> Markdown version of [/jobs/ext/3045108-senior-backend-software-engineer-pki-cybersecurity](https://www.wearedevelopers.com/jobs/ext/3045108-senior-backend-software-engineer-pki-cybersecurity). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Backend Software Engineer - PKI & Cybersecurity - **Company:** HTC Global Services, Inc. - **Location:** Dearborn, MI, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Testing (Software), Clean Code Principles, Java (Programming Language), Application Programming Interfaces (APIs), Applications Architecture, Application Lifecycle Management, C Sharp (Programming Language), Cloud Computing, Software Documentation, Software Quality, Cyber Security, Databases, Computer Engineering, Continuous Delivery, Continuous Integration, Disaster Recovery, Hardware Security Module, IEEE Standards Association, Python (Programming Language), Key Management, PostgreSQL, MongoDB, MySQL, Network Architecture, OAuth, Object-Oriented Software Development, OpenShift, Oracle (Applications), Open Web Application Security, Public Key Infrastructure, X.509, Software Architecture, Redis, RSA (Cryptosystem), Secure Coding, Software Deployment, Software Engineering, Software Systems, Systems Integration, Web Services, Data Storage Management, Google Cloud, Test-Driven Development (TDD), Backend, Kubernetes, Information Technology, Performance Monitor, Hardware Infrastructure, Restful APIs, Api Management, Static Application Security Testing, Programming Languages, Microservices, Dynamic Application Security Testing - **Published:** September 24, 2026 - **Apply:** https://jobs.mitalent.org/job-seeker/job-details/JobCode/410430176 ## About the Role * Bachelor's degree in Computer Science, Computer Engineering, Software Engineering, or a related engineering field. * 6+ years of experience in IT. * 4+ years of experience in software engineering/development and secure coding practices using object-oriented programming. * Practical experience in two coding languages or advanced practical experience in one coding language. * Strong knowledge and applicability of software architecture, development methodologies, and design principles. * Strong understanding and ability to apply cryptographic algorithms and standards in software, including RSA, ECC, AES, and X.509. * Experience with Software Development Lifecycle, software testing, application development, and software documentation. * Experience with C# and .NET Core. * Experience with PostgreSQL. * Experience with cloud infrastructure and Google Cloud Platform. * Experience with cybersecurity and secure coding practices. * Experience with Bouncy Castle Cryptographic. * Proven track record of owning customer-facing products from ideation through general acceptance. * Ability to manage multiple projects and deliverables throughout their lifecycle. * Experience with test-driven development. Preferred Qualifications * 2+ years of experience deploying and maintaining cloud infrastructure with Kubernetes or OpenShift. * 2+ years of experience managing database instances including PostgreSQL, Redis, and MongoDB. * 2+ years of experience building, maintaining, and integrating with production PKI systems and supporting cryptographic interfaces. * Experience and understanding of industry security standards and their application to software solutions and processes, including NIST, OWASP, and relevant ISO and IEEE standards. * Familiarity with in-vehicle network architecture, modules, and protocols. * Experience with Kubernetes. * Strong technical communication skills. * Experience with technical requirements, technical documentation, technical analysis, and application architecture. What Makes HTC A Great Place To Build Your Future ## Description We are seeking a Software Engineer specializing in Public Key Infrastructure (PKI), cryptography, and secure API services to develop and maintain mission-critical security systems. This role focuses on the end-to-end lifecycle of cryptographic keys and certificates, including certificate issuance, lifecycle management, revocation, and integration. The position involves designing, developing, deploying, and maintaining secure and scalable backend applications, APIs, microservices, and web services that support connected vehicle product ecosystems. The role also includes cryptographic engineering, cloud and on-premises infrastructure, security practices, testing, monitoring, and application lifecycle management., * Engage with customers to understand use cases and requirements. * Solve complex problems by designing, developing, and delivering solutions using various tools, languages, frameworks, and technologies. * Align development activities with architecture guidelines for a unified and coherent approach. * Design, develop, and deliver new code using various tools, languages, frameworks, and technologies. * Develop and maintain backend applications, APIs, and microservices using server-side languages such as Java, Python, and C#. * Design and develop secure and scalable RESTful APIs and web services. * Support certificate issuance, certificate lifecycle management, revocation, CRL/OCSP, ACME, software signing, key rotation, and message encryption/decryption. * Collaborate with front-end developers and cross-functional teams, including product owners, designers, and architects. * Manage application deployment to cloud and on-premises environments. * Support application health and performance monitoring, security hardening, and disaster recovery. * Manage data storage and retrieval using database technologies such as PostgreSQL, Oracle, MySQL, MongoDB, and Redis. * Promote improvements in programming practices, including test-driven development, continuous integration, and continuous delivery. * Optimize backend infrastructure and deployment practices to improve application resiliency and reliability. * Support security practices to safeguard user data, including encryption and anonymization. * Write and manage code that interfaces with Hardware Security Modules (HSMs) to apply cryptography and issue certificates. * Implement access control methods using OAuth or mutual TLS (mTLS) to enforce least-privilege access principles. * Implement and harden PKI and key management services using PKI industry standards, X.509, PKCS standards, ECC, and RSA. * Apply hybrid encryption techniques using AES. * Define and enforce PKI certificate policies and certificate profiles. * Integrate HSMs using PKCS#11. * Release and deploy applications through build servers, CI/CD pipelines, and infrastructure involving cloud and on-premises Kubernetes. * Monitor and address findings through SAST, DAST, software quality, and security vulnerability scanning. * Drive and support testing at each stage of the development process. * Own the full lifecycle of PKI and key management services, including requirements gathering, architecture design, implementation, testing, deployment, monitoring, and post-launch support. ## Related Videos - [Reducing LLM Calls with Vector Search Patterns - Raphael De Lio (Redis)](https://www.wearedevelopers.com/videos/1714-reducing-llm-calls-with-vector-search-patterns-raphael-de-lio-redis) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Cybersecurity for Software Defined Vehicles](https://www.wearedevelopers.com/videos/725-cybersecurity-for-software-defined-vehicles) - [Accelerating Authentication Architecture: Taking Passwordless to the Next Level](https://www.wearedevelopers.com/videos/733-accelerating-authentication-architecture-taking-passwordless-to-the-next-level) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)