Job Title: PKI CyberArk Engineer
Location: Chicago Downtown IL (Onsite)
Job Type: Contract (W2 or C2C)
Duration: 6 12 Months (with possible extension)
Job Description:
We are seeking a highly skilled PKI CyberArk Engineer to support and manage enterprise-level Public Key Infrastructure (PKI) and CyberArk Privileged Access Management (PAM) solutions. The ideal candidate will be responsible for the design implementation support and maintenance of security infrastructure focusing on PKI certificate lifecycle management and privileged identity security.
This role requires onsite presence in Chicago Downtown IL and the candidate must have strong expertise in CyberArk components and PKI certificate management.
Responsibilities:
- Manage and maintain enterprise CyberArk PAM solutions including Vault PVWA CPM PSM Conjur etc.
- Design implement and maintain PKI infrastructure including Certificate Authorities OCSP CRLs and smart card integration.
- Automate certificate issuance renewal and deployment using CyberArk or other tools.
- Troubleshoot and resolve issues related to digital certificates encryption and access.
- Collaborate with InfoSec Network and DevOps teams to enforce security policies and standards.
- Conduct regular audits and reviews for privileged account management.
- Implement best practices for key rotation password vaulting and secure credential management.
- Document procedures and configurations and provide knowledge transfer to team members.
- Stay updated with current security threats and propose improvements to existing infrastructure.
Required Skills:
- 5 years of experience in CyberArk PAM administration.
- Strong experience with PKI (Public Key Infrastructure) including management of CAs certificate lifecycle and automation.
- Hands-on experience with CyberArk PAS Suite Vault PVWA CPM PSM.
- Experience with Digital Certificates SSL/TLS and HSMs.
- Good understanding of Windows and Linux server environments.
- Familiarity with IAM security protocols and compliance standards (NIST FIPS etc.).
- Scripting skills (PowerShell Python etc.) for automation and integration tasks.
- Strong problem-solving and analytical skills.
- Excellent written and verbal communication skills.
Preferred Qualifications:
- CyberArk Certified Delivery Engineer (CDE) or Defender/Sentry certifications.
- Experience with Active Directory Certificate Services (ADCS).
- Familiarity with Cloud PAM and PKI (AWS Azure GCP).
- Experience in financial or highly regulated industries is a plus.
To Apply :: Please share resume to