Demo

Information Security Engineer

PayPal
Scottsdale, AZ Full Time
POSTED ON 3/6/2025
AVAILABLE BEFORE 5/6/2025
Job Description Summary: What you need to know about the role: This role will focus on managing Hardware Security Modules (HSMs), Certificate Authorities (CAs), and automating Certificate Lifecycle Management (CLM). Publishing Certificate Revocation Lists (CRLs) from internal CAs. The ideal candidate will possess a strong understanding of PKI principles, HSM Management, DevOps practices, and experience with automation and scripting. Meet our team: This team's primary focus is securing data and communication between PayPal services and its clients using Public Key Cryptography. Responsibilities include managing PayPal's internal Certificate Authorities (CAs), the associated Hardware Security Modules (HSMs), and the lifecycle of issued cryptographic certificates. This role focuses on managing Hardware Security Modules (HSMs), Certificate Authorities (CAs), and automating Certificate Lifecycle Management (CLM). Job Description: Your way to impact: This role manages Critical CA infrastructure that all applications and clients relay on. Enhance security posture: Proper HSM and CA management, combined with automated CLM and CRL publishing, strengthens the overall security posture by protecting sensitive keys and ensuring timely revocation of compromised certificates. Increase efficiency: Automation and scripting will streamline certificate lifecycle processes, reducing manual effort and potential for human error. Improve compliance: Adherence to best practices in PKI, HSM management, and CLM helps meet regulatory and compliance requirements. Reduce operational costs: Automation can lower costs associated with manual certificate management. Provide better visibility and control: Centralized CLM provides a clearer overview of certificate inventory and simplifies management tasks. Your day to day: In your day to day role you will HSM Administration: Monitoring HSM health and performance. Managing HSM access controls and user permissions. Applying firmware updates and security patches. Performing key backups and recovery operations. Troubleshooting HSM issues. CA Administration: Issuing and revoking certificates. Monitoring CA health and performance. Managing CA configurations and policies. Responding to certificate requests. Publishing CRLs. CLM Automation: Developing and maintaining scripts for automating certificate lifecycle processes (issuance, renewal, revocation). Integrating CLM tools with other systems. Monitoring and troubleshooting automation workflows. Incident Response: Investigating and responding to security incidents related to certificates and HSMs. Collaboration and Communication: Working with other teams to integrate certificate services. Documenting processes and procedures. Participating in security audits. What do you need to bring: Bachelor’s degree in computer science or related discipline, preferably with an Information Security major or significant focus and 6+ years related industry experience. Deep understanding of PKI of Public Key Infrastructure principles, including certificate formats, key management, digital signatures, and the certificate lifecycle. Hands-on experience managing and administering HSMs, including tasks like key generation, backup/restore, applying firmware upgrades, security patching, and troubleshooting. Practical experience with EJBCA/similar CA administration skills, certificate issuance/revocation, and policy management. Strong scripting/programming skills (e.g., Go, Python, Bash) and experience automating tasks related to certificate management. A collaborative approach to working with other teams and a focus on automation and efficiency. The ability to diagnose and resolve complex issues related to PKI, HSMs, and certificate management. A strong understanding of security best practices and a commitment to protecting sensitive cryptographic assets. The ability to clearly explain technical concepts to both technical and non-technical audiences. We know the confidence gap and imposter syndrome can get in the way of meeting spectacular candidates. Please don't hesitate to apply.

Salary : $117,000 - $157,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Information Security Engineer?

Sign up to receive alerts about other jobs on the Information Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$86,628 - $131,378
Income Estimation: 
$123,246 - $161,441
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at PayPal

PayPal
Hired Organization Address Omaha, NE Full Time
Description Subsidiary : PayPal Travel Percent : For the majority of employees, PayPal's balanced hybrid work model offe...
PayPal
Hired Organization Address California, CA Full Time
The Company PayPal has been revolutionizing commerce globally for more than 25 years. Creating innovative experiences th...
PayPal
Hired Organization Address Omaha, NE Full Time
The Company PayPal has been revolutionizing commerce globally for more than 25 years. Creating innovative experiences th...
PayPal
Hired Organization Address Omaha, NE Full Time
The Company PayPal has been revolutionizing commerce globally for more than 25 years. Creating innovative experiences th...

Not the job you're looking for? Here are some other Information Security Engineer jobs in the Scottsdale, AZ area that may be a better fit.

Lead Information Security Engineer

WELLS FARGO BANK, Chandler, AZ

Information Security Engineer

Innova, Chandler, AZ

AI Assistant is available now!

Feel free to start your new journey!