About the role
What will you do at Goldman Sachs?
Who We Are
Identity Security is part of the Identity and Access Management (IAM) business
unit within Foundation Engineering Division of Goldman Sachs.
The Role
The Senior Vice President (SVP) of Certificate and PKI Technologies will serve
as the leader responsible for global strategy, engineering, deployment, and
operations of the enterprise Public Key Infrastructure (PKI), cryptography, and
digital certificate lifecycle management.
This role is critical to securing the enterprise's digital identity footprint
across multi-cloud, on-premises, and IoT environments. The VP will lead a
high-performing team of security engineers to ensure robust, compliant, and
highly available trust services that align with industry standards set by
organizations like the NIST Computer Security Resource Center
[https://csrc.nist.gov/] and the CA/Browser Forum [https://cabforum.org/].
Core Skills and Experience we are looking for
* Strategic Leadership: Define and execute the global enterprise roadmap for
PKI, certificate management, and cryptographic services, ensuring alignment
with overall cybersecurity and business objectives.
* Infrastructure & Engineering: Oversee the design, implementation, and
maintenance of internal and external Certificate Authorities (CAs),
Registration Authorities (RAs), Hardware Security Modules (HSMs), and Key
Management Systems (KMS).
* Automation & Lifecycle Management: Drive the adoption of automated
certificate lifecycle management (CLM) tools and protocols (e.g., ACME, EST,
SCEP) to eliminate manual processes and prevent outages caused by expired
certificates.
* Compliance & Governance: Ensure strict adherence to cryptographic standards,
industry regulations, and audit requirements (e.g., WebTrust, SOC2, ISO
27001). Establish and maintain the enterprise Certificate Policy and
Certification Practice Statement (CP/CPS).
* Cloud & Modern Tech Integration: Architect scalable PKI solutions tailored
for modern environments, including Kubernetes, service meshes and
hybrid-cloud deployments (AWS, Azure, GCP).
* Incident Response & Risk Management: Serve as the escalation point for
cryptographic vulnerabilities, certificate-related outages, and emergency key
rotations.
* Vendor & Industry Representation: Manage relationships with external
Certificate Authorities and security vendors. Represent the organization in
industry consortiums to stay ahead of emerging cryptographic trends, such as
Post-Quantum Cryptography (PQC)
Attitudes we want
* Ability to thrive in our global organization in a fast paced,
result oriented, hybrid workplace.
* Team player, eager to work in a global organization.
* Enjoys working in an Agile environment.
* Strong emphasis on personal initiative and ownership.
* Customer focused and values good developer experience.
* A passion for learning new technologies.
Preferred Qualifications
- * Experience: 10+ years of experience in cybersecurity and information
- technology, with at least 8+ years of dedicated leadership experience in PKI,
- cryptography, and data protection.
- * Technical Expertise: Deep understanding of asymmetric/symmetric cryptography,
- TLS/SSL protocols, SSH key management, code signing, and HSM management.
- * Education: Bachelor’s or Master’s degree in Computer Science, Cybersecurity,
- Cryptography, or a related field.
- * Certifications: Preferred certifications include CISSP, CISM, or specialized
- cryptographic credentials.
- Salary Range
- The expected base salary for this Jersey City, NJ, United States-based position
- is $130000-$250000. In addition, you may be eligible for a discretionary bonus
- if you are an active employee as of fiscal year-end.
Benefits
Goldman Sachs is committed to providing our people with valuable and competitive
benefits and wellness offerings, as it is a core part of providing a strong
overall employee experience. A summary of these offerings, which are generally
available to active, non-temporary, full-time and part-time US employees who
work at least 20 hours per week, can be found here
[https://www.goldmansachs.com/careers/discover/2022-Benefits-Summary-US.pdf].
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
Cloud Security Engineer
Morgan & Morgan, P.A. · Tampa, Florida, United States
IT Senior Security Engineer
August Schell · Bethesda, Maryland, United States
Lead Engineer, Information Security (Application Security)
RXO, Inc. · United States
Senior Security Engineer
Credit Sesame · Mountain View, California, United States
Security Engineer
Brightspot · Reston, Virginia, United States
Cybersecurity Assessment Data Analyst
CACI International Inc · United States
Role information can change. Confirm current details on the original application page.
