Security Architect
Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills : Data Encryption
Good to have skills : Public Key Infrastructure
Minimum 2 year(s) of experience is required
Educational Qualification : 15 years full time education
Summary:
The PKI / Certificate Management Engineer is responsible for managing the full lifecycle of digital certificates, maintaining enterprise PKI infrastructure, ensuring the security and integrity of certificate authorities (CAs), and supporting internal and external stakeholders with certificate issuance, renewal, installation, and compliance. This role ensures uninterrupted cryptographic trust across applications, systems, users, and devices through proactive monitoring, governance, and operational excellence.
Roles & Responsibilities:
-Manage and renew Root CA and Intermediate CA certificates.
-Monitor CA validity periods and ensure timely generation of new certificates before expiry.
-Maintain security, performance, and reliability of Certificate Authorities and associated certificate services.
-Review platform usage statistics and assess capacity/performance impacts monthly.
-Log, validate, approve, or reject new certificate issuance requests.
-Maintain an accurate certificate book of records with owners, expiry dates, and usage.
-Manage the lifecycle for internal (via Certificate Management Tool) and external certificates.
-Use automated certificate discovery to onboard newly detected certificates across the environment.
-Identify certificate owners, applications, and deployment locations for newly discovered certificates.
-Coordinate certificate installation on end-user devices and application servers.
-Support infrastructure, application, and third-party teams with certificate deployment and troubleshooting.
-Provide remediation support for expired, unmanaged, or non-compliant certificates.
-Identify certificates expiring in 30/60/90 days, and notify relevant asset owners.
-Track certificates with insufficient key sizes, weak cipher algorithms, or compliance gaps.
-Follow up with stakeholders to drive timely renewal, replacement, or remediation.
-Maintain guidance material, forms, training content, and job aids to help users obtain and manage certificates.
-Keep updated lists of certificate owners and ensure accountability for certificate assets.
-Support PKI compliance efforts and ensure proper governance processes are followed for certificate management.
-Troubleshoot certificate issues impacting applications, end-user devices, or system services.
-Work with application teams as needed to resolve installation or validation issues.
-Remediate expired, unmanaged, or non-compliant certificates to restore trust in the environment.
-Contribute to continuous improvement of certificate processes and identify systemic issues.
Professional & Technical Skills:
-Must have 2 years experience in PKI Certificate Management and overall 3 years experience required.
-Strong understanding of PKI concepts, certificate authorities, CRLs, OCSP, and certificate chains.
-Knowledge of NDES is an advantage
-Experience with certificate issuance, renewal, deployment, and discovery tools.
-Knowledge of encryption standards, TLS/SSL, key sizes, cipher suites, and compliance requirements.
-Ability to troubleshoot certificate, authentication, and endpoint trust issues.
-Strong documentation, communication, and stakeholder coordination skills.
Additional Information:
- The candidate should have minimum 2 years of experience in Data Encryption.
- This position is based at our Bengaluru office.
- A 15 years full time education is required.
Bengaluru
Equal Employment Opportunity Statement
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Please read Accenture’s Recruiting and Hiring Statement for more information on how we process your data during the Recruiting and Hiring process.
We work with one shared purpose: to deliver on the promise of technology and human ingenuity. Every day, more than 775,000 of us help our stakeholders continuously reinvent. Together, we drive positive change and deliver value to our clients, partners, shareholders, communities, and each other.
We believe that delivering value requires innovation, and innovation thrives in an inclusive and diverse environment. We actively foster a workplace free from bias, where everyone feels a sense of belonging and is respected and empowered to do their best work.
At Accenture, we see well-being holistically, supporting our people’s physical, mental, and financial health. We also provide opportunities to keep skills relevant through certifications, learning, and diverse work experiences. We’re proud to be consistently recognized as one of the World’s Best Workplaces™.
Join Accenture to work at the heart of change. Visit us at www.accenture.com.
We have been alerted to the existence of fraudulent messages asking job seekers to set up payment to cover various costs associated with establishing employment at Accenture. No one is ever required to pay for employment at Accenture. If you are contacted by someone asking for payment, please do not respond, and contact us at india.fc.check@accenture.com immediately.