Senior PKI Engineer

Sopra Steria
Hp27Ah, HP2 7AH, United Kingdom
Last month
Applications closed

Related Jobs

View all jobs

Senior Security Engineer

Proactive Appointments Uxbridge, UB8 1SB, United Kingdom
£70,000 – £75,000 pa Hybrid

Senior IT Systems Support Engineer

Spectrum IT Recruitment Basingstoke, United Kingdom
£45,000 – £55,000 pa On-site

Senior Full Stack Software Engineer - Web SDK

Hybrid

Senior Full Stack Software Engineer - Web SDK

Entrust Portugal
On-site

Senior Security Engineer, Amazon Security Automation

Amazon London, United Kingdom
On-site

Senior Security Researcher - Agent Workflow

Darktrace Cambridge, CB2 3BJ, United Kingdom
Hybrid
Job Type
Permanent
Work Pattern
Full-time
Work Location
On-site
Seniority
Senior
Security Clearance
Required
Posted
8 May 2026 (Last month)

Benefits

£5,400 car allowance Medical insurance Flex fund to purchase additional benefits 25 days annual leave with the choice to buy extra days Life assurance 6% pension

Are you an experienced PKI Engineer ready to take greater ownership of complex, secure infrastructure?

Sopra Steria is delivering a unique solution from the ground up for the Defence sector, integrating infrastructure and applications within highly secure, mission-critical environments.

This is an opportunity to play a leading role in shaping PKI services for a nationally significant programme, influencing design decisions, strengthening governance, and ensuring secure certificate services operate at scale.

In this role, you will act as a senior technical specialist for PKI, providing engineering leadership across certificate management, certificate template design, HSM administration, PKI governance, and lifecycle processes.

You will work closely with architecture, infrastructure, application, security, Windows, Linux, and web teams to define PKI requirements, guide implementation, and ensure solutions meet operational, security, and compliance needs.

Please note this role requires the person to be on site full time in our office.

What you will be doing:

  • Lead PKI engineering and operational activities across secure enterprise environments.
  • Own the design, review, deployment, and governance of certificate templates.
  • Provide senior technical guidance on certificate management across Windows, Linux, web-based platforms, enterprise applications, and infrastructure services.
  • Work with architects, engineers, security teams, and application owners to define PKI integration requirements and ensure appropriate certificate usage.
  • Lead the definition, documentation, and ongoing maintenance of PKI governance artefacts, including the Certification Policy Statement.
  • Drive certificate lifecycle management processes, including issuance, renewal, revocation, auditing, reporting, and governance.
  • Administer and provide technical oversight of HSM environments, including operational processes and security controls.
  • Identify opportunities to improve PKI processes, automation, resilience, and operational maturity.
  • Act as an escalation point for complex PKI issues across project and operational workstreams.
  • Provide technical assurance that PKI services align with security, regulatory, and programme requirements.

What you will bring:

  • Strong knowledge of DPKI / PKI within enterprise or secure environments.
  • Proven experience in PKI engineering, administration, and architecture support.
  • Experience providing technical leadership or acting as a senior escalation point for PKI-related activities.
  • Hands-on experience with HSMs, ideally Thales HSM products.
  • Strong experience in certificate management, certificate template design, and certificate template deployment.
  • Experience managing certificate templates across enterprise-scale environments.
  • Good understanding of certificate lifecycle management, PKI governance, and policy documentation.
  • Ability to work with infrastructure, application, security, and architecture teams to translate requirements into secure PKI solutions.
  • Experience improving PKI processes, documentation, controls, or operational maturity.

It would be great if you had:

  • Experience supporting enterprise applications and infrastructure with PKI integration requirements.
  • Experience working in complex, secure, regulated, or Defence environments.
  • Experience contributing to PKI strategy, service design, automation, or operational transformation.
  • Experience mentoring engineers or providing technical direction within a project or service team.

If you are interested in this role but not sure if your skills and experience are exactly what we’re looking for, please do apply, we’d love to hear from you!

Employment Type: Permanent

Location: Hertfordshire

Security Clearance Level: Eligible for Developed Vetting (DV)

Internal Recruiter: Josh

Salary: Competitive, based on experience

Benefits: £5,400 car allowance, medical insurance, flex fund to purchase additional benefits, 25 days annual leave with the choice to buy extra days, life assurance, and 6% pension

If you’re interested and need to work flexibly, we encourage you to apply and talk to us about what might be possible.

Loved reading about this job and want to know more about us?

Sopra Steria’s Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client’s goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK’s most complex safety- and security-critical markets.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.