PKI / TLS Certificate Engineer
Merrifield, VA
Experience: 0
Category: Information Technology
Contractor Work Model: Remote
Brand: System One
Job ID: 348451
Date Posted: 03/27/2026
Shortcut: http://jobs.systemone.com/jnj6rw
Job Title: PKI / TLS Certificate Engineer
Location: REMOTE
Pay Rate: Open to Both C2C and W2 options
Position Type: Multiyear Contract
Certificate Management Engineering (CME) is seeking a DevOps-focused contractor to support Operations and Automation workstreams across enterprise certificate lifecycle management. This role will help design, build, and run automation that reduces manual certificate work, improves reliability, and strengthens security outcomes-covering X.509 certificate inventory/renewal automation, notification and escalation workflows, and integrations with operational ticketing processes.
The contractor will also support modernization initiatives that expand CME capabilities into Kubernetes certificate automation and code/container signing, including integration patterns and tooling used to manage certificates and machine identities in cloud/Kubernetes environments.
Key Responsibilities:
Operations Enablement (Reliability)
• Support day-to-day operational execution for certificate lifecycle work (issuance, renewal, replacement, decommission) with a strong focus on reducing manual handling and preventing certificate-expiration risk.
• Enhance operational workflows that include scripted Outlook notification/escalation logic and operational integrations (e.g., ticket/task creation).
• Partner with engineering and operations stakeholders to standardize repeatable procedures and ensure traceability of changes.
Automation Engineering (Build and Scale)
• Develop and maintain automation that expands certificate coverage and reduces manual renewal effort, building on existing code-based automations and monitoring/notification patterns.
• Implement or improve automation around certificate deployment patterns in modern platforms, including Kubernetes environments using components such as TLS for Kubernetes (TLSPK) and cert-manager.
• Contribute to automation patterns for code/container signing processes and pipelines, helping establish consistent standards and repeatable workflows.
Platform & Tooling Support
• Support and enhance automations and operational improvements for CyberArk (formerly Venafi) Certificate Manager within CMEs ecosystem.
• Assist in enabling cloud/Kubernetes certificate management approaches that leverage machine identity management tooling referenced by the team (e.g., Workload Identity Manager / Venafi Firefly references in CME materials).
Must-Have Qualifications (Required)
• Certificates / X.509 lifecycle management experience (request/issue/renew/replace/decommission, inventory/monitoring, risk reduction).
• PKI fundamentals (CAs, chains, key usage, SANs, revocation, policy constraints; ability to troubleshoot certificate path and deployment issues).
• PowerShell (advanced scripting for automation, error handling, logging, packaging, scheduling, and secure credential handling).
• DevOps/automation mindset with production support experience (building reliable runbooks, monitoring/alerting hooks, and operational handoffs).
• Ability to work cross-functionally with security, infrastructure, and platform teams to deliver automation that is operationally supportable.
Nice-to-Have Skills (Preferred)
• Venafi Trust Protection Platform / CyberArk Certificate Manager - Self Hosted
• CyberArk Certificate Manager - Kubernetes
• CyberArk Code Sign Manager
• Kubernetes cert-manager
• SPIFFE / SPIRE
• ServiceNow
• Python
• Ansible
• Golang
• Bash
• vcert
Deliverables & Success Measures
• Operational reduction of manual certificate tasks via automation improvements and measurable decreases in human touchpoints (especially renewal and deployment workflows).
• Improved notification/escalation effectiveness and reduced surprise expirations via scripted communication and integrated tasking.
• Working automation patterns for Kubernetes certificate management using components like cert-manager and related Kubernetes TLS enablement approaches referenced by CME.
• Supportable automation artifacts: source-controlled scripts, documentation/runbooks, and operational readiness for change-management expectations.
Working Relationships
• Works closely with CME engineering leadership and peer engineers supporting certificate automation, Kubernetes enablement, and signing initiatives.
• Coordinates with platform and change stakeholders to ensure automation is production-ready and appropriately documented.
System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
Ref: #851-Rockville-S1
-
EDP Platform Engineer (Databricks Admin)
Washington, District of Columbia
Job Title: Databricks Administrator Location: Washington, District of Columbia Type: Contract Contractor Work Model: Onsite PROJECT DESCRIPTION: The Enterprise Data Platform (EDP) empowers the Board to confidently use trusted, standardized, and well go...
Date Posted: 03/09/2026 Recommended
-
Senior Kubernetes Engineer / Platform Administrator
Washington, District Of Columbia
Senior Kubernetes Engineer / Platform Administrator Washington, DC (Bolling AFB) - onsite Active Top Secret with SCI eligibility We are seeking a highly experienced Senior Kubernetes Engineer / Platform Administrator to lead the design, deployment, and...
Date Posted: 03/20/2026 Recommended
-
AEM Developer Architect
Centennial , Colorado
Tittle: AEM Developer Architect Location : Centennial, Colorado Mode : Hybrid (3days in office – 2 days remote) Duration : Contract to Hire Years Of Exp Required : 14+ Years Roles/Responsibilities: Design and implement enterprise-grade AEM solutions wi...
Date Posted: 03/18/2026 Recommended
-
Software Development Engineer (SDET)
Merrifield, VA
Job Title: Senior Software Development Engineer (SDET) Location: Hybrid Work Model Reporting to Vienna, VA, Pensacola, FL, San Diego, CA Pay Rate: Open to Both C2C and W2 options Position Type: Multiyear Contract Responsibilities Work with engineers to...
Date Posted: 03/20/2026 Recommended
-
Bus Systems Analyst Lead
Farmers Branch, TX
Title: Business Systems Analyst Lead Position Location: Dallas, TX/Pittsburgh, PA/ Cleveland, OH - 5 Days Onsite Function of the Group: Mitigates Risk Initiatives/Projects: The resource will assist with ongoing change requests, automation enhancements,...
Date Posted: 03/09/2026 Recommended
-
Network Automation Engineer
Rockville, MD
Network Automation Engineer 100% REMOTE Candidates must be able to work without sponsorship Must be able to obtain USCIS Public Trust clearance $45/hr W2 (no PTO) or $85K with PTO System One is seeking a Network Automation Engineer to work for a large ...
Date Posted: 03/09/2026 Recommended
-
AEM Developer Architect
Centennial , Colorado
Job Title: AEM Developer Architect Location: Centennial, Colorado, United States Type: Contract To Hire Contractor Work Model: Onsite Hours: 40.0 Responsibilities Lead the design and development of enterprise-grade AEM solutions focusing on modularity,...
Date Posted: 03/17/2026 Recommended
-
AEM Developer Architect
Centennial , Colorado
Job Title: AEM Developer Architect Location: Centennial, Colorado Type: Contract To Hire Contractor Work Model: Onsite Responsibilities Lead the design and development of enterprise-grade AEM solutions focusing on modularity, scalability, and maintaina...
Date Posted: 03/18/2026 Recommended
-
DevOps Development Engineer
salt lake city, Utah
Tittle: DevOps Development Engineer Location : Salt Lake City, UT Mode : 5 days on site Duration : Contract to Hire Years Of Exp Required : 8+ Years Roles/Responsibilities: . Source Code repository management (SCM) including branch management . Creatin...
Date Posted: 03/18/2026 Recommended
-
DevOps Platform Enablement Lead (remote)
Baltimore, MD
Job Title: DevOps Platform Enablement Lead Location: Baltimore, MD Type: Contract – 3 months initial duration / likely extensions Contractor Work Model: REMOTE Our client is a large, sports centric, enterprise-level organization investing in modernizin...
Date Posted: 03/26/2026 Recommended
-
Sr. Software Integrator (Maximo)
Arlington, Virginia
Job Title: Sr. Software Integrator (Maximo) Location: Arlington, Virginia Type: Contract Contractor Work Model: Onsite Security Clearance: Must be U.S. Citizen Active Secret clearance (must be able to maintain) Responsibilities Design and implement int...
Date Posted: 03/23/2026 Recommended
-
Bus Systems Analyst Lead - Contractor
Farmers Branch, TX
Business Systems Analyst Lead (Contract to Hire) Job ID: 70495 Position Type: Contract (Right to Hire) Open Positions: 1 Location Preferred Location: Pittsburgh, PA – Two PNC Plaza Secondary Locations (in no particular order): Strongsville, OH – Strong...
Date Posted: 03/06/2026 Recommended
-
IT Systems Analyst (ERP Integrations & Automation)
York, PA
Job Title: IT Systems Analyst (ERP Integrations & Automation) Location: York, PA Type: Direct Hire Contractor Work Model: Onsite Day Shift Opportunity Overview System One is seeking a technically strong and collaborative IT Systems Analyst to support a...
Date Posted: 03/24/2026 Recommended
-
Posit System Administrator
Atlanta, Georgia
Posit System Administrator Atlanta, GA – hybrid $140,000 – $148,000 Responsibilities: • Maintain and enhance multiple Posit deployments (Workbench, Connect, and Package Manager), ensuring infrastructure remains functional and available for public healt...
Date Posted: 03/14/2026 Recommended
-
Senior IAM Analyst
Merrifield, VA
Job Title: Senior IAM Analyst Location: Remote Type: Contract Contractor Work Model: Remote Responsibilities Discover, review, validate, and analyze alerts generated by secrets scanning platforms to identify insecurely stored or exposed secrets. Suppor...
Date Posted: 03/18/2026 Recommended
-
Data Architect Sr - Contractor
Pittsburgh, PA
Java Architect Position Location: Pittsburgh PA (Onsite) Length of Assignment: 1 year Roles and Responsibilities: 8-10 years total experience with at least 5-6 years of specific experience in the below items Get up to speed with the App BAU vulnerabili...
Date Posted: 02/27/2026 Recommended
-
IT Business Analyst
Indianapolis, IN
Job Title: Analytics Engineering Lead – KPI & Data Metrics Location: 1555 Harding Street, Indianapolis, IN 46221 Hours/Schedule: Monday–Friday, 8 am to 5 pm Compensation: $63-70 per hour DOQ Type: 12 month contract Overview The Analytics Engineering Le...
Date Posted: 03/16/2026 Recommended
-
Quality Assurance Engineer
McLean, Virginia
Quality Assurance Engineer Location: McLean, Virginia Type: Contract To Hire Compensation: $75-$85/h Contractor Work Model: Remote Security Clearance: List security clearance requirements (delete if not needed) Quality Assurance Automation Engineer (2 ...
Date Posted: 02/24/2026 Recommended
-
Business Systems Analyst
Phoenix, AZ
Position Title: Business Systems Analyst Position Location: Phoenix ,AZ Duration – 1 year Employment Type - This is for W2 Employment Industry background: Experience in governance, risk, compliance, or IT audit Roles and Responsibilities: Someone needs...
Date Posted: 03/11/2026 Recommended
-
Senior Accounts Payable Analyst
San Rafael, CA
Job Title: Senior Accounts Payable Manager Location: San Rafael, CA (Hybrid – onsite Tuesdays and Thursdays) Hours/Schedule: Monday–Friday, 8 am to 5 pm Compensation: $90-100/hour DOQ Type: 6 month contract Overview The Senior Accounts Payable Manager ...
Date Posted: 03/17/2026 Recommended
-
Senior Marine Electrical Manager
North Kingstown, Rhode Island
Summary Statement The Senior Maritime Electrical Manager provides leadership and technical oversight for the design, integration, and delivery of shipboard electrical systems supporting new vessel construction and refit projects. This role oversees ele...
Date Posted: 03/12/2026 Recommended
-
Records management/Workflow Report specialist
JBA, Maryland
Job Title: RECORDS MANAGEMENT/WORKFLOW REPORTING SPECIALIST Location: JBA, Maryland The Records Management / Workflow Reporting Specialist will support the Air Force Review Boards Agency (AFRBA) Case Management Tracking Analysis and Reporting System (C...
Date Posted: 03/12/2026 Recommended
-
Program Manager
Tulsa , Oklahoma
Program Manager – Role Summary The Program Manager leads cross-functional initiatives within heat exchanger manufacturing operations. This role oversees complex customer programs from initial concept through final delivery, ensuring alignment with stra...
Date Posted: 03/24/2026 Recommended
-
Software Engineer Lead
PNC Default, NA
Job Title: Github Developer Location: Pittsburgh, PA/Cleveland, OH/Dallas, TX/Birmingham, AL/Phoenix, AZ Function of the Group: Mitigating risks and cost reduction Initiatives/Projects: Supporting Orange Rocket initiative. Team is bringing on GitHub en...
Date Posted: 01/12/2026 Recommended
-
Frontend Developer
Merrifield, VA
Job Title: Frontend Developer Location: Hybrid Work Model Reporting to Vienna, VA Pay Rate: Open to Both C2C and W2 options Position Type: Multiyear Contract Description: Seeking a mid to high-level Front-end engineer with extensive experience in Angul...
Date Posted: 03/06/2026 Recommended
-
AWS Data Lake and Reporting Developer
Alexandra, VA
If interested reach out directly to kimberly.spicer@systemone.com or call/text 301-252-8762 AWS Data Lake and Reporting Developer- REMOTE Responsibilities Support the EPLC project for the Commonwealth of Pennsylvania (COPA) by building and maintaining ...
Date Posted: 03/26/2026 Recommended
-
Senior Analyst, Supply Planning
Paterson, NJ
Title: Senior Analyst, Supply Planning Salary: $75k-$83k (Direct Hire) Location: Jersey City Schedule: Monday through Friday 7:30a to 3:30p Reason for Hire: Addition to Staff Education: Bachelor’s degree in Supply Chain Management, Operations, or Busin...
Date Posted: 03/06/2026 Recommended
-
Case Manager
Los Angeles, CA
Job Title: Case Manager Location: Los Angeles, CA Type: Contract Compensation: $23 hourly Contractor Work Model: Onsite Time-Limited Subsidy (TLS) Case Manager The TLS Case Manager provides housing-focused case management to individuals and families ex...
Date Posted: 03/04/2026 Recommended
-
Hardware Engineer I
Arlington, TX
Job Title: Hardware Engineer Location: Arlington, TX (onsite) Type: Contract Compensation: $34.00 hourly Security Clearance: Active Secret clearance required. (Must be able to obtain an NRC Public Trust Security Clearance before starting which may take...
Date Posted: 02/24/2026 Recommended
-
Application Architect
Bethesda, MD
Job Title: Application Architect Location: Bethesda, MD Type: Contract To Hire Compensation: 170- 190K Contractor Work Model: Hybrid (2 to 3 days on site in Bethesda MD) The Senior Application Architect is responsible for developing and evolving applic...
Date Posted: 02/23/2026 Recommended