Consultant – Keyfactor AgileSec

Job ID: 112614
Location: St. Louis, Missouri  [Remote]
Category: Infrastructure
Employment Type: Contract
Date Added: 05/14/2026

Apply Now

Fill out the form below to submit your information for this opportunity. Please upload your resume as a doc, pdf, rtf or txt file. Your information will be processed as soon as possible.


 
 
 
 
 
(Word, PDF, RTF, TXT)
* Required field.

Role Summary

This role involves managing and automating the entire certificate lifecycle and PKI infrastructure within large-scale production environments. The candidate will be responsible for ensuring continuous security and operational integrity of machine identities, cryptographic keys, and certificates. It requires a dedicated operator with hands-on experience in certificate management, automation, and troubleshooting in dynamic enterprise settings.

Responsibilities

  • Manage end-to-end certificate lifecycle processes including issuance, renewal, revocation, and rotation across multiple enterprise environments
  • Develop and maintain automated workflows for certificate management integrated into CI/CD pipelines
  • Operate and scale Public Key Infrastructure (PKI) environments, including internal CAs, trust stores, and related components
  • Integrate Keyfactor or comparable PKI platforms with various tools such as GitHub Actions, Jenkins, Azure DevOps, AWS, Azure, F5, NGINX, IIS, and Kubernetes
  • Troubleshoot and resolve TLS/SSL handshake failures, broken trust chains, and certificate expiration incidents
  • Collaborate with engineering teams in an agile environment to implement security as code practices
  • Monitor and improve certificate management processes to prevent outages and ensure security compliance
  • Support production incident investigations related to certificates, encryption, and trust issues
  • Document procedures, configurations, and incident resolutions to maintain operational clarity
  • Continually evaluate and enhance automation strategies to improve scalability and visibility of machine identities

Qualifications

  • Proven experience managing PKI and certificate lifecycle management in production environments
  • Strong hands-on experience with certificate automation and lifecycle processes
  • In-depth understanding of TLS handshake mechanics, encryption methodologies, and certificate chains, including root and intermediate CAs
  • Familiarity with CRL and OCSP protocols and their application in certificate validation
  • Practical experience with Keyfactor or similar PKI platforms in enterprise settings
  • Proficiency in scripting languages such as PowerShell or Python used for automation tasks
  • Experience supporting and troubleshooting production security incidents involving certificates or encryption protocols
  • Knowledge of integrating certificate management within CI/CD pipelines
  • Understanding of cloud-native certificate services like AWS ACM and Azure Key Vault is advantageous
  • Experience working with containerized environments (Kubernetes, ingress controllers) is preferred
  • Ability to translate security requirements into effective, automated, and scalable solutions
  • Strong problem-solving skills with a focus on real-world operational challenges

Publishing Pay Range: $82.27 – $85.71 hourly

This position is based in remote and requires the employee to work on-site.