Contract Submit Resume

6.5 Public Key Infrastructure Specialist

Junior, Intermediate, Senior

Experience Levels

  • Junior: < 5 years of experience
  • Intermediate: 5 < 10 years of experience
  • Senior: 10+ years of experience, or 5+ years of experience with one of the following certifications: Storage Networking Industry Association (SNIA) Certified Professional (SCP) or SNIA Certified Systems Engineer (SCSE) or SNIA Certified Architect (SCA) or SNIA Certified Storage Networking  Expert (SCSNE)

Responsibilities could include but are not limited to

  • Develop Public Key Infrastructure (PKI) related policies, standards, guidelines and procedures
  • Review existing PKI policies, standards, guidelines and procedures and provide advice as to their appropriateness and effectiveness
  • Review and analyze the application of PKI architecture, Digital signatures/certificates, PKI products, Internet security protocols, directory standards, certificate protocols, and Certification Authority (CA)
  • Interoperability and governance studies
  • Conduct compliance audits of PKI related concerns, including operations, application systems and infrastructure
  • Conduct PKI related security threat and risk assessments of IT facilities, application systems and communications
  • Conduct PKI related reviews of backup and recovery plans
  • Investigate PKI related incidents and report cause and related weaknesses and recommend remedies
  • Develop PKI Certificate Policy, Practice Statement development, and Policy compliance inspections and audits
  • Design the PKI related framework and implement the PKI infrastructure required to protect assets and to support application systems
  • Provide advice on PKI aspects of application systems under development
  • Complete tasks directly supporting the departmental IT Security and Cyber Protection Program
  • Develop and deliver PKI awareness and training programs

Specialties could include but are not limited to

  • Secure Sockets Layer (SSL)
  • Secure Hypertext Transfer Protocol (S-HTTP)
  • Hypertext Transfer Protocol (HTTP)
  • Secure-Multipurpose Internet Mail Extensions (S-MIME)
  • Internet Protocol Security (IPSec)
  • Secure Shell (SSH)
  • X.500 Directory Standards
  • X.509 Certificate Protocols
  • Transmission Control Protocol (TCP)/Internet Protocol (IP)
  • User Datagram Protocol (UDP)
  • Domain Name System (DNS)
  • Simple Mail Transfer Protocol (SMTP)