Lead Information Security Engineer - PKI & PAM (Remote) at Ferguson

We are redirecting you to the source. If you are not redirected in 3 seconds, please click here.

Lead Information Security Engineer - PKI & PAM (Remote) at Ferguson. Location Information: Remote, United States. . Job Posting: . Since 1953, Ferguson has been a source of quality supplies for a variety of industries. Together We Build Better infrastructure, better homes and better businesses. We exist to make our customers’ complex projects simple, successful, and sustainable. We proactively solve problems, adapt and grow to continuously serve our customers, communities and each other. Ferguson is proud to provide best-in-class products, service and capabilities across the following industries: Commercial/Mechanical, Facilities Supply, Fire and Fabrication, HVAC, Industrial, Residential Trade, Residential Building and Remodel, Waterworks and Residential Digital Commerce. Ferguson has approximately 36,000 associates across 1,700 locations. Ferguson is a community of proud associates who operate with the shared purpose of building something meaningful. You will build a career that you are proud of, at a company you can believe in.. Lead Information Security Engineer – PKI & PAM. We’re looking for a Lead Information Security Engineer - PKI & PAM with deep expertise in Privileged Access Management (PAM) and Public Key Infrastructure (PKI) to join our growing security team. In this role, you’ll lead the design, implementation, and support of secure identity and access solutions across our enterprise, including CyberArk, Venafi, and Azure AD environments.. This is a hands-on technical leadership role where you’ll collaborate across IT, GRC, and audit teams to drive security policy enforcement and ensure compliance in a fast-paced, evolving environment.. 📍 Location: This role is approved to be fully remote and can be based anywhere in the United States.. Duties and Responsibilities: . Manage and support CyberArk, Venafi PKI, and Azure Key Vault platforms.. Create and maintain CyberArk safes, manage access via SailPoint IIQ, and monitor privileged account activity.. Troubleshoot and resolve issues related to PAM, PKI, and Azure identity services.. Develop and enforce security policies, procedures, and technical standards.. Partner with GRC and audit teams to support compliance initiatives.. Document service processes and find opportunities for automation and education.. Advocate for new security capabilities and best practices in identity and access management.. Provide technical guidance and mentorship across business and technology teams.. Qualifications and Requirements:. 10+ years of demonstrated ability in Information Security, with a focus on PKI, PAM, and identity management.. Bachelor’s degree in Computer Science, Information Security, or a related field — or equivalent experience in a relevant team.. Hands-on experience with PKI infrastructure, certificate lifecycle management, and cryptographic standards.. Proficiency in PowerShell scripting, especially in Azure environments.. Good understanding of Windows Server, networking, and SSO technologies.. Experience with Azure Entra ID, Key Vault, Resource Groups, and application registration.. Familiarity with Windows/Java keystores and certificate formats (.pem, .pfx, .cer, etc.).. Nice to Have:. Experience with Venafi PKI platform.. Knowledge of digital certificate encryption and Active Directory architecture.. Exposure to SailPoint IIQ or other identity governance tools.. Experience supporting security audits and regulatory compliance (e.g., SOX, NIST, ISO 27001).. CyberArk certification (e.g., Defender, Sentry, or Guardian) demonstrating advanced proficiency in PAM solutions.. What Sets You Apart:. Strong documentation and organizational skills.. Good communication and business collaborator engagement abilities.. A proactive, analytical approach with a passion for continuous improvement.. Ready to Apply?. If you're passionate about securing enterprise environments and leading identity-focused initiatives, we’d love to hear from you. Apply now and help shape the future of our security landscape.. At Ferguson, we care for each other. We value our well-being just as much as our hard work. We are committed to a holistic approach towards benefits plans and programs that support the mental, physical and financial well-being of our associates. Our competitive offering not only includes benefits like health, dental, vision, paid time off, life insurance and a 401(k) with a company match, but our associates also enjoy additional meaningful and inclusive enhancements that are adaptable to their diverse situations and needs, including mental health coverage, gender affirming and family building benefits, paid parental leave, associate discounts, community involvement opportunities and more!. #LI-REMOTE. -. Pay Range:. -. Actual pay rate may vary depending upon location. The estimated pay range for this position is below. The specific rate will depend on a candidate’s qualifications and prior experience.. -. $8,470.59 - $14,834.37. -. Estimated Ranges displayed are Monthly for Salaried roles . OR. Hourly for all other roles.. -. This role is Bonus or Incentive Plan eligible.. -. Ferguson complies with all wage regulations. The starting wage may be higher in certain locations based on local or state wage requirements.. -. The Company is an equal opportunity employer as well as a government contractor that shall abide by the requirements of 41 CFR 60-300.5(a), which prohibits discrimination against qualified protected Veterans and the requirements of 41 CFR 60-741.5(A), which prohibits discrimination against qualified individuals on the basis of disability.. Ferguson Enterprises, LLC. is an equal employment employer F/M/Disability/Vet/Sexual Orientation/Gender Identity.. Equal Employment Opportunity and Reasonable Accommodation Information. .