1

Pki Sme Jobs (NOW HIRING)

$77K - $105K/yr

Job Summary JCS Solutions is seeking an experienced Network Engineer (SME) to join our Integrated ... Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate ...

New

$175K - $230K/yr

IdAM - Public Key Infrastructure (PKI) hands‑on for AuthN and AuthZ Cloud & On‑Prem ... Recognized SME with deep, hands‑on technical expertise * Strong systems thinker with the ability ...

IdAM - Public Key Infrastructure (PKI) hands-on for AuthN and AuthZ Cloud & On-Prem Technologies ... Recognized SME with deep, hands-on technical expertise * Strong systems thinker with the ability to ...

Systems Architect, SME

Fort Belvoir, VA · On-site

$274K/yr

... PKI certificate servers, Active Directory, Group Policy, and oversee RSA user authentication ... The Systems Architect SME must have proven work experience in these areas of IT expertise along ...

The Commercial Solutions for Classified (CSfC) Systems Engineer SME will architect and maintain mission-critical Public Key Infrastructure (PKI) and Hardware Security Modules (HSMs), oversee VMware ...

New

Showing results 41-60

Pki Sme information

What is a PKI SME?

PKI SMEs, or Public Key Infrastructure Subject Matter Experts, are professionals with specialized knowledge in the design, implementation, and management of PKI systems. PKI is a framework that manages digital certificates and public-key encryption to secure communications and authenticate identities in IT environments. PKI SMEs are responsible for ensuring the security and integrity of digital transactions, supporting certificate lifecycle management, and advising organizations on best practices for cryptographic security. They often work closely with IT security teams to integrate PKI solutions and address compliance requirements.

What are the key skills and qualifications needed to thrive as a PKI SME?

To thrive as a PKI SME (Public Key Infrastructure Subject Matter Expert), you need expertise in cryptography, digital certificates, and security protocols, typically supported by a degree in computer science or cybersecurity and relevant industry certifications like CISSP or CompTIA Security+. Familiarity with PKI management tools (e.g., Microsoft CA, OpenSSL), hardware security modules (HSMs), and enterprise security frameworks is essential. Strong analytical skills, attention to detail, and the ability to communicate complex security concepts clearly set top professionals apart. These skills are crucial for ensuring secure digital communications, regulatory compliance, and the protection of organizational assets.

What are some common challenges faced by PKI SMEs when managing enterprise-scale certificate infrastructures?

PKI SMEs often encounter challenges such as handling large volumes of certificate requests, ensuring timely renewals to avoid service disruptions, and maintaining compliance with evolving security standards. Managing cross-team communication is crucial, as PKI environments typically span multiple departments and systems. Additionally, PKI SMEs must continually monitor for vulnerabilities and respond quickly to incidents to safeguard sensitive data. Staying updated with the latest cryptographic best practices and regulatory requirements is also an ongoing aspect of the role.

What states have the most Pki Sme jobs?

States with the most job openings for Pki Sme jobs include:

What are popular job titles related to Pki Sme jobs?

For Pki Sme jobs, the most frequently searched job titles are:

Infographic showing various Pki Sme job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 89% Full Time, 2% Part Time, and 8% Contract. Highlights an 83% Physical, 4% Hybrid, and 13% Remote job distribution.

Network Engineer (SME)

On-site

JCS Solutions LLC
IT Services • 51 - 200 employees

$77K - $105K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 2 days ago

New


Job description

Job Summary

JCS Solutions is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio.

Clearance

Must have an active TS/SCI clearance at time of consideration. U.S. Citizen is a must.

What’s in it for you
  • Join a premier technology firm specializing in innovative solutions.
  • Be part of a collaborative, inclusive, and innovative work culture.
  • Enjoy tremendous growth potential in a high-performing team environment.
  • A robust benefits package:
    • Health, dental, and vision insurance
    • Life insurance
    • Short-and-long term disability
    • Paid time off (PTO)
    • 401k retirement plan with employer match
    • Annual Professional Development Reimbursement Program
    • And more!
What you will do
  • The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing.
  • Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks.
  • Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates.
  • Understanding of NIAP approved list and monitors for changes
  • Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates.
  • Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation.
  • Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection.
  • Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling.
  • Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CA), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure.
  • Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission.
What you will bring
  • US Citizenship required
  • Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree.
  • 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments
  • Active TS/SCI Clearance
  • Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP).
  • Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP.
  • Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF).
  • Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles.
  • Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies.
  • Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization.
  • Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN).
  • Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs).
  • Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations.
  • Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).

JCS Solutions (JCS) is a premier technology firm providing innovative solutions and high-quality services in defense, national security, and civilian sectors. JCS offers enterprise-wide solutions including cloud computing, software development, cybersecurity, digital modernization, and management consulting for the federal government. At JCS, we elevate our customers’ mission through the application of technology and professional services. Our commitment to investing in our workforce drives innovation and progress for our clients, employees, and communities.

JCS is both a Great Place to Work and a Top Places to Work certified company.

Our employees embody our core values, and we are looking for others who do too!

  • Customer Experience: Strive for excellence and delight our clients
  • Innovation: Embrace creative thinking to enable continual growth and powerful solutions
  • Accountability: Take ownership of and pride in our actions and service delivery
  • Inspire: Be inspired to be your best self and have fun in the process
  • Integrity: Do the right thing, the right way, every time!
  • Stewardship: The careful and responsible management of something entrusted to our care.

At JCS Solutions, compensation is based on a number of factors such as location, qualifications, and applicable contract terms. The general salary range for this position is as follows: $87,000.00 to $127,000.00.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to any protected status protected by applicable federal, state, or local laws.

NOTICE: Please be aware that all JCS Solutions communications related to job interviews and offers from our recruiting team will only come from @JCSolutions.com. We want to emphasize that we do not conduct any interviews over Discord, Slack, Skype, Zoom, or any chat app.

#J-18808-Ljbffr