Key Management & HSM Security Engineer

5 years

4 - 7 Lacs

Posted:2 weeks ago| Platform: GlassDoor logo

Apply

Work Mode

On-site

Job Type

Part Time

Job Description

Overview:

We’re hiring an experienced Key Management & HSM Security Engineer to lead the design, deployment, and management of secure cryptographic infrastructure within the organization. The focus will be on Thales HSM (Luna) and CipherTrust platforms, enabling secure root key management and cryptographic operations for enterprise-scale workloads.

This role demands deep expertise in HSM integration, key lifecycle management, and cryptographic standards, along with the ability to work cross-functionally with application, infrastructure, and security teams.

Total Experience:

5 years of experience

Job Skills:

  • Minimum 5 years of experience in HSM security, key management, and cryptographic services
  • Hands-on experience with Thales Luna HSM and CipherTrust Manager
  • Deep understanding of PKI, digital certificates, encryption algorithms (AES, RSA, ECC, SHA-256)
  • Familiarity with key lifecycle controls, secure key storage, and enterprise-grade access controls
  • Proficiency in scripting and automation using Python, Shell, or PowerShell
  • Knowledge of compliance frameworks: ISO 27001, PCI DSS, NIST 800-57, FIPS 140-2/3
  • Experience working with on-prem security appliances and cloud KMS (AWS, Azure, GCP)

Preferred Qualifications

  • Professional certifications: CISSP, CISM, CCSP, or Thales HSM certifications
  • Experience integrating HSMs with IAM systems, CI/CD pipelines, and enterprise applications
  • Familiarity with DevSecOps, API security, and secure software development principles

Responsibilities:

  • Lead deployment, configuration, and administration of Thales Luna HSM and CipherTrust Manager
  • Implement root key security controls to safeguard cryptographic assets
  • Define and manage key lifecycle processes—creation, rotation, archival, decommissioning
  • Automate key provisioning and audit workflows using Python, Shell, or PowerShell
  • Ensure adherence to compliance frameworks: FIPS 140-2/3, PCI DSS, NIST, GDPR


Security Architecture & Compliance

  • Establish secure architecture for on-prem HSMs and integrate them into broader enterprise security posture
  • Perform threat assessments and lead incident response efforts related to key compromise or misuse
  • Maintain detailed documentation of architecture, operational procedures, and compliance reports
  • Align HSM implementation with enterprise identity, access management, and PKI systems

Integration & Support

  • Integrate HSMs with enterprise systems: applications, databases, file storage, certificate authorities
  • Provide technical support for HSM infrastructure—troubleshooting key issues, crypto failures, performance bottlenecks
  • Deliver internal training sessions and enforce key management best practices across technical teams

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now

RecommendedJobs for You