Description
The PKI Engineer operates and maintains the BICES Enterprise Public Key Infrastructure (BEPKI), serving as the service owner for the medium-assurance asymmetric credential provider. The role installs, configures, monitors, supports, and maintains PKI components including certification and registration authorities, hardware security modules, directories, certificate-status, time-stamping, and database services; provides second-level technical support; coordinates with vendors and external certification authorities; supports BICES exercises and missions; and trains registration authority personnel. The position requires a relevant university degree, at least three years of post-related experience, extensive PKI, cryptography, certificate, HSM, MFA, SSL/TLS, and OpenSSL experience, and a Level V English proficiency. It is a three-year definite-duration contract for non-seconded applicants, with a six-month probationary period, and requires a security clearance, medical file approval, and verification of study and work experience.
