Expoint – all jobs in one place
מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר
Limitless High-tech career opportunities - Expoint

EY IAM Specialist-PKI Key Management Operations 
India, Kerala, Kochi 
607659980

Today

Identity and Access Management (IAM) organization, a part of Information Security which, enables over 330,000 individuals across 140+ countries to access systems and information securely. As a member of the Identity and Access Management (IAM) team this position will contribute towards execution of an IAM roadmap that meets security requirements, including but not limited to security for, a complex Active Directory (AD) environment, hybrid cloud deployment, mobile computing, policy driven security, SSO, identity lifecycle management, and federation focusing on multiple protocols.

Your key responsibilities

  • Manage L3 Incidents, Service Requests and problems related to affected services
  • Manage and maintain Public Key Infrastructure Document PKI and certificate management guidance for the company
  • Responsible for infrastructure design and the planning and implementation of changes within the environment
  • Sponsor changes to the infrastructure needed to support new and evolving services, technologies, and applications
  • KPI analysis to identify patterns and trends and drive performance improvement
  • Benchmarking, productivity, and quality control
  • Ownership of process engineering and operational improvement initiatives including automation tooling
  • Provide first line support to internal clients and member organization on EKMS.
  • Support EKMS onboarding and offboarding processes for both cloud and on-premises applications
  • Provide operational support and triage on HSM and EKMS during incident response.
  • Support Azure Managed HSM (MHSM) onboarding operations as it relates to applications requiring TLS offloading.
  • Under the supervision of EKMS Engineering, support the Firm’s day-to-day operations as it relates to on-premises applications requiring TLS offloading.
  • Implement operational improvements as it relates to enterprise key management and HSM support.
  • Maintain and update the enterprise key management documentation to support new business requirements.
  • Support HSMs operations as it relates to Nginx and Windows Internet Information Services.
  • Provide Level 1 and 2 support to end user related on key management which has a direct impact of the Recovery Time Objective (RTO).
  • Escalate advance key management issues which has a direct impact on service delivery to EKMS Engineers or Vendors where necessary
  • Maintain the operations runbook for HSM and EKMS deployments.
  • Root cause analysis and service improvement solutions
  • Provide cost-efficient, stable operations for the platforms and services in scope
  • Align risk and control processes into day to day responsibilities to monitor and mitigate risk; escalates appropriately
  • Produce accurate, brief and clearly written documents tailored to audience needs and expectations
  • Flexibility to work in a 24*7 support structure.

Skills and attributes for success

  • Excellent problem-solving skills
  • Strong verbal and written skills to interact with global teams and customers
  • Keep up on current technologies and maintain awareness of industry trends and threats, focusing on PKI technologies.
  • Tangible, relevant, and demonstrable experience with PKI and specifically Microsoft PKI technology, integration with platforms and applications, and working with clients.
  • Perform analysis of metrics for the purpose of making decisions around staffing, capacity, and processes.
  • Experience in Key Management Operations related to Key Generation, Storage, Distribution, Rotation, Revocation and Destruction.
  • Experience with at least one enterprise key management systems as well as cloud-based key management services.
  • Operational experience working with two or more of the following protocols: TLS, PKI, HSMs, KMIP, Digital Certificate Management, Azure Key Vault, or transparent database encryption.
  • Basic experience with FIPS 140-2 Level 3 compliance requirements and implementation.

To qualify for the role, you must have

  • Degree in Computer Science or related field or equivalent work experience
  • Fluent in English language – written and verbal
  • Minimum of 5 years of experience with Public Key Infrastructure (PKI)
  • Experience with key PKI technologies such as Microsoft Active Directory Certificate Services including Certificate Authority, NDES, and OCSP and HSMs
  • 2 years’ experience in enterprise key management, HSM configuration, application layer encryption, and transparent data encryption.
  • Understanding of digital certificate lifecycle management functions
  • Broad understanding of the available PKI vendors and technologies offering technical solutions in the market
  • Experience with case management tool, ideally ServiceNow

Ideally, you’ll also have

  • Ability to plan, estimate, and deliver work independently.
  • Solid understanding of change management processes and software suites
  • Knowledge of enterprise authentication and web security

What we offer

As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:

  • Continuous learnin g: You will develop the mindset and skills to navigate whatever comes next.
  • Success as defined by yo u: We will provide the tools and flexibility, so you can make a significant impact, your way.
  • Transformative leadership : We will give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture : You will be accepted for who you are and empowered to use your voice to help others find theirs.