Job Description
We are seeking a talented and experience Key Management system (KMS) Administrator to manage and maintain our organizations Key management infrastructure. In this role, you will be responsible to develop and implement a comprehensive key management strategy aligned with industry best practices and regulatory requirements. Work closely with our engineering, operations, and security teams to design, implement, and maintain highly available and performant KMS solutions.
Responsibilities
- Administer and maintain the KMS platform, ensuring its availability, security, and performance.
- Ensure compliance with relevance regulatory requirements and industry standards and identify and mitigate the key management-related risks.
- Collaborate with other teams such as networks, IT security and compliance, Engineering, and stakeholders to ensure alignment and effective key management. Communicate key management plans, policies, and procedure to stakeholders.
- Manage the entire key lifecycle and ensure secure key storage, backup, and recovery processes.
- Stay up to date with industry standards, best practices, and emerging technologies in key management.
- Supports change implementations, proactively identifies and resolves potential issues resulting from the changes, and performs access and/or physical provisioning/deprovisioning (additions, modifications, and deletions) for infrastructure and applications. ensure the changes are properly documented and communicated to stakeholders.
- Ensure that all the key managements activities are monitored, and the logs are being reviewed periodically.
- Manage the lifecycle of the SSL certificate including installation and renewal. Monitor on the certificate expiration and renewal.
- Respond to and manage key management related incidents, such as key compromises or certificate expiration or other issues, co-ordinate with stake holders to resolve incidents and minimize impact. Also, document and report on incidents including root cause analysis and lessons learned.
Requirements
: Bachelor’s degree in engineering, computer science
Certifications if any: NA
: 7 to 9 years.
Foundational Skills
- Primary Skills: Thales HSM, Cipher Trust Manager, Linux, Scripting
- Strong knowledge in Cryptographic keys and certificate and their life cycle.
- Hands on experience working on Linux/Unix and/or Windows server platforms
- Strong understanding of cryptographic principles and key management best practices.
- 2+ years hands on experience on Thales HSM or Cipher Trust Manager.
- Experience with key management systems such as AWS KMS, Azure Key Vault, or Google Cloud KMS.
- Additionally having knowledge in API calls on Thales HSM or Cipher trust manager.
- Excellent troubleshooting and problem-solving skills.
- Strong communication and collaboration skills.
- Familiarity of Incident and Problem Management systems like Remedy or ServiceNow.
- Ability to work independently and as part of a team in a fast-paced environment.
- Knowledge on security standards and regulations. Eg: PCI-DSS, HIPAA
Desired Skills
- Experience with Key management systems and HSM(eg: the product from Thales, Entrust, Vormetric, etc)
- Experience with industry monitoring tools like Splunk, etc.
- Ability to quickly learn new technologies.
- Prior experience with Operating critical Infrastructure or Application environments
- Ability to communicate technical concepts to non-technical stakeholders.
- Familiarity with cloud based key management systems such as AWS KMS, etc.
- Stakeholder management
- Certifications on AWS certified security, Redhat.
Work Timings*(IST – 9 hrs shift)
6:30 am - 10:30 pm (weekdays) any 9 Hours: Weekend: Rotational support 16*7 support
Shift: Morning or Afternoon