into the Certificate Lifecycle Management platform.Assess application certificate requirements and define onboarding approaches. Design and implement automation patterns suitable for application needs.Partner with application teams to understand deployment architectures| certificate formats| trust requirements| and operational processes.Support onboarding across: oWindowsoLinuxoAzureoKubernetesoWebLogicoIISoF5oKafkaoSolaceoPingoCloud-native platformsProvide technical consultation and solution recommendations to application teams. Certificate AutomationDesign| implement| and support certificate lifecycle automation solutions.Develop automation patterns using: oVenafi Native DriversoVenafi APIsovCert UtilitiesoCI/CD PipelinesoGitHub ActionsoAzure DevOpsoPowerShelloPythonoAnsibleAutomate certificate renewal| provisioning| deployment validation| and application restart activities.Drive reduction of manual certificate deployment processes and operational risk.Create reusable automation patterns and onboarding frameworks for adoption across the enterprise.PKI Operations & ResiliencySupport internal PKI infrastructure and certificate authority
—