design and build from scratch scalable certificate lifecycle automation solutions (provisioning, renewal, revocation) using Venafi TPP and custom-developed tooling
develop robust, reusable code (PowerShell, C#, or similar) to automate complex certificate workflows, system integrations, and backend processes
architect and implement API-driven automation frameworks leveraging Venafi APIs and enterprise integrations
replace manual or ad hoc processes with fully automated, self-service solutions aligned to engineering best practices
own the end-to-end design, development, and deployment of automation patterns, including error handling, observability, and resiliency
lead the development of standardized automation pipelines and reusable components for enterprise adoption
perform Venafi platform upgrades, patching, and enhancements with a focus on automation, repeatability, and minimal manual intervention
collaborate with DevOps, IAM, Engineering, and Operations teams to embed automation into application onboarding and CI/CD pipelines
troubleshoot and resolve complex issues across Windows Server, RHEL/Unix, and distributed environments
drive technical decisions and champion an automation-first, engineering-led approach across teams
operate independently with a high degree of ownership, proactively identifying opportunities to engineer solutions rather than apply manual fixes
Requirements
Bachelor’s degree in Computer Science, Information Security, or a related field
5+ years of experience in PKI engineering and certificate lifecycle management
Proficient in the ability to design and build custom automation solutions from scratch
Strong expertise in software development and scripting (PowerShell, C#, or similar) with a focus on clean, maintainable, production-quality code
Deep understanding of encryption technologies (PKI, TLS, symmetric/asymmetric cryptography, certificate authorities)
Hands-on experience building API integrations and automation frameworks , preferably with Venafi APIs
Experience integrating certificate automation into CI/CD pipelines and infrastructure-as-code workflows
Strong knowledge of Windows Server, RHEL/Linux, IIS, and networking protocols (TCP/IP, DNS, HTTP, SSH)
Experience with Venafi TPP, TLS Protect, or similar enterprise certificate management platforms
Demonstrated ability to translate complex problems into automated, scalable engineering solutions
Strong troubleshooting, debugging, and root-cause analysis skills
Excellent communication skills with the ability to articulate technical designs and influence adoption
Ability to manage multiple priorities in a fast-paced, evolving environment.
Self-starter mindset with high curiosity and comfort operating in ambiguity.
Tech Stack
DNS
Linux
TCP/IP
Unix
Benefits
affordable, competitive and flexible benefits
health insurance
wellness programs
Senior Analyst – Applications Programming at Bank of America | JobVerse