
IAM Specialist-PKI and Key Management Operations
- Kochi, Kerala
- Permanent
- Full-time
- Manage L3 Incidents, Service Requests and problems related to affected services
- Manage and maintain Public Key Infrastructure Document PKI and certificate management guidance for the company
- Responsible for infrastructure design and the planning and implementation of changes within the environment
- Sponsor changes to the infrastructure needed to support new and evolving services, technologies, and applications
- KPI analysis to identify patterns and trends and drive performance improvement
- Benchmarking, productivity, and quality control
- Ownership of process engineering and operational improvement initiatives including automation tooling
- Provide first line support to internal clients and member organization on EKMS.
- Support EKMS onboarding and offboarding processes for both cloud and on-premises applications
- Provide operational support and triage on HSM and EKMS during incident response.
- Support Azure Managed HSM (MHSM) onboarding operations as it relates to applications requiring TLS offloading.
- Under the supervision of EKMS Engineering, support the Firm's day-to-day operations as it relates to on-premises applications requiring TLS offloading.
- Implement operational improvements as it relates to enterprise key management and HSM support.
- Maintain and update the enterprise key management documentation to support new business requirements.
- Support HSMs operations as it relates to Nginx and Windows Internet Information Services.
- Provide Level 1 and 2 support to end user related on key management which has a direct impact of the Recovery Time Objective (RTO).
- Escalate advance key management issues which has a direct impact on service delivery to EKMS Engineers or Vendors where necessary
- Maintain the operations runbook for HSM and EKMS deployments.
- Root cause analysis and service improvement solutions
- Provide cost-efficient, stable operations for the platforms and services in scope
- Align risk and control processes into day to day responsibilities to monitor and mitigate risk; escalates appropriately
- Produce accurate, brief and clearly written documents tailored to audience needs and expectations
- Flexibility to work in a 24*7 support structure.
- Excellent problem-solving skills
- Strong verbal and written skills to interact with global teams and customers
- Keep up on current technologies and maintain awareness of industry trends and threats, focusing on PKI technologies.
- Tangible, relevant, and demonstrable experience with PKI and specifically Microsoft PKI technology, integration with platforms and applications, and working with clients.
- Perform analysis of metrics for the purpose of making decisions around staffing, capacity, and processes.
- Experience in Key Management Operations related to Key Generation, Storage, Distribution, Rotation, Revocation and Destruction.
- Experience with at least one enterprise key management systems as well as cloud-based key management services.
- Operational experience working with two or more of the following protocols: TLS, PKI, HSMs, KMIP, Digital Certificate Management, Azure Key Vault, or transparent database encryption.
- Basic experience with FIPS 140-2 Level 3 compliance requirements and implementation.
- Degree in Computer Science or related field or equivalent work experience
- Fluent in English language - written and verbal
- Minimum of 5 years of experience with Public Key Infrastructure (PKI)
- Experience with key PKI technologies such as Microsoft Active Directory Certificate Services including Certificate Authority, NDES, and OCSP and HSMs
- 2 years' experience in enterprise key management, HSM configuration, application layer encryption, and transparent data encryption.
- Understanding of digital certificate lifecycle management functions
- Broad understanding of the available PKI vendors and technologies offering technical solutions in the market
- Experience with case management tool, ideally ServiceNow
- Ability to plan, estimate, and deliver work independently.
- Solid understanding of change management processes and software suites
- Knowledge of enterprise authentication and web security
- Continuous learning: You will develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way.
- Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs.