Senior Security Platform Engineer — 100% Remote at Recrute Action | CA | Rezi

Senior Security Platform Engineer — 100% Remote at Recrute Action

Senior Security Platform Engineer — 100% Remote

Recrute Action · CA

Yesterday

Senior Security Platform Engineer — 100% Remote

Recrute Action · CA

2 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Senior Security Platform Engineer — 100% Remote role.

Rezi rewrites your resume against Recrute Action's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Senior Security Platform Engineer — 100% Remote posting at Recrute Action — free, in seconds.

About the Role

Join a collaborative engineering team responsible for advancing enterprise certificate management capabilities through automation, cloud-native technologies, and machine identity security initiatives. This position offers the opportunity to work on complex security platforms and large-scale infrastructure environments.

Responsibilities

  • Design, develop, and implement automated certificate lifecycle management solutions.
  • Build automation for certificate issuance, renewal, deployment, rotation, and revocation.
  • Support enterprise SSL certificate rotation initiatives across production and non-production environments.
  • Identify and eliminate manual certificate management processes through automation.
  • Support and enhance CyberArk Machine Identity Security (Venafi) capabilities.
  • Develop integrations between certificate management platforms and enterprise systems.
  • Implement reusable onboarding and automation patterns for application teams.
  • Improve certificate visibility, compliance, governance, and operational efficiency.
  • Design and implement certificate management integrations with F5, Akamai, AWS Certificate Manager (ACM), Amazon EKS/Kubernetes, Microsoft Graph, HashiCorp Vault, container platforms, cloud-native workloads, and additional enterprise applications and infrastructure services.
  • Develop certificate automation solutions leveraging HashiCorp Vault PKI capabilities.
  • Build and enhance integrations between Vault and enterprise applications.
  • Create automated certificate issuance and rotation workflows.
  • Support onboarding of applications to Vault-based certificate management services.
  • Partner with application and infrastructure teams to implement certificate automation solutions.
  • Provide technical guidance, troubleshooting, onboarding support, and best practices.
  • Develop technical documentation, implementation guides, and operational runbooks.
  • Lead knowledge-sharing and enablement sessions for stakeholders.
  • Develop automation using scripting, APIs, Infrastructure-as-Code, and DevOps practices.
  • Participate in Agile delivery processes including backlog refinement, estimation, sprint planning, and implementation activities.
  • Contribute to platform resiliency, monitoring, operational support, and continuous improvement initiatives.

Requirements

  • Bachelor Science degree in computer science.
  • Experience with TLS/SSL certificate lifecycle workflows.
  • 5+ years of experience in Security Engineering, Infrastructure Engineering, Platform Engineering, or related disciplines.
  • Strong experience with PKI, SSL/TLS certificates, and certificate lifecycle management.
  • Hands-on experience with CyberArk Machine Identity Security (Venafi) or equivalent certificate management platforms.
  • Experience implementing certificate automation at enterprise scale.
  • Strong knowledge of cryptography principles, certificate trust chains, and machine identity security.
  • Hands-on experience with AWS Certificate Manager (ACM), Amazon EKS / Kubernetes, Microsoft Graph, F5 Load Balancers, Akamai, Azure and/or AWS cloud services, REST APIs, and platform integrations.
  • Experience with Python, PowerShell, Terraform, Ansible, Git, CI/CD pipelines, Infrastructure as Code, and API-based automation.
  • Infrastructure skills including Linux and Windows administration, networking fundamentals, TLS/SSL protocols (including ACME), load balancers and reverse proxies, Kubernetes and container platforms, and monitoring and logging solutions.
  • Experience with HashiCorp Vault PKI Secrets Engine.
  • Experience supporting large-scale certificate management programs.
  • Experience working in Agile delivery environments.
  • Security certifications such as CISSP, CCSP, Security+, GIAC, or equivalent.
  • Experience supporting enterprise security platforms and cloud-native technologies.

Skills

  • Automation
  • Cloud-native technologies
  • Machine identity security
  • Certificate lifecycle management
  • PKI
  • SSL/TLS certificates
  • CyberArk Machine Identity Security (Venafi)
  • AWS Certificate Manager (ACM)
  • Amazon EKS/Kubernetes
  • Microsoft Graph
  • HashiCorp Vault
  • F5 Load Balancers
  • Akamai
  • Azure
  • AWS cloud services
  • REST APIs
  • Python
  • PowerShell
  • Terraform
  • Ansible
  • Git
  • CI/CD pipelines
  • Infrastructure as Code
  • Linux administration
  • Windows administration
  • Networking fundamentals
  • TLS/SSL protocols
  • ACME
  • Load balancers
  • Reverse proxies
  • Container platforms
  • Monitoring solutions
  • Logging solutions
  • Cryptography principles
  • Certificate trust chains

Location

  • Remote
  • Toronto

Work Type

  • Full-time
  • Contract
  • Hybrid

Experience Level

  • Senior
  • 5+ years

Education Level

  • Bachelor Science degree in computer science

Salary/Compensations

  • $65-85 per hour
  • $80-100 per hour (Incorporated Business Rate)

Benefits

  • 5-month contract with the potential for permanent employment

About the Company

  • Recruit Action (agency permit: AP-2504511) provides recruitment services through quality support and a personalized approach.
  • As part of the screening process, some applications may be reviewed using artificial intelligence tools.
  • Only candidates who meet the hiring criteria will be contacted.