View all jobs

Senior Security / PKI Engineer

  • Toronto, ON

emergiTEL is hiring a Senior Security / PKI Engineer for our client in the Telecom industry.

Location: Toronto, ON
Job Type: Contract 
Work Arrangement: Hybrid 

Position Overview

We are looking for a Senior Security / PKI Engineer with strong hands-on experience in Public Key Infrastructure (PKI), digital certificates, Hardware Security Modules (HSMs), cryptographic key management, and device security.

The successful candidate will be responsible for designing, implementing, and supporting secure certificate and key-management solutions across enterprise and connected-device environments. This role requires a strong understanding of cryptographic security, certificate lifecycle management, secure boot, TPM, IoT security, and FIPS-aligned architectures.

Key Responsibilities

  • Design, implement, and maintain enterprise PKI and certificate-management solutions.
  • Manage the complete certificate lifecycle, including certificate issuance, renewal, revocation, rotation, and deployment.
  • Design and support cryptographic key management processes and secure key lifecycles.
  • Work with HSMs (Hardware Security Modules) for secure generation, storage, protection, and management of cryptographic keys.
  • Develop and maintain security architectures aligned with FIPS 140-2/140-3 and applicable security standards.
  • Work with TPM (Trusted Platform Module) technologies and hardware-backed security.
  • Design and support secure boot / trusted boot mechanisms.
  • Support device identity, authentication, and certificate provisioning for IoT and connected devices.
  • Apply IoT SAFE concepts and technologies for secure device identity and credential management.
  • Evaluate cryptographic implementations and identify potential security risks or weaknesses.
  • Develop and document security standards, architecture patterns, procedures, and operational processes.
  • Collaborate with security architects, infrastructure engineers, developers, DevOps teams, and other technical stakeholders.
  • Troubleshoot certificate, PKI, HSM, and cryptographic issues across development, test, and production environments.
  • Participate in security reviews, technical assessments, and implementation of security controls.
  • Ensure solutions follow organizational security policies, industry standards, and regulatory requirements.