Senior PKI Infrastructure Security Engineer

Fisher Investments

4.1

(21)

Camas, WA

Why you should apply for a job to Fisher Investments:

  • 4.1/5 in overall job satisfaction
  • 4.5/5 in supportive management
  • 86% say women are treated fairly and equally to men
  • 76% would recommend this company to other women
  • 71% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.
  • All women are eligible for 18-20 weeks of time off for bonding after childbirth; non-birthing parents are eligible for up to 12 weeks.
  • 20 days of PTO, plus 9 paid holidays.
  • Offering up to 10 days annually for back-up childcare.
  • #2024-14118

    Position summary

    changes, advising and directing leadership to ensure that PKI requirements are addressed. You will ensure PKI systems align to the firms Information Security policies, standards, and the industry best practices. You will report to the Vice President, Infrastructure Security.

    The Day-to-Day:

    • Build a mature enterprise-wide certificate management services and Public Key Infrastructure capabilities. Support the definition, design, and deployment of enterprise PKI system

    • Provide detailed specifications for PKI/KMS infrastructure

    • Provide roadmap guidance and recommendations to existing environment and future landscape (including the assessment & discovery work)

    • Maintain detailed procedures, policies, baselines, and work instructions for PKI & KMS administration, advise on improvements

    • An understanding of SSH, especially the configuration and use of SSH keys for authentication

    • Experience with technologies that heavily use TLS/SSL encryption

    • Represent PKI Engineering on organizational project teams and ensure adherence to existing security policies and standards

    • Manage the successful technical delivery of Information Security projects and services for our customers by working directly with key business stakeholders, executives and project teams

    • Keep up on current technologies and maintain awareness of industry trends and threats, focusing on PKI/PKE technologies

    Your Qualifications:

    • 8+ years of advanced hands-on experience in deploying, configuring, and managing certificated lifecycle management (KMS), Public Key Infrastructure (PKI), Certification Authorities (CA), Hardware Security Modules (HSM), Registration Authorities (RA), Root CA, Azure Key Vault, Thales, Venafi, Keyfactor, and Entrust integration experience (PKI/HSM/KMS/CRL/CRT)

    • Experience in Entrust, HashiCorp, Thales, DigCert, Venafi, Keyfactor

    • Individuals in this role must be well versed and educated in common Information Security practices and the CISSP domains, and have general Information Technology experience

    • You can use these experiences and education to identify opportunities for improvement of present information security environment, focusing on PKI, encryption, and certificate-based authentication solutions

    • Expert level experience with PKI implementation and certificate lifecycle management solution

    • Expert level experience with hardware security module (HSM) technology

    • Expert level experience in MS Certificate Management Services and Active Directory Domain Services

    • Expert level experience in SSL certificate management concepts, processes, and solution management

    • Expert level experience in cloud solution development with Azure architectures as it related to PKI management

    • Excellent knowledge in PKI / HSM ecosystem (technology, standards, implementations, & migration)

    • Technical Skills:

      • Public key infrastructure
      • Strong authentication / multi-factor authentication technologies
      • CodeSigning
      • Cryptographic services
      • Encryption
      • Certificate Management
      • Data Protection
    • Bachelor's degree in Information Assurance, Computer Science, Cybersecurity, Information Systems or related field of study

    • Security industry certification is required including but not limited to CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, and Security+

    Compensation:

    • $120,000 - $150,000 base salary per year in the state of WA. New hires should expect to start at the lower end of the range depending on experience

    • Eligible for a discretionary bonus based on firm and individual performance

    Why Fisher Investments:

    We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:

    • 100% paid medical, dental and vision premiums for you and your qualifying dependents

    • A 50% 401(k) match, up to the IRS maximum

    • 20 days of PTO*, plus 10 paid holidays (*17 days of PTO and 3 days of sick time for California employees)

    • Family Support programs including 8 weeks Paid Primary Caregiver leave, adoption assistance and back-up child care

    • $10,000 fertility, hormonal health and family-forming benefit

    • Opportunity to participate in our hybrid work from home program. This program is subject to change. Based on tenure and performance eligibility, you will have the opportunity to work from home up to 75 days per year

    FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER

    Why you should apply for a job to Fisher Investments:

  • 4.1/5 in overall job satisfaction
  • 4.5/5 in supportive management
  • 86% say women are treated fairly and equally to men
  • 76% would recommend this company to other women
  • 71% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.
  • All women are eligible for 18-20 weeks of time off for bonding after childbirth; non-birthing parents are eligible for up to 12 weeks.
  • 20 days of PTO, plus 9 paid holidays.
  • Offering up to 10 days annually for back-up childcare.