PKI & Certificate Management Engineer

Fresenius Se — Germany · Posted ~7 hours ago

Skills

PKI Certificate lifecycle management Cryptographic services Security engineering Cloud security Enterprise security Certificate management Cryptography Cloud infrastructure

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A security engineering role responsible for enterprise Public Key Infrastructure and certificate lifecycle management. You will design, implement, operate, and improve cryptographic services across on-premises and cloud environments, with emphasis on security, availability, and automation.

Highlights

Security engineering role focused on designing, implementing, operating, and continuously improving enterprise PKI and certificate lifecycle services across on-premises and cloud environments.

Description

Welcome to the IT Security team at Fresenius Digital Technology! We are responsible for the implementation, management and operation of programs, projects and services for a wide range of different security capabilities in various business segments within the Fresenius Group. We are looking for a highly motivated team member who will be responsible for the design, implementation, operation, and continuous improvement of Public Key Infrastructure (PKI) and certificate lifecycle management services. In your new role you will focus on ensuring the security, availability, and automation of digital certificates and cryptographic services across on-premises and cloud environments. You can look forward to a working environment that is as challenging as it is attractive. One that fits the ideal of a top workplace in so many respects - while expanding our own expert skills bank. Your Responsibilities Design, implement, and maintain enterprise PKI and certificate management solutionsAdminister certificate lifecycle management platforms (e.g., Venafi, Keyfactor, DigiCert, AppViewX, or similar solutions)Automate certificate issuance, renewal, revocation, and inventory processesManage internal and external Certificate Authorities (CAs)Support secure key management and cryptographic best practicesIntegrate certificate management services with cloud, infrastructure, application, and DevOps platformsMonitor certificate health, expiration risks, and compliance requirementsTroubleshoot and resolve certificate, encryption, and trust-related issuesDevelop and maintain operational procedures, standards, and documentationCollaborate with security, infrastructure, cloud, and application teams to implement scalable machine identity solutionsSupport audits, regulatory requirements, and security compliance initiatives Your Qualifications Bachelor’s or master’s degree in computer science, Information Technology, Engineering, or comparable qualificationStrong expertise in PKI, certificate management, cybersecurity, or related infrastructure security domainsStrong hands-on experience with certificate lifecycle management solutions and PKI technologiesDeep Knowledge of X.509 certificates, TLS/SSL, cryptographic protocols, and key management conceptsExperience with automation and scripting technologiesFamiliarity with cloud platforms, enterprise infrastructure, and DevOps environmentsStrong analytical, troubleshooting, and problem-solving skillsFluent English skills required; German skills are an advantage Join #futurefresenius and apply now through our online portal to make an impact!