Senior PKI Security Administrator

NikSoft Systems Corp.United StatesOn-siteFull-timeSenior, 5–8 yearsListed 4 days ago

Apply now

About this role

NikSoft Systems Corporation is a recognized Information Technology solutions provider. Founded in 1998 and based in Reston, Virginia, NikSoft is a CMMI Level 3 Certified company with an established reputation for excellence and on-time delivery with a consistently high customer satisfaction rating from its Federal Government and private consulting contracts.

NikSoft is currently conducting a search for a Senior PKI Security Administrator to add to its team in support of the United States Postal Service's Cybersecurity program. The successful candidate will experience an unparalleled large-scale enterprise environment with over 800 Information Technology systems, 10s of 1000s of servers and desktop devices, processing billions of dollars in annual revenue and supporting a diverse user base spread across the entire US. Join the NikSoft team to scale your career to the next level.

Responsibilities:

- Support internal and external customers with certificate-related issues across USPS applications and services.

- Provide guidance and training to key stakeholders on PKI lifecycle management, processes, and procedures.

- Create reports and documentation using AI and other automation tools.

- Review complex PKI and certificate-related issues, determine effective solutions, and recommend improvements to ensure efficient, reliable, and sustainable operations.

- Support certificate automation using Venafi/CyberArk TPP identifying opportunities to incorporate AI into automation efforts.

- Supervise the PKI team, develop project requirements for complex and critical applications, provides sound strategic advice, technical expertise, and guidance to program and project staff

- Ability to work independently, work in a fast-paced environment, and attention to detail

Required Qualifications:

- Strong knowledge of REST API integration, Simple Certificate Enrollment Protocol (SCEP), and Microsoft AD auto-enrollment.

- Familiarity with technologies such as VCERT, Portable Git, Ansible, and Visual Studio Code.

- Proficiency in PowerShell scripting.

- Strong understanding of Public Key Infrastructure (PKI) including:

- Certificate Authority Administration

- Certificate Enrollment Web Service & Policy Web Service

- Active Directory Certificate Services (ADCS) monitoring

- Infrastructure experience in one or more of the following areas: IT or server administration, networking, Active Directory/LDAP, Unix/Linux, virtualization, or access control administration.

- Strong communication skills with IT customers, developers, and system administrators.

- Strong experience with certificate management tools, preferably Venafi/CyberArk, Microsoft Certificate Authority, and Hardware Security Modules (HSMs).

- Heavy experience troubleshooting digital certificate issues, with an interest in advancing automation and AI-driven solutions.

- Knowledge of Post Quantum Cryptography

Desired Skills:

- Experience with ServiceNow or other Change/Incident/Problem management ticketing technology

- IT system administration experience (systems management, networks, firewalls) in an enterprise environment

- Experience with user directory technologies for authentication (e.g., LDAP, Active Directory)

- Experience with Microsoft Windows Server configuration, deployment, and troubleshooting.

- Experience with Unix and Linux configuration and troubleshooting

- Experience with technologies that use TLS/SSL encryption (e.g., F5, Netscaler, IIS, Apache, WebLogic, WebSphere, etc.)

- Proficiency with server virtualization technologies (VMWare, HyperV)

- Database administration (MSSQL) experience

Desired Training/Certifications:

- A+, NET+, SEC+, nCSE, Venafi/CyberArk Admin, certified encryption engineer, CCENT, CCNA

****Candidates must be able to obtain a Postal Sensitive Clearance (US Citizenship or Green Card required). Additionally, candidates must not have traveled outside of the USA for a combined period not to exceed 6 months within the last 3 years.***