IT Risk and Security Engineer (Digital Certificates Management)
DTCC View all jobs
- Hyderabad, Telangana
- Permanent
- Full-time
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
- Assist with end-to-end certificate lifecycle across the enterprise, including:
- Certificate request and issuance
- Renewal and rotation
- Revocation and decommissioning
- Support the execution of machine identity governance policies and standards for non-human identities
- Maintain and update inventories of machine identities, including certificates, keys, and service credentials
- Assist in identifying orphaned, expired, or misconfigured machine identities
- Monitor adherence to governance controls and escalate exceptions or risks
- Support audits, risk assessments, and compliance activities related to machine identities
- Document machine identity processes, standards, and operational procedures
- Coordinate with IAM, cloud, and application teams to ensure governance requirements are understood and followed
- Define and enforce certificate policies, including validity periods, cryptographic algorithms, key sizes, and usage constraints
- Maintain accurate certificate inventory records, including ownership, purpose, and expiration dates
- Identify and report at-risk certificates (expired, expiring soon, weak crypto, unknown owners)
- Assist with certificate, issuance requests and validation of required information
- Support certificate automation efforts by validating coverage and reporting gaps
- Foundational understanding of:
- Digital certificates (X.509)
- TLS/SSL concepts
- Machine-to-machine authentication
- Experience working with ticketing systems, inventories, or monitoring tools
- Strong attention to detail and ability to manage recurring operational tasks
- Ability to follow documented processes and escalate issues appropriately
- Understanding of IT risks and implications to the business.
- Strong potential for growth and acceptance of additional responsibilities
- Ability to prioritize, focus and execute tasks in a timely manner.
- Ability to work in a team-oriented, collaborative environment.
- Fluent both written and spoken English.
- Demonstrated ability to write report segments and to participate in presentations.
- Possess a balance of analytical problem solving ability, strong interpersonal and communication skills, attention to detail, and technical acumen.
- One or more information security or audit certifications (e.g., CISSP, CISM, CISA) is a plus.
- 2-5 years' experience: IT security, IAM, infrastructure, PKI, TLS certificates
- Bachelors' degree in Cybersecurity and/or related experience