January 30, 2025
Electric Energy Jobs

Senior Public Key Infrastructure (PKI) Engineer

Organization:
Southern California Edison
Region:
Canada, California, Rosemead
End of contest:
April 27, 2025
Type:
Full time
Category:
Engineer
Description

Join the Clean Energy Revolution

Become a Senior Public Key Infrastructure (PKI) Engineer at Southern California Edison (SCE) and build a better tomorrow. In this role, you will join a team of PKI experts to maintain our current generation solution while transforming, building, and enhancing our next generation certificate management system.

You will play a critical role in ensuring the security and integrity of digital communications within Southern California Edison. This position will be responsible for building/operationalizing certificate management systems, working with operational teams to manage the lifecycle of digital certificates, including issuance, renewal, revocation and auditing of the enterprise certificates and keys. 

The ideal candidate will bring strong solutions development, troubleshooting, unit testing, and communication skills to the table. Be meticulous when implementing technical designs from strong specifications and requirements. Clearly document, effectively communicate, and drive the conversion of specifications into functional technology while working alongside Architecture and Operational teams.

As a Senior Public Key Infrastructure (PKI) Engineer, your work will help power our planet, reduce carbon emissions and create cleaner air for everyone. Are you ready to take on the challenge to help us build the future? 

Responsibilities

  • Performs security risk, vulnerability assessments, and business impact analysis for medium complexity information systems
  • Carries out project reporting for assigned projects, monitoring project status, timeline and budgets
  • Assists in the planning and implementation of current and future security domains including those which may introduce new service areas
  • Adopts and follows security controls, processes, and procedures to manage risk across all information system environments (infrastructure, network, and applications) with the assistance of the application and infrastructure management teams
  • Monitors technology risk, identifies root cause or key themes, recommends for resolution
  • Investigates suspected attacks and manages security incidents. Uses forensics where appropriate
  • Reviews and shapes the production of evidence to support internal and external audits
  • Implements appropriate security measures for information systems and applications that control access to data, and prevents unauthorized modification, destruction, or disclosure of information
  • Develops and maintains metrics, alerts, dashboards, and reports for security monitoring
  • Maintains incident response plans and performs incident response activities as directed and in accordance with established procedures and guidelines and those of federal authorities
  • A material job duty of all positions within the Company is ensuring the protection of all its physical, financial and cybersecurity assets, and properly accessing and managing private customer data, proprietary information, confidential medical records, and other types of highly sensitive information and data with the highest standards of conduct and integrity.

Minimum Qualifications

  • Five or more years of experience in information technology, information security and/or cybersecurity.
  • US Citizenship Required.

Preferred Qualifications

  • Bachelor of Science in Information Systems, or similar technical field of study.
  • Extensive hands-on experience in deploying and configuring both Public and Private Key Infrastructures (PKI) along with Hardware Security Modules (HSMs).
  • Strong knowledge of architectures related to PKI management.
  • Comprehensive understanding of the PKI/HSM ecosystem, including technology, standards, implementations, and migration strategies.
  • Knowledge of the security industry, specifically around PKI Engineering Solutions.
  • Experience deploying or maintaining Microsoft Certificate Authority, Entrust, Sectigo, Digicert, Keyfactor, Venafi, other certificate management platforms, and HSMs.
  • Expertise in Online Certificate Status Protocol (OCSP), Certificate Management Protocol v2 (CMPv2), Certificate Authorities (CA), Registration Authorities (RA), Certificate Revocation List (CRL), X.509, Certificate Policy, and Public Key Infrastructure as a Service
  • Strong troubleshooting skills
  • Experience in administering Certificate Authority (CA) and Hardware Security Models (HSM) of company PKI infrastructure.
  • Experience with working closely with IAM teams to implement Identity and Access Management PKI functionality for specific business and security requirements and processes.
  • Understanding and the ability to communicate the process for the installation of PKI trust chain across multiple platforms.
  • Firm understanding of cryptographic concepts including symmetric/asymmetric cryptography, hash algorithms, digital signatures, encryption, etc.
  • Experience with certificate enabled applications, such as SSL/TLS, S/MIME, Code Signing, 802.1x, EAP-TLS, etc.

Read the full posting.

Contact

Southern California Edison

P.O. Box 800

Rosemead

California États-Unis

www.sce.com