Role : PKI & IAM Architect
Location : Hyderabad, Noida, Bangalore, Gurugram, Jaipur ETC (Multiple Locations)
Role : Principal Consultant PKI & IAM Architect
We are seeking a seasoned PKI & IAM Architect to lead the design, implementation, and governance of secure identity and encryption systems across the enterprise.
This role combines deep expertise in Public Key Infrastructure (PKI), Single Sign-On (SSO), and Identity & Access Management (IAM) to ensure robust authentication, secure communications, and regulatory compliance.
Responsibilities :
- Design and deploy scalable PKI solutions, including certificate lifecycle management and integration with enterprise infrastructure.
- Manage internal and external Certificate Authorities (CAs), including issuing, revoking, and renewing certificates.
- Monitor certificate usage, anomalies, and ensure secure encryption / signing practices.
- Conduct audits of certificate usage, retention policies, and compliance metrics.
- Architect and maintain SSO platforms (e.g., Ping Identity), integrating with cloud and on-prem applications using SAML and OpenID Connect.
Minimum Qualifications :
Bachelors degree in computer science, Information Security, or related field.8+ years of experience in PKI administration, IAM architecture, cybersecurity, or IT infrastructure.Excellent analytical, problem-solving, and communication skills.Strong hands-on experience with certificate lifecycle tools in Microsoft CA, ADCS, TLS / SSL, and certificate automation.Strong scripting skills in PowerShell, Python, or Bash.Experience with Linux, Active Directory, and LDAP.Deep understanding of authentication protocols (SAML, OIDC).Familiarity with cloud platforms (Azure, AWS) and cloud-native PKI solutions & IAM platforms Ping.Preferred Qualifications / Skills :
Relevant certifications (e.g., CISSP, CISM, Microsoft Certified : Identity and Access Administrator,) are a plus.Experience with Zero Trust Architecture and Identity Governance.Familiarity with DevOps and CI / CD integration for identity and certificate automation.Knowledge of cloud security models (AWS, Azure).(ref : hirist.tech)