About this opportunity
N2 Services Inc lists this Senior PKI Software Engineer opportunity in dearborn, Michigan. Review the employer’s description below for duties, qualifications and application requirements.
Job description
Position Overview
We are seeking an experienced Software Engineer specializing in Public Key Infrastructure (PKI), cryptography, and secure API services to join the Product Cybersecurity PKI & Key Management Security Services team.
This role will be responsible for the end-to-end lifecycle of mission-critical PKI and cryptographic services supporting a connected-vehicle product ecosystem. The engineer will design, develop, deploy, secure, and maintain backend APIs and services responsible for certificate issuance, key management, certificate lifecycle management, revocation, and cryptographic operations.
Key Responsibilities
Design, develop, deploy, and maintain secure RESTful APIs and backend microservices .
Build and maintain production-grade PKI and certificate management systems .
Implement certificate issuance, renewal, rotation, revocation, and lifecycle management.
Work with CRL, OCSP, ACME, X.509, and PKCS standards .
Develop applications that integrate with Hardware Security Modules (HSMs) using PKCS#11 .
Implement cryptographic functionality using RSA, ECC, and AES .
Develop secure services using C#, .NET Core, Java, Python , or similar object-oriented languages.
Deploy and maintain applications in cloud and on-premises Kubernetes/OpenShift environments .
Work with databases including PostgreSQL, MongoDB, Redis, Oracle, or MySQL .
Implement secure authentication and access control using OAuth and mTLS .
Apply secure coding practices and software architecture principles.
Promote test-driven development (TDD), CI/CD, automated testing, and Agile development .
Monitor application health, performance, security, and reliability.
Support SAST, DAST, vulnerability scanning, and security remediation activities.
Apply cybersecurity standards and best practices including NIST, OWASP, ISO, and IEEE standards .
Collaborate with architects, product owners, developers, security teams, and customers.
Own products and services through the complete lifecycle, from requirements gathering through deployment and post-production support.
Required Qualifications
Bachelor's Degree - Required
6 years of IT experience
4 years of software engineering/development experience
Strong experience with object-oriented programming and secure coding
Experience with at least one advanced or two programming languages
Strong knowledge of software architecture, development methodologies, and design principles
Hands-on experience with PKI and cryptographic technologies
Strong understanding of:
RSA
ECC
AES
X.509
PKCS standards
Experience developing REST APIs and backend services
Strong understanding of software testing and TDD
Experience with cloud infrastructure and application deployment
Preferred Qualifications
2 years Kubernetes or OpenShift
2 years production PKI experience
Experience integrating with HSM / PKCS#11
Experience with PostgreSQL, Redis, and MongoDB
Experience with C# / .NET Core
Experience with NIST and OWASP
Experience with OAuth / mTLS
Knowledge of CRL, OCSP, ACME, certificate policies, and certificate profiles
Experience with CI/CD pipelines and infrastructure automation
Familiarity with in-vehicle network architecture, modules, and protocols
Understanding of post-quantum cryptography/readiness
Key Technologies
PKI: X.509, CRL, OCSP, ACME, Certificate Lifecycle
Cryptography: RSA, ECC, AES, PKCS
HSM: PKCS#11
Programming: C#, .NET Core, Java, Python
Cloud/Infrastructure: Kubernetes, OpenShift, Cloud
Databases: PostgreSQL, Redis, MongoDB
Security: NIST, OWASP, ISO, IEEE, OAuth, mTLS
Development: REST APIs, Microservices, TDD, CI/CD, SAST, DAST, Agile
Ideal candidate: A senior backend/software engineer with strong hands-on PKI cryptography HSM secure API development experience, combined with Kubernetes/cloud deployment expertise.
#J-18808-Ljbffr
Worksite address
dearborn, MI, 48120, US
Who can apply
Review the original listing for work authorization, qualifications and employer requirements.