DigiCert Logo

PKI Compliance and Automation Engineer

🇺🇸 United States - Remote
🔒 Cybersecurity🔵 Mid-level

Job Description

Who we are

DigiCert is a global leader in intelligent trust, helping organizations protect the digital interactions people rely on every day. From websites and cloud services to connected devices and critical systems, we make sure digital experiences are secure, private, and authentic.

Our AI-powered DigiCert ONE platform brings together certificates, DNS, and lifecycle management to help organizations stay ahead of risk as technology and threats evolve. Trusted by more than 100,000 organizations—including 90% of the Fortune 500—DigiCert helps businesses operate with confidence today while preparing for what’s next, including a quantum-safe future.

Job summary

Join our Certificate Authority Industry Standards team to learn and grow while contributing to compliance automation. You’ll assist in reading code for issuance microservices and certificate lifecycle pipelines. You’ll work closely with Product and Engineering teams to translate CA/Browser Forum requirements, Root Program policies, and CP/CPS controls into policy-as-code guardrails, pre-issuance validators, and automated evidence that make non-compliance impossible to ship. This role offers hands-on experience in PKI compliance engineering.

What you will do

  • Code & Config Compliance Reviews (PKI-specific): Validate code against CA/B Forum BRs, EV Guidelines, S/MIME BRs, Root Program policies, RFC 5280, and CP/CPS.
  • Support development of policy-as-code rules under guidance from senior engineers.
  • Help integrate compliance checks into CI/CD pipelines.
  • Participate in building automated evidence collection for audits.
  • Implement validators and monitors for certificate lifecycle operations to ensure continuous compliance.
  • Collaborate with team to improve developer experience and reduce false positives.

What you will have

  • Bachelor’s degree in Computer Science, Software Engineering, Information Security, or equivalent practical experience.
  • 2+ years of experience in software development, security, or compliance engineering.
  • Ability to read and understand code (Python, Go, Java, or similar languages).
  • Familiarity with PKI concepts (certificate lifecycle, Domain Control Verification methods) and eagerness to learn CA/Browser Forum standards.
  • Exposure to CI/CD pipelines and willingness to learn compliance automation tools.
  • Curiosity and willingness to learn PKI compliance engineering.
  • Standards Translation: Turn industry policies into precise policy-as-code.
  • Technical Analysis: Parse complex issuance code paths, DCV implementations, and profile renderers.
  • Basic understanding of security principles and automation mindset to build reliable shift-left guardrails that block non-compliance pre-merge and pre-issuance.
  • Attention to detail when reviewing code and configurations.
  • Strong communication skills and ability to work in a team environment.

Nice to have

  • Some experience with PKI tools such as zlint/cablint, OpenSSL/CFSSL, ASN.1 tooling, RFC 5280 path validation test suites.
  • Hands-on experience is a plus but not required—mentorship will be provided.
  • Kubernetes/cloud experience (OPA Gatekeeper/Kyverno, AWS/Azure/GCP).
  • HSM operations (PKCS#11), FIPS 140-2140-3 familiarity.

Benefits

  • Generous time off policies
  • Top shelf benefits
  • Education, wellness and lifestyle support

#LI-KK1

Share this job:
Please let DigiCert know you found this job on Remote First Jobs 🙏

19 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like DigiCert

Find your next opportunity with companies that specialize in Internet Security, Ssl Certificates, Extended Validation Ssl, and Internet Of Things. Explore remote-first companies like DigiCert that prioritize flexible work and home-office freedom.

AppViewX Logo

AppViewX

Automated Certificate Lifecycle Management and PKI solutions for enterprises.

4 open positions →
Keyfactor Logo

Keyfactor

Provides digital trust and quantum-safe security solutions for PKI, certificate automation, and machine identity management.

12 open positions →
Met Tel Logo

Met Tel

Integrated voice, data, network, cloud, and mobility IT solutions for businesses and government clients.

3 open positions →
Xage Security Logo

Xage Security

Provides zero trust access and protection for IT, OT, and cloud environments with the Xage Fabric Platform.

View company profile →
Incode Logo

Incode

501-1000 www.incode.com

AI-powered identity verification and fraud prevention solutions for enterprises.

1 open positions →
Dashlane Logo

Dashlane

Simplifying password management

15 open positions →

Project: Career Search

Rev. 2026.2

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply