Responsibilities
Drive the development of PKI solutions to meet security and business requirements
Develop automatic certificate provisioning solution with tools like F5, app servers (Apace IIS), AWS ACM, AWS EKS, Azure, IBM Datapower, Connect Direct etc.
Provide technical support for PKI and different certificate deployment implementations on multiple systems like VPN, Wireless, automatic certificate provisioning etc.
Technical ownership of PKI related initiatives.
Responsible for implementing the PKI capability and integration across the Security and IT capability.
Responsible for documentation and knowledge transition to certificate owners.
Responsible for maintaining the industry best practices related to PKI.
Provide On-Call support as needed.
Required Qualifications
Bachelors degree inputer Science, MIS, Technology Forensics, or related technical field; or equivalent work experience.
5-7 years of relevant experience required.
5+ years of experience in Administer and operate Microsoft PKI infrastructure and Venafi.
5+ years of experience in Design and implementation experience of Active Directory Certificate Services (Microsoft PKI)
Strong understanding of certificate lifecycle challenges and the understanding of how to mitigate risk and outages
Strong understanding of X.509, RSA, SSL / TLS, Wildcard, SAN certificate and certificate management processes.
Hands on experience on working with Venafi and collaboration with vendors.
Good experience with API development and its concepts and API integration
Experience designing auto delivery and deployments of certificates in an enterprise environment
Experience working in cloud technologies like AWS and hand on experience with AWS IAM.
Experience with PowerShell scripting.
Experience with Python scripting.
Familiarity with standard encryption protocols such as IPSec, TLS, SSH.
Familiarity with cloud technologies and PKI requirements
Preferred Qualifications
Good understanding with Active Directory including build and deploy Microsoft Active Directory Domain Controllers, consolidate Sites and Domains, and monitor the health of existing systems.
Familiarity with Agile principle and concepts
Good understanding of information security principles
Nice to have experience in Azure Active Directory (App registrations, Conditional access policies, Azure MFA, Roles and groups etc)
Nice to have experience in HSMs, NDES, OCSP.
Good to have experience of certificate provisioning via an MDM solution.
Familiarity with Agile principle and concepts
NOTE : Thepany does not offer L Visa sponsorship for this opportunity.
About Ourpany
The Ameriprise Financial Technology team mission is to create innovative technology solutions and engaging digital experiences for our clients, advisors, and employees.
We embrace an inclusive and collaborative culture that allows us to partner across the business and lend our expertise in the areas of corporateputing, network infrastructure and security.
We celebrate the unique qualities and reward the contributions of our talented, passionate employees. If you're motivated and want to work for a strong, ethicalpany that cares about you and yourmunity, take the next step with Ameriprise Technology.
Ameriprise Financial is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, national origin, genetic information, age, sexual orientation, citizenship, gender identity, disability, veteran status, marital status, family status or any other basis prohibited by law. Job ID 29536BR
Full-time