Job Description
Piper Companies is seeking a PKI Administrator to join a large Hospital System Organization located in Philadelphia, PA for a 100% remote contract-to-hire role . The PKI Administrator will Manage the PKI environment for the Organization in their information security team. This team is growing so this is a brand new position for the organization! Responsibilities of the PKI Administrator include: PKI Operations & Management Administer and maintain internal and external Certificate Authorities (CAs), including Microsoft ADCS, HSM-integrated PKI, and third-party/public CAs (e.g., DigiCert, Entrust, GlobalSign). Manage root and subordinate CA hierarchies, certificate templates, CRLs, AIA/CDP, and OCSP configurations Oversee certificate issuance, renewal, and revocation workflows across the organization. Qualifications for the PKI Administrator include: 5+ years Experience in PKI administration or infrastructure security roles Understanding of cryptographic principles like: X.509 certificates, CAs, and key management lifecycle. Strong experience with Microsoft ADCS, OpenSSL, including hands-on experience with hardware security modules (e.g., Thales, nShield, Entrust). Experience with certificate lifecycle management platforms (e.g., Venafi, CyberArk, Keyfactor, AppViewX). Must have obtained a Bachelors Degree. Compensation for the PKI Administrator include: Salary Range: $120,000-130,000 Comprehensive Benefits: Cigna Medical, Dental, Vision, 401K, PTO, Sick Leave if required by law, and Holidays This job opens for applications on 3/11/2026 . Applications for this job will be accepted for at least 30 days from the posting date. Keywords: PKI, Venafi, Administrator, Certificate Authorities, ADCS, HSM-integration, DigiCert, Entrust, GlobalSign, CRLs, AIA/CDP, OCSP, lifecycle management, automation, certificate enrollment, SCEP, ACME, Intune, audit logs, audit, security, compliance, cryptographic standards, NIST, PCI-DSS, PKI resilience, Infrastructure integration, IIS, NetScaler, F5, Azure/AWS/GCP workloads, VPNs, MDM solutions, network appliances, SL/TLS troubleshooting, code signing, email encryption/signing, smart cards, device authentication