A top Fortune 50 financial institution is currently seeking a Certificate Management DevOps Engineer for a 100% remote opportunity. This role will focus on automating enterprise certificate lifecycle management and supporting modernization efforts
across cloud and Kubernetes environments.

About the Opportunity:
- Schedule: Monday to Friday
- Hours: 8am to 4:30pm (EST)
- Setting: Remote
Responsibilities:
- Automating X.509 certificate lifecycle processes (issuance, renewal, replacement, decommission)
- Enhancing notification, escalation, and ticketing workflows through scripting and integrations
- Building and maintaining automation for Kubernetes certificate management (cert-manager, TLS tooling)
- Supporting code and container signing automation initiatives
- Improving operational runbooks, monitoring, and alerting for production support
- Partnering with security, infrastructure, and platform teams to deliver scalable solutions
- Performing other duties, as needed
Qualifications:
- 5+ years of experience in DevOps, Security Engineering, or Infrastructure Automation
- Bachelor’s degree in Computer Science, Engineering, or related field (or equivalent experience)
- Strong experience with X.509 certificate lifecycle management and PKI fundamentals
- Advanced PowerShell scripting for automation and tooling
- Experience with DevOps practices, monitoring, and production support environments
- Strong problem-solving and troubleshooting skills
- Ability to work cross-functionally with technical teams
- Strong communication and documentation skills
Desired Qualifications:
- Relevant certifications (e.g., Kubernetes, Security, Cloud)
- Experience with CyberArk / Venafi Certificate Manager (including Kubernetes)
- Experience with Kubernetes and cert-manager
- Experience with ServiceNow integrations
- Experience with Python, Ansible, Bash, or Golang
- Familiarity with machine identity management (SPIFFE/SPIRE)



