Lead Information Security Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+9 more
Job description
As a Lead Information Security Analyst focused on Cryptography, PKI, and Digital Certificate Governance, you will provide technical leadership for enterprise cryptographic services and security controls. You will partner across security, engineering, infrastructure, architecture, and application teams to establish governance standards, assess risk, modernize certificate management capabilities, and support the organization’s cryptographic strategy.
You will serve as a trusted advisor on encryption technologies, digital certificate lifecycle management, key management practices, and cryptographic risk. You will also drive automation and data-driven governance initiatives that improve visibility, compliance, operational efficiency, and security resilience across the enterprise. Responsibilities Cryptography & PKI Leadership
- Serve as a subject matter expert for cryptography, PKI, digital certificates, encryption controls, and key management practices.
- Provide technical leadership for enterprise certificate lifecycle governance and cryptographic risk management.
- Develop and maintain cryptographic standards, policies, control frameworks, and implementation guidance.
- Collaborate with architecture, engineering, cloud, infrastructure, and application teams to design secure cryptographic solutions.
Governance, Risk & Compliance
- Conduct assessments of cryptographic implementations to identify vulnerabilities, control gaps, and operational risks.
- Evaluate certificate management, key management, trust architectures, and encryption controls against internal and regulatory requirements.
- Support audit, regulatory examination, and risk management activities related to cryptographic technologies.
- Establish metrics, reporting, and governance processes that improve compliance visibility and control effectiveness.
Certificate Lifecycle Management
- Lead initiatives focused on certificate discovery, inventory management, lifecycle governance, and automation.
- Evaluate and optimize enterprise certificate management platforms, including Venafi, Keyfactor, DigiCert, and related technologies.
- Develop strategies to improve certificate visibility, reduce operational risk, and prevent certificate-related outages.
- Partner with technology teams to implement scalable automation and remediation capabilities.
Data Analytics & Automation
- Analyze large-scale security, cryptographic, and certificate datasets to identify risk trends, compliance gaps, and opportunities for improvement.
- Design and implement automation solutions that enhance governance monitoring, policy enforcement, and remediation tracking.
- Utilize approved AI-assisted technologies and analytics platforms to streamline investigations, reporting, and operational workflows.
- Develop dashboards and executive reporting that communicate cryptographic risk posture and key performance indicators.
Strategy & Innovation
- Evaluate emerging threats, industry trends, and regulatory developments impacting enterprise cryptography.
- Assess organizational readiness for future cryptographic requirements, including Post-Quantum Cryptography (PQC).
- Influence enterprise roadmaps and modernization initiatives related to encryption, PKI, trust services, and key management.
- Provide recommendations for improving security resilience, operational maturity, and long-term cryptographic strategy.
Leadership Expectations
- Act as the primary escalation point for complex cryptographic, PKI, and certificate management challenges.
- Influence strategic technology decisions involving encryption, trust services, and enterprise security architecture.
- Build strong partnerships across Cybersecurity, Infrastructure, Engineering, Architecture, Risk, Audit, and Regulatory organizations.
- Mentor analysts, engineers, and architects while promoting security best practices across the enterprise.
- Translate complex technical concepts into actionable business recommendations and risk-based decisions.
- Drive continuous improvement initiatives that strengthen governance maturity, audit readiness, automation, and operational resilience.
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or equivalent practical experience.
- 7+ years of experience in Information Security, Cryptography, Public Key Infrastructure (PKI), Key Management, or related cybersecurity disciplines.
- 5+ years of experience supporting enterprise-scale certificate lifecycle management programs.
- Experience with cryptographic governance, risk assessments, and regulatory compliance within large financial or highly regulated organizations.
- Experience managing certificate lifecycle platforms such as Venafi, Keyfactor, DigiCert, or comparable solutions.
- Experience working with Hardware Security Modules (HSMs), encryption technologies, and enterprise key management systems., * Expertise in Post-Quantum Cryptography (PQC) readiness planning and emerging cryptographic standards.
- Experience with cloud-native cryptographic services and enterprise key management platforms.
- Experience building automation solutions using scripting, workflow orchestration, AI-assisted tools, or low-code platforms.
- Experience leveraging enterprise analytics and visualization tools such as Power BI, Tableau, Power Platform, or ServiceNow Analytics.
- Knowledge of ServiceNow CMDB, asset inventory management, and certificate discovery technologies.
- Professional certifications such as CISSP, CCSP, CISM, CRISC, or security certifications focused on PKI, cryptography, and cloud security., * Public Key Infrastructure (PKI)
- Digital Certificate Lifecycle Management
- Cryptography & Encryption Technologies
- Key Management
- Hardware Security Modules (HSM)
- Venafi
- Keyfactor
- DigiCert
- Post-Quantum Cryptography (PQC)
- Cybersecurity Governance
- Risk Assessment
- Security Automation
- ServiceNow CMDB
- Power BI / Tableau
- Cloud Security
- Enterprise Security Architecture
Target Candidate Profile: Senior-level cybersecurity professional with deep expertise in PKI, cryptographic governance, certificate lifecycle management, and enterprise-scale risk management in highly regulated environments. Strong combination of technical leadership, governance expertise, analytics, and automation capabilities.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Data Analyst Salary in the UK
Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud
Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence