Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

PKI Lead Engineer

$122.9k - $150k

ASM Research, An Accenture Federal Services Company

The PKI Lead Engineer serves as the senior technical authority for the design, implementation, and sustainment of enterprise Public Key Infrastructure services that enable secure authentication, encryption, and digital signatures across the client's IT environment. This role leads the lifecycle management of digital certificates and cryptographic keys, ensuring resilient, compliant, and well-governed PKI capabilities that protect sensitive information and support mission critical access control.

Key Responsibilities

  • Lead the design, implementation, and ongoing operations of enterprise PKI infrastructures, including root and subordinate certificate authorities, registration authorities, and associated hardware and software components.

  • Manage the full lifecycle of digital certificates and cryptographic keys for users, devices, applications, and services, including issuance, renewal, suspension, and revocation with strong controls and automation.

  • Develop, document, and enforce PKI policies, certification practice statements, standards, and procedures aligned to enterprise security and regulatory requirements.

  • Integrate PKI services with identity and access management platforms, directory services, network security controls, and secure application architectures to enable strong authentication and encryption.

  • Monitor, audit, and assess PKI infrastructure health and compliance, performing regular reviews, root cause analyses, and remediation activities to maintain high availability and integrity.

  • Lead the evaluation, selection, and implementation of PKI related tools, including certificate discovery, management, and automation solutions, and recommend improvements to strengthen cryptographic services.

  • Collaborate with security operations and application teams to analyze and respond to PKI related incidents, vulnerabilities, and findings, including support for penetration testing and secure code initiatives.

  • Provide expert guidance, training, and mentoring to engineers and developers on PKI usage, certificate management best practices, and secure cryptographic design patterns in enterprise environments.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related technical discipline, or equivalent relevant experience.

  • Minimum of 8 years of experience in cybersecurity, security engineering, or network security roles, including significant hands-on exposure to PKI or cryptographic services.

  • Demonstrated experience designing, implementing, and operating enterprise PKI solutions, including certificate authorities, key management, and certificate lifecycle workflows.

  • Strong knowledge of authentication, authorization, and encryption concepts, including TLS, digital signatures, certificate based access control, and related standards (for example, X.509, OCSP, CRL).

  • Ability to obtain and maintain a Public Trust investigation, with US citizenship required in support of federal client requirements.

  • Proficiency with Unix/Linux or similar operating systems and enterprise infrastructure environments used to host PKI and security services.

  • Candidates must possess a current secret security clearance.

Preferred Qualifications

  • Advanced cybersecurity certifications such as CISSP, CISM, CISA, or CRISC demonstrating broad security architecture and governance expertise.

  • Experience integrating PKI with identity and access management platforms, federated identity standards (for example, SAML), and role based access control models in large enterprises.

  • Background supporting PKI and cryptographic services in complex federal or regulated IT environments with rigorous compliance requirements.

  • Handson experience with certificate discovery and management tools, hardware security modules, and automation frameworks for largescale certificate deployment.

  • Familiarity with secure software development practices, application security testing, and remediation of cryptographic vulnerabilities across web and service architectures.

  • Prior experience leading small technical teams or serving as a subject matter expert for enterprise security initiatives.

Job-Specific Skills

  • Enterprise PKI Architecture â?¯-- Designs and documents scalable PKI architectures, including root hierarchy, trust models, and integration patterns with enterprise systems.

  • Certificate Lifecycle Management â?¯-- Establishes and operates repeatable processes and automation for issuing, renewing, and revoking certificates for diverse identities and workloads.

  • Cryptographic Standards Expertise â?¯-- Applies industry cryptographic standards and algorithms to ensure strong encryption, signing, and key management practices in enterprise solutions.

  • Policy and Governance Development â?¯-- Authors and maintains PKI policies, standards, and certification practice statements, aligning them with organizational risk and compliance needs.

  • Security Integration Engineering â?¯-- Integrates PKI with identity, access management, network devices, and applications to enable secure, certificate based controls.

  • PKI Monitoring and Audit â?¯-- Implements monitoring, logging, and audit processes that provide visibility into PKI operations and support internal and external assessments.

  • Incident Response for PKI â?¯-- Leads investigation and remediation of PKI related incidents, including mis-issued certificates, key compromise, and cryptographic vulnerabilities.

  • Automation and Tooling â?¯-- Leverages scripting, configuration management, and PKI toolsets to streamline certificate issuance, enrollment, and inventory management.

  • Cross Functional Collaboration â?¯-- Works closely with security, infrastructure, application, and operations teams to align PKI capabilities with enterprise objectives and constraints.

  • Technical Mentorship â?¯-- Coaches junior engineers and developers on PKI concepts, secure implementation patterns, and operational best practices to uplift team capability.

Preferred Skills

  • Experience engineering PKI solutions in hybrid cloud and on premises environments, including integration with major cloud providers' identity and key management services.

  • Advanced scripting or automation capability (for example, PowerShell, Python, or similar) used to integrate PKI workflows with enterprise tooling and CI/CD pipelines.

  • Familiarity with certificate based network access control, VPN, and device authentication architectures in large, distributed environments.

  • Experience conducting PKI focused security assessments, including configuration reviews, key protection evaluations, and readiness for external compliance audits.

Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

Physical Requirements

The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

$122,900 - 150,000

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the PKI Lead Engineer in Denver, CO vacancy
  • $118k - $130k

     ...Enterprise network security technologies including firewalls, IDS, IPS, NAC, WAF, and Web Proxies* Working knowledge of Certificate/CA/PKI infrastructure* Possesses and applies broad knowledge of concepts and principles or exhibits technical expertise related to server... 
    Suggested
    Work experience placement
    Work at office
    Remote work

    Transamerica Corporation

    Denver, CO
    1 day ago
  • $104.5k - $208k

     ...All employment is decided on the basis of qualifications, merit, and business need. Job Title: Dynamics Technical Lead – Acoustics Mechanical Engineering Location: Littleton, CO & Sunnyvale, CA Type of Role: Direct Hire (Full-Time, Onsite) Shift: 9x80 Schedule (... 
    Suggested
    Full time
    Flexible hours
    Shift work

    Navstar

    Littleton, CO
    18 hours ago
  • A leading financial services company is seeking a Sr Lead Software Engineer (Remote-Eligible) to lead diverse technology projects. You will manage a team focused on creating solutions for regulatory needs, drive powerful cloud solutions, and mentor other engineers. Ideal... 
    Suggested
    Remote work

    Capital One

    Denver, CO
    8 days ago
  • $34 - $40 per hour

     ...Lead Operating Engineer Responsible to ensure the proper efficient operations and maintenance of the mechanical, electrical, and plumbing systems for the assigned facility. The performance of all necessary maintenance and operational tasks are developed to assure maximum... 
    Suggested
    For contractors
    Apprenticeship
    Work at office
    Immediate start
    Flexible hours

    Cushman & Wakefield

    Denver, CO
    1 day ago
  • $209k - $238.5k

     ...Sr Lead Software Engineer, Analytics - Shopping (Remote-Eligible)What you'll do:Lead a portfolio of diverse technology projects and a team of developers with deep experience in distributed microservices, and full stack systems to create solutions that help meet regulatory... 
    Suggested
    Full time
    Part time
    Internship
    Local area
    Remote work

    Capital One

    Denver, CO
    2 days ago
  • Legora AB is searching for a Lead Legal Engineer based in Denver, Colorado. This pivotal role involves leading high-impact client engagements and developing a team of Legal Engineers, merging legal expertise with technology. The ideal candidate will have a strong law background... 

    Legora AB

    Denver, CO
    2 days ago
  •  ...Lead Software Engineer (Western Union, LLC, Denver, CO) Multiple positions available. Coordinate with business and product teams to establish requirements of cross-border money transfer eco system (8%). Assess business needs while providing creative and effective solutions... 
    Remote work
    2 days per week

    Western Union

    Denver, CO
    13 days ago
  •  ...contributes. No one coasts. If you're driven by impact, pace, and raising the bar. This is the place. The Role As Lead Legal Engineer , you'll operate as a player-coach: leading Legora's most complex and high-impact client engagements while managing and... 
    Work at office

    Legora

    Denver, CO
    2 days ago
  •  ...Lead Software Engineer BaaS Team Anywhere Type: Contract-to-Hire Category: Development Industry: Financial Services Workplace Type: Remote Reference ID: JN -052026-106955 Date Posted: 05/12/2026 Shortcut: Description Recommended Jobs... 
    Hourly pay
    Contract work
    Local area
    Remote work
    Flexible hours

    Eliassen Group

    Denver, CO
    4 days ago
  • $111k - $135k

     ...approximately 23.9 million customers worldwide. * For more information, visit transamerica.com .  Job Description Summary The Lead Software Engineer mainframe and API-driven web technologies to build and support application solutions. Provides lead support for design and... 
    Contract work
    Work at office
    Local area
    Remote work
    Worldwide
    Work visa
    Relocation package
    Night shift
    3 days per week

    Aegon Asset Management

    Denver, CO
    2 days ago
  • $164.11k - $242.61k

     ...Lead Software Engineer (Western Union, LLC, Denver, CO) Multiple positions available. Coordinate with business and product teams to establish requirements of cross-border money transfer eco system (8%). Assess business needs while providing creative and effective... 
    Temporary work
    Work at office
    Remote work
    Work from home
    Flexible hours
    2 days per week
    3 days per week

    Western Union

    Denver, CO
    4 days ago
  • $103.71k - $138.28k

     ...and hands-on position requiring the selected candidate to both lead and participate in multiple team environments and to provide independent...  ...knowledge and experience in system architecture and engineering disciplines. Specific technical knowledge of enterprise level networking... 
    Temporary work
    Remote work

    Lumen Inc

    Denver, CO
    4 days ago
  •  ...Principal Android Engineer Charter Communications is America’s fastest growing TV, internet and voice company. We’re committed to integrating...  ...90,000 employees. Job Summary As one of the country’s leading connectivity providers and largest ISPs, Charter appreciates... 
    Permanent employment
    Contract work
    Work experience placement

    Software Technology Inc

    Denver, CO
    1 day ago
  • $172.5k - $260.1k

     ...heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You're in the...  ...will be accepted until 06/30/2026. IT Infrastructure M&A Lead Engineer Overview Salesforce is seeking an experienced IT Infrastructure... 

    Salesforce.Com Inc

    Denver, CO
    3 days ago
  • $166.2k - $304.7k

     ...The Trade Desk is a global technology company and the world's leading independent platform for digital advertising, with nearly 4,000...  ...meet you. What we do Our Lead Senior Staff Software Engineers are end-to-end owners who will participate in all aspects of designing... 
    Full time
    Temporary work
    Local area
    Worldwide

    The Trade Desk

    Denver, CO
    18 hours ago
  • A financial services company is seeking a Web Access Management Specialist in Denver, Colorado. This role involves developing integrated strategies for Web Access Management services, emphasizing technologies like Okta and IBM ISAM. Candidates must have 8+ years of IT experience...

    Transamerica Corporation

    Denver, CO
    1 day ago
  • $86.8k - $198k

    Booz Allen Hamilton seeks a Technical Signals Engineer in Aurora, Colorado. You will lead a team to develop DSP software tools, using frameworks like X-Midas. This role requires a Bachelor's degree and Top Secret clearance. Responsibilities involve guiding system improvements... 

    Booz Allen Hamilton

    Aurora, CO
    2 days ago
  • We are seeking a highly skilled and self-motivated Lead Software Engineer with expertise in Python development, DevOps tooling, and cloud-native platforms such as Amazon EKS. This individual will lead technical initiatives, drive architectural decisions, and contribute... 

    Compunnel, Inc.

    Denver, CO
    1 day ago
  • $122.9k - $216.66k

     ...era in space and find a career that's built for you We are looking for a Project Engineer to join our Spacecraft Flight Cable and Harness Design team as an Integrated Product Team (IPT) Lead and Cost Account Manager (CAM). The team supports multiple lines of business at... 
    Full time
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Relocation
    Flexible hours
    Shift work

    Lockheed Martin

    Littleton, CO
    2 days ago
  • Phase2 Technology is hiring an X-Midas DSP Software Engineer in Aurora, Colorado. In this role, you will lead the development of cutting-edge DSP solutions and enhance existing systems within a collaborative Agile environment. Applicants should have experience with DSP... 

    Phase2 Technology

    Aurora, CO
    3 days ago
  • $181.63k - $254.28k

     ...sustainable infrastructure for our transport of crew and cargo from Earth to the lunar surface. As part of a hardworking team of engineers, you will work with software development engineers and other discipline teams to develop the next generation platform for systems... 
    Permanent employment
    Temporary work

    jobs.frontdoordefense.com - Jobboard

    Denver, CO
    18 hours ago
  •  ...com is looking for a Technical Program Manager based in Denver, CO. This critical role involves leading execution across multiple product lines with a team of over 70 engineers. Responsibilities include managing Jira, driving execution excellence, and mentoring program... 
    Work at office
    3 days per week

    talentarchitect.com

    Denver, CO
    4 days ago
  • $107k - $179k

     ...laws, requiring U.S. person status as defined by 8 U.S.C. 1324b(a)(3). Please review the job details below. We are hiring a Lead Navigation Engineer, to join our Navigation team in Westminster, CO. Navigation team members are responsible for orbit determination, orbit... 
    Permanent employment

    6AM City, LLC

    Denver, CO
    2 days ago
  • CesiumAstro is seeking a Principal RF Engineer I in Denver, responsible for leading the design and development of phased arrays for aerospace systems. The candidate should have at least 9 years of industry experience in RF electronics, with proficiency in both board-level... 
    Full time

    jobs.frontdoordefense.com - Jobboard

    Denver, CO
    18 hours ago
  • $134.55k - $205.56k

     ...hybrid / flexible work schedule with a mix of work spent on site at the Sargent & Lundy office and working remote from home. This lead engineering position is within Sargent & Lundy's Electrical Analytical Division and will be responsible forthe following: Performing... 
    Hourly pay
    Work at office
    Local area
    Remote work
    Work from home
    Flexible hours

    Sargent Lundy

    Westminster, CO
    2 days ago
  •  ...Senior Software Engineer (Tech Lead), Customer Domain Engineering At Forge, we know our team is our greatest asset. As technology innovators in the private market, our vision is to deliver a richer future for everyone. We live that vision through our values of being... 
    Work at office
    Local area
    Remote work

    Forge

    Denver, CO
    18 hours ago
  •  ...and responsively. We're looking to expand our team across the board. We are seeking to fill several roles on the Mission Lead Systems Engineering team at York. We are seeking experienced and highly motivated Systems Engineers to lead our Space Vehicle missions.... 
    Permanent employment
    Local area
    Worldwide

    York Space Systems LLC

    Greenwood Village, CO
    2 days ago
  • $140k - $175k

     ...needs for unmanned aerial defense by dramatically improving a jet engine's speed to market, fuel efficiency, and cost. Founded...  ...for someone who can analyze data, spend time on the shop floor, lead kaizen events, and help teams build practical processes that scale... 
    Temporary work
    Work experience placement

    Beehive Industries

    Centennial, CO
    3 days ago
  • $110k - $157.3k

     ...through research and development, technology innovation or solution engineering, our team members play a vital role in connecting consumers...  ...assessment session. The role of a Retail Store Technology Lead Integration Engineer in 2026 has shifted from simply connecting... 
    Local area
    Flexible hours
    Shift work

    EchoStar

    Littleton, CO
    3 days ago
  • $101.9k - $200k

     ...a range of pathways that help learners achieve their goals and lead a choice-filled life. Our culture values inclusion, engagement...  ...you'll do here: In your role as Technology Lead, Experience Engineering within our Digital organization, you are responsible for... 
    Work experience placement
    Live in
    Local area
    Worldwide

    Cengage Group

    Denver, CO
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to PKI Lead Engineer. Be the first to apply!