PKI Engineering & Operations Manager, Vice President

State StreetBoston, MA
$120,000 - $202,500Hybrid

About The Position

State Street Global Cyber Security is seeking a PKI Engineering & Operations Manager to own the engineering, operational reliability, and control posture of the firm’s certificate lifecycle management capability. The role leads day-to-day PKI “build and run” outcomes across our public key infrastructure (PKI), ensuring secure issuance, inventory, monitoring, renewal, and revocation processes at enterprise scale. This role is accountable for automation through orchestrators, audit readiness, and reducing outage risk from expiring or non-compliant certificates. This role can be performed in a hybrid model, where you can balance work from home and office to match your needs and role requirements.

Requirements

  • Strong PKI engineering + operations mindset (availability, change control discipline, operational hygiene, measurable reliability).
  • Proven ability to reduce enterprise risk through automation, standardization, monitoring, and documentation.
  • Excellent stakeholder management across app teams, infrastructure, audit/risk partners, and service management functions.
  • Ability to translate certificate risk into clear priorities and enforceable operational plans.
  • Hands-on comfort with certificate monitoring and compliance scanning workflows (including inventory/expiration and non-compliance discovery).
  • 8+ years in PKI / certificate lifecycle management engineering and operations (enterprise scale).
  • Bachelor’s degree (or equivalent experience).

Nice To Haves

  • Deep experience with PKI infrastructure and enterprise CA integration (such as DigiCert).
  • Experience integrating PKI with monitoring/SIEM and operational evidence practices.
  • Security / cloud certs are a plus (e.g., cloud security, PKI, crypto).

Responsibilities

  • Own end-to-end certificate lifecycle management outcomes (request → issuance → installation → inventory → monitoring → renewal → revocation/CRL), ensuring process consistency and operational resilience.
  • Lead platform operations for PKI Infrastructure (enterprise certificate visibility, expiration scanning rules, alerting), and ensure public Certificate Authority usage aligns to standards and audit expectations.
  • Drive remediation of certificate vulnerabilities, including eliminating self-signed / non-compliant certificates identified through scanning and operational review.
  • Deliver automation and integration with enterprise platforms (e.g., orchestrator integrations across cloud and infrastructure, plus workflow alignment through service management tooling).
  • Own PKI operational readiness: monitoring (e.g. logs/dashboards), incident/problem response, runbooks, and continuous improvement.
  • Execute operational governance: recertification cadence, evidence generation, documentation/diagrams, and sustainability of key PKI processes/integrations.
  • Partner with application and infrastructure teams on CSR intake, change control alignment, and timely renewal/rotation planning to prevent outages.
  • Coordinate security and risk activities for PKI tooling (e.g., assessments / reviews as required by internal risk frameworks) and maintain audit-ready artifacts.

Benefits

  • retirement savings plan (401K) with company match
  • insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages
  • paid-time off including vacation, sick leave, short term disability, and family care responsibilities
  • access to our Employee Assistance Program
  • incentive compensation including eligibility for annual performance-based awards
  • eligibility for certain tax advantaged savings plans
  • inclusive development opportunities
  • flexible work-life support
  • paid volunteer days
  • vibrant employee networks
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service