Your key responsibilities
Establish an enterprise key management service strategy, initially focused on lifecycle management and protection of Transparent Database Encryption (TDE) keys, TLS keys, and broad adoption of Hardware Security Modules (HSMs), but capable of expanding to enable additional use cases. Responsibilities include:
- Define and update the Firm’s enterprise key management strategy
- Develop and lead the enterprise key management team and operational support function
- Provide coaching and mentorship to the enterprise key management team and provide daily tasks needed to realize the long-term strategy
- Establish the team's functional goals and set priorities and objectives that align with the overall strategy
- Lead the design and management of enterprise key management service enhancements across the internal infrastructure and cloud environments
- Work with InfoSec Policy, Certification and Compliance (PCC) team to define and execute a key management compliance program
- Review and update key management related policies and standards
- Collaborate with enterprise technology teams in the adoption of the new enterprise key management services
- Research, evaluate and document technical solutions
- Ensure adherence to global security policies and standards
- Present subject matter to project teams, governance forums and other audiences as needed
Skills and attributes for success
A successful candidate for this role impacts EY by enabling the realization of strategic intent and the design of solutions that directly translate to the security and business enablement of the firm. As such, candidates must possess:
- Experience with Key Management Life Cycle - Key Generation, Storage, Distribution, Backup, Rotation, Revocation, Destruction, etc.
- Experience with major enterprise key management systems as well as cloud based key management services
- Hands on experience and knowledge of TLS, PKI, HSMs, KMIP, Digital Certificate Management, Azure Key Vault, and transparent database encryption
- Hands on experience with and knowledge of Thales CipherTrust Manager and hardware security modules
- Experience with FIPS 140-2 compliance requirements and implementation
- Experience in security key management, security standards, cryptography, certificate management lifecycle and PKI
- Understanding of cloud computing architecture, technical design, and implementation
- The ability to research and come up to speed quickly on new technology areas
To qualify for the role, you must have
- Degree in Computer Science, Computer Engineering or equivalent
- 10+ years’ experience in systems engineering, systems architecture, and solutions integration
- 5+ years’ experience in enterprise key management, application layer encryption, and/or transparent data encryption
Ideally, you’ll also have
- Experience leading diverse, globally distributed teams
- Ability to work well in a highly matrixed environment yet builds credibility to drive execution outside of direct chain of command while working across all organizational levels.
- Strong written and verbal communication skills and thrive in virtual, cross-geo and cross-functional groups.
- Strong analytical and problem-solving skills.
- A security industry certification such as CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, or Security+
- Ability to work independently or with a team, under minimum supervision.
As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:
- Continuous learning : You will develop the mindset and skills to navigate whatever comes next.
- Success as defined by you : We will provide the tools and flexibility, so you can make a significant impact, your way.
- Transformative leadership : We will give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture : You will be accepted for who you are and empowered to use your voice to help others find theirs.
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.