The Role:
The primary responsibility of a Certificate Lifecycle Management (CLM) team consultant is to ensure the security, integrity, and uninterrupted availability of an organization's digital certificates (SSL/TLS) throughout their entire lifecycle—from discovery to revocation.
The Team / The Business: Candidate will be joining a team of highly motivated and professional individuals. The CLM team is responsible for overseeing the entire lifespan of digital certificates—including issuance, deployment, monitoring, renewal, and revocation—to ensure secure communication and prevent outages. Their primary role is to maintain a complete inventory, automate renewals to avoid expiration-related downtime, and ensure compliance with security standards.
The right candidate:
The ideal candidate will be a motivated CLM team consultant, who is willing to provide a range of SSL Certificate lifecycle Mgmt services to our clients across industry verticals. The role requires a combination of the right skills and experience to address the unique needs of businesses in a variety of industries.
What’s in it for you:
We are hiring for experienced CLM/PKI consultants for our IAM practice in Bangalore. Candidates with experience in any of one these tool – Venafi TPP, DigiCert and PKI Architecture can apply. Having a certification will be an added advantage.
Responsibilities:
CLM Tool Administration: Configure and maintain the Venafi Trust Protection Platform and DigiCert CertCentral/One platforms for enterprise-wide certificate inventory, discovery, and management.
Automation & Orchestration: Engineer and drive automation of certificate issuance, renewal, and revocation workflows (using ACME, SCEP, Venafi API) to reduce manual operational tasks.
PKI Operations: Manage internal Microsoft CA (ADCS) and external CA (DigiCert) integrations. Oversee the generation, distribution, and revocation of digital certificates for servers, applications, and network devices.
Integration: Integrate CLM platforms with infrastructure components, including cloud providers (Azure, AWS), load balancers (F5), web servers (IIS, Apache), and DevOps pipelines.
Governance & Compliance: Define and enforce certificate policies (CP/CPS), ensuring adherence to security standards like RSA/ECC, SHA-2, and TLS 1.2/1.3.
Troubleshooting & Support: Act as the subject matter expert (SME) for troubleshooting complex certificate-related incidents, chain validation issues, and TLS handshake failures.
Mentorship: Provide technical guidance and mentorship to junior team members on PKI best practices
Reporting: Preparing Certificate Lifecycle Monthly Reports.
What We are Looking For: