Architect Public Key Infrastructure role at BMW Group focusing on IT Security with a Zero Trust initiative. Collaborating on secure IT systems and advanced PKI solutions.
Responsibilities
You will play a central role in building, operating, and further developing our global Public Key Infrastructure (PKI) with on-premises Hardware Security Modules (HSMs).
Modernizing our PKI architecture and aligning it consistently with Zero Trust requirements will be one of your core responsibilities.
You enjoy collaborating with internal business units, IT security stakeholders, and external service providers to develop new strategies for PKI use cases.
This also includes carrying out security-critical processes such as on-site root key ceremonies under the four-eyes principle.
You will find a working environment characterized by open communication, mutual support, and a high degree of personal responsibility.
Requirements
Completed vocational training as an IT specialist (Fachinformatiker) or an equivalent qualification.
Several years of experience in IT security and security architecture with extensive knowledge of Public Key Infrastructure (PKI), ideally with a focus on Microsoft PKI.
Experience securing Active Directory Certificate Services (AD CS), preferably in large enterprise environments.
Comprehensive knowledge of PKI architecture and certificate management (X.509, PKCS) and experience with post-quantum strategies.
Knowledge of PKI services such as certificate lifecycle management tools and infrastructure automation with Terraform, PowerShell, and/or Ansible is an advantage.
Familiarity with automation frameworks (Terraform, Ansible) and other Infrastructure as Code (IaC) approaches is a plus.
Business-fluent German and English, both written and spoken.
Benefits
Challenging projects that allow us to jointly shape the mobility of tomorrow.
Diverse opportunities for personal and professional development.
Attractive, fair, and performance-based compensation.
High job security.
Annual special payments such as vacation allowance, Christmas bonus, and profit-sharing.
Flexible working hours including 6 weeks of annual leave and compensation for overtime.
Cyber Security Architect developing high - quality Cyber and IT security solutions for Webster Bank. Focused on formulating, designing, assessing security systems, and ensuring compliance across technology initiatives.
Leading technical excellence and innovation as Head of Data Protection for Barclays, ensuring robust data security and operational efficiency. Mentoring engineering teams and aligning strategy with business goals.
Senior Cybersecurity Engineer at MSIG - North America, designing and implementing cybersecurity solutions. Managing security infrastructure and collaborating with the Information Security Officer.
Security Risk Analyst focusing on Enterprise Security Risk Management for Xcel Energy. Collaborating on risk assessments and ensuring documentation aligns with industry standards.
Conseiller juridique stratégique au sein des Services juridiques pour la protection des renseignements personnels au Canada. Fournissant des conseils stratégiques en matière de cybersécurité et réglementaire.
Cyber Security Manager leading the safeguarding of technology assets and data against threats at Barnet Council. Driving strategies, compliance, and risk management aligned with national standards.
Solution Train Engineer facilitating Information Security Agile Release Train processes for delivering solutions. Coaching teams while overseeing Program Increment sessions and managing risks and delivery flow.
Cloud and Security Engineer at Circuit Check responsible for architecting, implementing, and maintaining secure cloud infrastructure. Focused on hybrid cloud architecture and compliance frameworks to protect enterprise systems.
Supporting data privacy incident response processes as Cybersecurity Senior Analyst at financial services company. Engaging with various teams for documenting and mitigating privacy risks.