img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعالرياض

وصف الوظيفة

About the Opportunity

Acuative Middle East is seeking an experienced PKI Architect to join our team in Riyadh, Saudi Arabia. This full-time role involves designing, implementing, administering, and supporting the organization's Public Key Infrastructure (PKI) and digital signing platforms. The successful candidate will manage enterprise certificate services, digital signature solutions, and cryptographic infrastructure.

Role Scope and Impact

The PKI Architect will ensure security, compliance, and high availability across both Windows and Linux environments. This position requires hands-on expertise with platforms such as SigningHub, ADSS Server, and Entrust Certificate Authority, coupled with a strong understanding of enterprise PKI architecture, certificate lifecycle management, and secure authentication technologies.

Key Responsibilities

  • Design, implement, and maintain enterprise Public Key Infrastructure (PKI) solutions.
  • Administer Certificate Authority (CA) infrastructure and certificate lifecycle processes, including issuance, renewal, revocation, and auditing.
  • Configure, maintain, and troubleshoot PKI services across Windows Server and Linux platforms.
  • Ensure high availability, disaster recovery, and resilience of PKI environments.
  • Manage OCSP responders, CRLs, certificate templates, and enrollment services.
  • Deploy, configure, administer, and maintain SigningHub.
  • Implement and manage ADSS Server for digital signatures, timestamping, signature validation, and verification services.
  • Administer and support Entrust Certificate Authority infrastructure and related PKI services.
  • Integrate digital signing platforms with enterprise applications, identity management systems, and document management workflows.
  • Support digital signature standards including PAdES, XAdES, CAdES, and eIDAS where applicable.
  • Monitor, secure, and harden PKI and digital signing infrastructure against vulnerabilities and cyber threats.
  • Conduct security assessments, audits, and compliance reviews of certificate services.
  • Maintain documentation for PKI architecture, operational procedures, and security controls.
  • Ensure compliance with organizational security policies and regulatory requirements.
  • Install, configure, patch, and maintain Windows Server and Linux systems supporting PKI and digital signing services.
  • Implement monitoring, backup, disaster recovery, and capacity planning for PKI infrastructure.
  • Automate operational and administrative tasks using PowerShell, Bash, or other scripting languages.
  • Provide technical expertise to development, infrastructure, and security teams for PKI-related projects.
  • Troubleshoot complex certificate, authentication, encryption, and digital signing issues.
  • Support integrations involving TLS/SSL, APIs, identity platforms, and enterprise applications.
  • Produce technical documentation, operational runbooks, and knowledge base articles.

Required Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent practical experience).
  • Proven experience (5-10 years) designing, implementing, and administering enterprise PKI environments.

Preferred Qualifications

  • Experience with Microsoft Active Directory Certificate Services (AD CS).
  • Knowledge of Microsoft Entra ID (Azure AD), Active Directory, LDAP, and SSO technologies.
  • Experience with cloud-based PKI services (Azure, AWS, or OCI).
  • Familiarity with REST APIs and enterprise application integration.
  • Experience working in regulated industries such as finance, healthcare, or government.
  • Relevant certifications such as: Entrust PKI Certifications, Microsoft Certified: Windows Server, CompTIA Security+, CISSP, Certified Information Security Manager (CISM).

Work Location

This is a full-time position based in Riyadh, Saudi Arabia.


متطلبات الوظيفة

  • تتطلب ٥-١٠ سنوات خبرة

وظائف مشابهة