Senior Security Platform Engineer — 100% Remote at Recrute Action | CA | Rezi

Senior Security Platform Engineer — 100% Remote at Recrute Action

Senior Security Platform Engineer — 100% Remote

Recrute Action · CA

Yesterday

Senior Security Platform Engineer — 100% Remote

Recrute Action · CA

2 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

Join a collaborative engineering team responsible for advancing enterprise certificate management capabilities through automation, cloud-native technologies, and machine identity security initiatives. This position offers the opportunity to work on complex security platforms and large-scale infrastructure environments.

Responsibilities

  • Design, develop, and implement automated certificate lifecycle management solutions.
  • Build automation for certificate issuance, renewal, deployment, rotation, and revocation.
  • Support enterprise SSL certificate rotation initiatives across production and non-production environments.
  • Identify and eliminate manual certificate management processes through automation.
  • Support and enhance CyberArk Machine Identity Security (Venafi) capabilities.
  • Develop integrations between certificate management platforms and enterprise systems.
  • Implement reusable onboarding and automation patterns for application teams.
  • Improve certificate visibility, compliance, governance, and operational efficiency.
  • Design and implement certificate management integrations with F5, Akamai, AWS Certificate Manager (ACM), Amazon EKS/Kubernetes, Microsoft Graph, HashiCorp Vault, container platforms, cloud-native workloads, and additional enterprise applications and infrastructure services.
  • Develop certificate automation solutions leveraging HashiCorp Vault PKI capabilities.
  • Build and enhance integrations between Vault and enterprise applications.
  • Create automated certificate issuance and rotation workflows.
  • Support onboarding of applications to Vault-based certificate management services.
  • Partner with application and infrastructure teams to implement certificate automation solutions.
  • Provide technical guidance, troubleshooting, onboarding support, and best practices.
  • Develop technical documentation, implementation guides, and operational runbooks.
  • Lead knowledge-sharing and enablement sessions for stakeholders.
  • Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices.
  • Participate in Agile delivery processes including backlog refinement, estimation, sprint planning, and implementation activities.
  • Contribute to platform resiliency, monitoring, operational support, and continuous improvement initiatives.

Requirements

  • Bachelor Science degree in computer science.
  • Experience with TLS/SSL certificate lifecycle workflows.
  • 5+ years of experience in Security Engineering, Infrastructure Engineering, Platform Engineering, or related disciplines.
  • Strong experience with PKI, SSL/TLS certificates, and certificate lifecycle management.
  • Hands-on experience with CyberArk Machine Identity Security (Venafi) or equivalent certificate management platforms.
  • Experience implementing certificate automation at enterprise scale.
  • Strong knowledge of cryptography principles, certificate trust chains, and machine identity security.
  • Hands-on experience with AWS Certificate Manager (ACM), Amazon EKS / Kubernetes, Microsoft Graph, F5 Load Balancers, Akamai, Azure and/or AWS cloud services, REST APIs, and platform integrations.
  • Experience with Python, PowerShell, Terraform, Ansible, Git, CI/CD pipelines, Infrastructure as Code, and API-based automation.
  • Infrastructure skills including Linux and Windows administration, networking fundamentals, TLS/SSL protocols (including ACME), load balancers and reverse proxies, Kubernetes and container platforms, and monitoring and logging solutions.
  • Experience with HashiCorp Vault PKI Secrets Engine.
  • Experience supporting large-scale certificate management programs.
  • Experience working in Agile delivery environments.
  • Security certifications such as CISSP, CCSP, Security+, GIAC, or equivalent.
  • Experience supporting enterprise security platforms and cloud-native technologies.

Skills

  • Automation
  • Cloud-native technologies
  • Machine identity security
  • Certificate lifecycle management
  • PKI
  • SSL/TLS certificates
  • CyberArk Machine Identity Security (Venafi)
  • AWS Certificate Manager (ACM)
  • Amazon EKS/Kubernetes
  • Microsoft Graph
  • HashiCorp Vault
  • F5 Load Balancers
  • Akamai
  • Azure
  • AWS cloud services
  • REST APIs
  • Python
  • PowerShell
  • Terraform
  • Ansible
  • Git
  • CI/CD pipelines
  • Infrastructure as Code
  • Linux administration
  • Windows administration
  • Networking fundamentals
  • TLS/SSL protocols
  • ACME
  • Load balancers
  • Reverse proxies
  • Container platforms
  • Monitoring solutions
  • Logging solutions
  • Cryptography principles
  • Certificate trust chains

Location

  • Remote
  • Toronto

Work Type

  • Full-time
  • Contract
  • Hybrid

Experience Level

  • Senior
  • 5+ years

Education Level

  • Bachelor Science degree in computer science

Salary/Compensations

  • $65-85 per hour
  • $80-100 per hour (Incorporated Business Rate)

Benefits

  • 5-month contract with the potential for permanent employment

About the Company

  • Recruit Action (agency permit: AP-2504511) provides recruitment services through quality support and a personalized approach.
  • As part of the screening process, some applications may be reviewed using artificial intelligence tools.
  • Only candidates who meet the hiring criteria will be contacted.