IAM Senior Engineer Public Key Infrastructure
1 day ago
Who We Are:
Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today's complex world. Our culture thrives on finding new and better ways to accelerate what's next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.
Job Description:
About our Cybersecurity Team
Are you ready to make an impact with one of the world's leading technology companies? HPE's Cybersecurity team is where you can do just that. We protect enterprise identities, systems, and data by engineering secure, scalable, and resilient solutions across our global ecosystem. If you're passionate about securing digital trust and building next-generation identity and cryptographic systems, we'd love to have you on our team.
About the Role
We are seeking a highly skilled Senior PKI Engineer to join our Identity and Access Management (IAM) organization. This role will be responsible for the design, implementation, and operational excellence of enterprise-wide PKI and cryptographic services that enable secure authentication, encryption, and code signing across hybrid environments.
The ideal candidate will have deep expertise in certificate lifecycle management, cryptographic key management, Microsoft ADCS and modern certificate-based authentication solutions. You will collaborate closely with IAM, Infrastructure, Cloud, and Security Architecture teams to modernize and scale PKI services aligned with Zero Trust and regulatory compliance goals.
Key Responsibilities
- Design, deploy, and maintain enterprise PKI architectures supporting both on-premises and cloud environments (ADCS, AIA/CRL, OCSP, HSM, Root/Issuing CAs).
- Implement certificate lifecycle automation and governance for servers, endpoints, IoT, and application workloads.
- Lead modernization of PKI services to support phishing-resistant authentication (FIDO2, smartcards, device certificates, mutual TLS, etc.).
- Integrate PKI with IAM solutions such as Entra ID, Okta, CyberArk, and HashiCorp Vault for secure credential and key management.
- Manage and maintain Hardware Security Modules (HSMs) and key escrow solutions for signing and encryption workloads.
- Support code signing, device identity, and TLS/SSL certificate issuance in alignment with enterprise standards.
- Define and enforce policies, procedures, and security controls for key and certificate usage, issuance, and renewal.
- Collaborate with security operations and compliance teams to ensure audit readiness, incident response, and certificate-related risk mitigation.
- Provide technical leadership, mentoring, and SME support to IAM and platform engineering teams.
Required Qualifications
- Bachelor's degree in Computer Science, Engineering, or related field (or equivalent experience).
- 10+ years in IT or Cybersecurity, with 8+ years focused on PKI, cryptography, or identity security engineering.
- Proven hands-on experience with Microsoft Active Directory Certificate Services (ADCS) and enterprise PKI management.
- Strong understanding of X.509, TLS/SSL, OCSP, CRL, HSM, and certificate policy frameworks.
- Experience with DigiCert ONE, or similar certificate lifecycle automation tools like Venafi, AppViewX..
- Understanding of hardware root of trust, secure boot, and device identity models.
- Experience automating certificate issuance and renewal using PowerShell, Python, or API-based workflows.
- Familiarity with cloud-native certificate services (AWS PCA, Azure Key Vault, Google CA Service) and FIDO2/WebAuthn implementations.
- Knowledge of integrating PKI with Identity and Access Management (IAM), Privileged Access Management (PAM), and Secrets Management platforms.
- Solid understanding of Zero Trust principles, encryption standards, and cryptographic lifecycle management.
- Exposure to DevSecOps pipelines and CI/CD integration for code signing.
- Certifications such as CISSP, CCSP, Microsoft Cybersecurity Architect, or GIAC GCLD/GMOB/GCWN.
Why Join Us
At HPE Cybersecurity, you'll be part of a collaborative team driving transformation at scale—modernizing identity and cryptographic services that underpin trust across our global enterprise. You'll have the opportunity to innovate, lead, and directly influence how digital trust is engineered into our ecosystem.
#cybersecurity
Additional Skills:
Accountability, Accountability, Action Planning, Active Learning, Active Listening, Agile Methodology, Bias, Business, Coaching, Creativity, Critical Thinking, Cybersecurity, Data Analysis Management, Data Collection Management (Inactive), Data Controls, Design Thinking, Development Methodologies, Empathy, Follow-Through, Growth Mindset, Implementation Methodologies, Infrastructure Design, Intellectual Curiosity (Inactive), Long Term Planning, Managing Ambiguity {+ 4 more}What We Can Offer You:
Health & Wellbeing
We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.
Personal & Professional Development
We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.
Unconditional Inclusion
We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.
Let's Stay Connected:
Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.
#unitedstates#cybersecurityJob:
Information TechnologyJob Level:
TCP_04States with Pay Range Requirement
The expected salary/wage range for a U.S.-based hire filling this position is provided below. Actual offer may vary from this range based upon geographic location, work experience, education/training, and/or skill level. If this is a sales role, then the listed salary range reflects combined base salary and target-level sales compensation pay. If this is a non-sales role, then the listed salary range reflects base salary only. Variable incentives may also be offered. Information about employee benefits offered can be found at
USD Annual Salary: $106, $243,HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity.
Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities.
HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories.
No Fees Notice & Recruitment Fraud Disclaimer
It has come to HPE's attention that there has been an increase in recruitment fraud whereby scammer impersonate HPE or HPE-authorized recruiting agencies and offer fake employment opportunities to candidates. These scammers often seek to obtain personal information or money from candidates.
Please note that Hewlett Packard Enterprise (HPE), its direct and indirect subsidiaries and affiliated companies, and its authorized recruitment agencies/vendors will never charge any candidate a registration fee, hiring fee, or any other fee in connection with its recruitment and hiring process. The credentials of any hiring agency that claims to be working with HPE for recruitment of talent should be verified by candidates and candidates shall be solely responsible to conduct such verification. Any candidate/individual who relies on the erroneous representations made by fraudulent employment agencies does so at their own risk, and HPE disclaims liability for any damages or claims that may result from any such communication.
-
Auth0 Developer/IAM engineer
7 days ago
Houston, Texas, United States Zenotis Group Full timeRole :: Auth0 Developer/SMELocation : Plano, TX (Remote)we urgently need an Auth0 SME to join our team to take over the authentication code. The responsibility of the person would be mainly maintenance.Key ResponsibilitiesDesign & Development• Implement Auth0 authentication and authorization flows (e.g., OAuth2, OpenID Connect, SAML).• Develop custom...
-
IAM Software Engineer III
3 days ago
Houston, Texas, United States Harris Health Full timeAbout UsHarris Health System is the public healthcare safety-net provider established in 1966 to serve the residents of Harris County, Texas. As an essential healthcare system, Harris Health champions better health for the entire community, with a focus on low-income uninsured and underinsured patients, through acute and primary care, wellness, disease...
-
Infrastructure Engineer
2 weeks ago
Houston, Texas, United States KniTT Full timeSenior Cloud Infrastructure EngineerWe are seeking a highly experienced and strategicSenior Cloud Infrastructure Engineer / Architectwith a minimum of6+ yearsof extensive, hands-on experience in architecting, implementing, and administering scalable, secure, and automated cloud infrastructure solutions. The ideal candidate is a hands-on technical leader with...
-
Senior Manager, IAM Finance
2 weeks ago
Houston, Texas, United States Halliburton Full timeWe are looking for the right people — people who want to innovate, achieve, grow and lead. We attract and retain the best talent by investing in our employees and empowering them to develop themselves and their careers. Experience the challenges, rewards and opportunity of working for one of the world's largest providers of products and services to the...
-
IAM Consultant
2 weeks ago
Houston, Texas, United States Largeton Group Full timeJob Title: IAM Consultant / Engineer**Location: Houston, TX (Onsite – 5 days a week)-locals only with DLDuration: 9–12 Months(Any oil and gas exp will work in recents projects)LinkedIn: yesExperience Level: 10–15 YearsRole Overview**We are seeking a highly skilled IAM Consultant/Engineer with deep hands-on expertise in Identity Governance and...
-
IAM Consultant
1 week ago
Houston, Texas, United States TekVivid, Inc Full timeJob Title: IAM Consultant / EngineerLocation:Houston, TX (Onsite – 5 Days a Week)Duration:9–12 MonthsExperience Level:10+ YearsRole OverviewWe are seeking an experiencedIAM Consultant / Engineerwith deep hands-on expertise inIdentity Governance and Administration (IGA). The ideal candidate will be responsible for designing, implementing, and managing...
-
Civil Infrastructure Project Engineer
3 days ago
Houston, Texas, United States OneSource Professional Search Full timeWe've teamed up with a leading multidisciplinary engineering firm, and they are seeking a Civil Project Engineer to join their Houston based Public Infrastructure team. In this role, you will support and lead technical design for municipal and public-sector projects—including roadway, drainage, water, wastewater, and parks infrastructure. Key...
-
IAM Principal Secrets Management
1 day ago
Houston, Texas, United States Hewlett Packard Enterprise Full timeIAM Principal Secrets Management - PAMThis role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office Who We Are: Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and...
-
Senior AWS Data Engineer
2 weeks ago
Houston, Texas, United States IPrime Info Solutions Inc. Full time $120,000 - $240,000 per yearJob Title: Senior AWS Data EngineerExperience: 12+ YearsLocation: Dallas, TXJob Summary:We are seeking a highly experienced Senior AWS Data Engineer with 12+ years of expertise in designing, building, and optimizing large-scale data platforms on AWS. The ideal candidate will have deep hands-on experience with modern data engineering tools, cloud-native...
-
DevSecOps Engineer
1 week ago
Houston, Texas, United States Connective Talent Full timeDevSecOps Engineer (Hybrid, Contract)We're seeking a DevSecOps Engineer to manage secure delivery pipelines and platform foundations across cloud environments. This role focuses onTerraform, Kubernetes, and AWS IAM. You'll design and automate IAM, CI/CD, and infrastructure as code while embedding security controls and enabling development teams to deliver...