Work Schedule
First Shift (Days)
Environmental Conditions
Office
Job Description
About the Role
This position is with Thermo Fisher Scientific, an inclusive employer and a member of myGwork the largest global platform for the LGBTQ+ business community.
At Thermo Fisher Scientific, you'll lead groundbreaking changes in our certificate management and credential hardening approaches worldwide, impacting over 100,000 colleagues.
Position Overview
As a Credential Hardening & Certificate Management Engineer, you will serve as the primary SME and program leader for enterprise-wide secrets hardening and certificate lifecycle management initiatives. You will operate with significant independence, acting as an internal transformation consultant to identify strategic points to enforce standard processes and foster cultural change around credential security. This role complements PAM initiatives and requires the ability to engineer tool-agnostic solutions in a dynamic tech landscape.
Key Responsibilities
- Strategic Program Leadership
Lead credential hardening transformation initiatives, eliminating legacy practices that compromise security.
Drive enterprise certificate lifecycle management strategies, roadmaps, and success metrics aligned with industry trends.Serve as the SME for secret management, automating certificate lifecycles, and credential security.Develop strategies to promote organizational change and overcome resistance.Engineer adaptable, tool-agnostic workflows for changing technology landscapes.Transformation & Program ManagementAct as an internal turnaround consultant, identifying systemic issues and crafting remediation strategies.
Challenge existing paradigms through data-driven analysis and strategic influence.Implement strategies to increase adoption of standard methodologies.Complete and deliver credential hardening investments.Design and implement cultural transformation initiatives embedding security-first thinking.Engineering & AutomationImplement automated certificate rotation systems addressing quantum computing threats, including migration to quantum-resistant algorithms.
Engineer scalable certificate management efforts with vendor-agnostic flexibility and agility for post-quantum transitions.Develop secrets management frameworks enforcing least privilege, rotation, and audit requirements.Create advanced monitoring systems for certificate expiration, rotation failures, and quantum readiness.Design integration strategies considering quantum threats.Cross-Functional Leadership & InfluenceLead efforts in credential and certificate security improvements, achieving clarity on organizational direction.
Represent initiatives in enterprise committees.Collaborate with PAM teams for multi-layered security strategies.Mentor technical teams on best practices and emerging threats.Secrets Threat Mitigation & Risk ManagementDevelop quantum readiness assessments and transition plans for cryptographic implementations.
Implement frameworks for algorithm transitions and monitor quantum computing advances.Understand hybrid cryptographic systems during the transition period.Process Innovation & OptimizationIdentify inefficiencies and develop metrics for program success and security improvements.
Design automated compliance reporting and scalable lifecycle management methodologies.Establish governance frameworks considering quantum threats.Technology Platform ManagementMaintain expertise in enterprise tooling and evaluate new secrets management platforms.
Design migration strategies prioritizing security and vendor flexibility.Enhance integration methodologies for existing infrastructure.Required Qualifications
Education & Certifications
Bachelor's in Cybersecurity, Computer Science, Systems Engineering, or related field (or equivalent experience)Advanced certifications such as CISSP, CISM, or CCSP, focusing on identity and access managementCredential management or consulting certifications preferredCertificate management training preferredExperience
8+ years in enterprise security, focusing on identity, access management, or PKI systems5+ years leading organizational transformation projects3+ years hands-on with certificate management platforms and PKI infrastructureProven track record as a change agent in security domainsTechnical Skills
Expertise in secrets management, credential hardening, and quantum-safe mechanismsKnowledge of PKI, certificate lifecycles, and post-quantum cryptography standardsExperience with SaaS secrets, DevOps, automation, and quantum-safe practicesUnderstanding of quantum computing impacts on cryptographyLeadership & Consulting Skills
Influence, persuasion, and inspiring change without direct authorityCritical thinking and problem-solving abilitiesStrong advisory skills and experience challenging practicesExcellent communication and mentorship capabilitiesLeadership in cultural change and organizational resistance overcomingSpecialized Proficiencies
Understanding of secrets management, compliance, threat modeling, and risk assessmentExperience with regulatory requirements and quantum-safe standardsProficiency with DevSecOps, zero trust, and cryptography algorithmsWhat We Offer
Join our organization to lead change in enterprise security, develop innovative solutions, and make a global impact. We offer competitive pay, benefits, development opportunities, and the chance to shape future security practices. Apply at : http : / / jobs.thermofisher.com
Equal Opportunity Statement
Thermo Fisher Scientific is an equal opportunity employer committed to diversity and inclusion. Reasonable accommodations are available for applicants with disabilities. #StartYourStory with us.
Compensation & Benefits
The estimated salary range for Maryland is $113,500–$170,200. Additional benefits include bonuses, health plans, PTO, holidays, parental leave, insurance, 401(k), ESPP, and more. Details at : https : / / jobs.thermofisher.com / global / en / total-rewards
J-18808-Ljbffr