DigiCert Logo

DigiCert

PKI Compliance and Automation Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
Junior
Remote
Hiring Remotely in United States
Junior
As a PKI Compliance and Automation Engineer, you'll validate code for compliance, implement automation in CI/CD pipelines, and assist in audits and policy translation.
The summary above was generated by AI

Who we are

DigiCert is a global leader in intelligent trust, helping organizations protect the digital interactions people rely on every day. From websites and cloud services to connected devices and critical systems, we make sure digital experiences are secure, private, and authentic.

Our AI-powered DigiCert ONE platform brings together certificates, DNS, and lifecycle management to help organizations stay ahead of risk as technology and threats evolve. Trusted by more than 100,000 organizations—including 90% of the Fortune 500—DigiCert helps businesses operate with confidence today while preparing for what’s next, including a quantum-safe future.


Job summary

Join our Certificate Authority Industry Standards team to learn and grow while contributing to compliance automation. You’ll assist in reading code for issuance microservices and certificate lifecycle pipelines. You’ll work closely with Product and Engineering teams to translate CA/Browser Forum requirements, Root Program policies, and CP/CPS controls into policy-as-code guardrails, pre-issuance validators, and automated evidence that make non-compliance impossible to ship. This role offers hands-on experience in PKI compliance engineering.


What you will do

  • Code & Config Compliance Reviews (PKI-specific): Validate code against CA/B Forum BRs, EV Guidelines, S/MIME BRs, Root Program policies, RFC 5280, and CP/CPS.
  • Support development of policy-as-code rules under guidance from senior engineers.
  • Help integrate compliance checks into CI/CD pipelines.
  • Participate in building automated evidence collection for audits.
  • Implement validators and monitors for certificate lifecycle operations to ensure continuous compliance.
  • Collaborate with team to improve developer experience and reduce false positives.

What you will have

  • Bachelor’s degree in Computer Science, Software Engineering, Information Security, or equivalent practical experience.
  • 2+ years of experience in software development, security, or compliance engineering.
  • Ability to read and understand code (Python, Go, Java, or similar languages).
  • Familiarity with PKI concepts (certificate lifecycle, Domain Control Verification methods) and eagerness to learn CA/Browser Forum standards.
  • Exposure to CI/CD pipelines and willingness to learn compliance automation tools.
  • Curiosity and willingness to learn PKI compliance engineering.
  • Standards Translation: Turn industry policies into precise policy-as-code.
  • Technical Analysis: Parse complex issuance code paths, DCV implementations, and profile renderers.
  • Basic understanding of security principles and automation mindset to build reliable shift-left guardrails that block non-compliance pre-merge and pre-issuance.
  • Attention to detail when reviewing code and configurations.
  • Strong communication skills and ability to work in a team environment.

Nice to have

  • Some experience with PKI tools such as zlint/cablint, OpenSSL/CFSSL, ASN.1 tooling, RFC 5280 path validation test suites.
  • Hands-on experience is a plus but not required—mentorship will be provided.
  • Kubernetes/cloud experience (OPA Gatekeeper/Kyverno, AWS/Azure/GCP).
  • HSM operations (PKCS#11), FIPS 140-2/140-3 familiarity.

Benefits

  • Generous time off policies
  • Top shelf benefits
  • Education, wellness and lifestyle support

#LI-KK1

Top Skills

AWS
Azure
Ci/Cd
GCP
Go
Java
Kubernetes
Openssl
Python

Similar Jobs

An Hour Ago
Remote or Hybrid
4 Locations
103K-128K Annually
Mid level
103K-128K Annually
Mid level
Cloud • Fintech • Information Technology • Machine Learning • Software
The Corporate FP&A Analyst will provide financial insights, support reporting and forecasting models, and drive financial initiatives to improve decision-making accuracy.
Top Skills: ExcelGoogle Sheets
An Hour Ago
Remote or Hybrid
San Francisco, CA, USA
Mid level
Mid level
Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
The Recruiter will manage the full-cycle recruitment process for GTM and Corporate roles, collaborating with hiring managers to attract top talent and optimize hiring strategies using data and analytics.
Top Skills: Applicant Tracking SystemAshby
An Hour Ago
Remote or Hybrid
2 Locations
61K-181K Annually
Senior level
61K-181K Annually
Senior level
Artificial Intelligence • Cloud • Information Technology • Security • Software • Cybersecurity • Data Privacy
As a Senior Solutions Engineering Specialist, you will drive sales through technical expertise in C/C++, collaborate with cross-functional teams, and create compelling content for diverse audiences. Engagement with product strategy and providing mentorship are key responsibilities.
Top Skills: CC++ConanMakeSastScaYocto

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account