PKI Operation Sr. Engineer
Location : On-site – Nasr City, Cairo, Egypt
Tech Stack : Relevant tools and technologies based on role
What You’ll Do :
- Operate and support enterprise PKI and Certificate Issuance systems.
- Manage and troubleshoot issues related to CA servers, RA components, OCSP responders, CRLs, and associated services.
- Perform secure operations and lifecycle management on HSMs (e.g., key generation, backup, rotation, decommissioning).
- Monitor system health, audit logs, and certificate expiration alerts.
- Perform root and subordinate CA certificate management (issuance, renewal, and revocation).
- Provide technical support for internal teams and end-users regarding certificate usage and enrollment.
- Coordinate with Information Security and Infrastructure teams to ensure compliance with internal and external policies.
- Document configurations, procedures, incident handling, and system changes.
- Participate in periodic audits, key ceremonies, and disaster recovery drills.
- Maintain knowledge of industry best practices and emerging threats in PKI and cryptographic systems.
Job Requirements :
Proven experience in managing and operating PKI infrastructures (eMudhra, Entrust, etc.).Hands-on experience with HSMs and Hardware Tokens (e.g., Thales, epass).Strong understanding of X.509 certificates, certificate lifecycle, key management, and revocation mechanisms.Familiarity with cryptographic standards and protocols (OCSP, CRL, TSA,… etc).Experience in scripting and automation (PowerShell, Bash, Python, etc.).Solid understanding of Linux environments.Strong troubleshooting and analytical skills.Excellent documentation and communication skills.