Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Senior Lead Security Engineer - PKI

AT Charles Schwab
Charles Schwab

Senior Lead Security Engineer - PKI

Phoenix, AZ

Pay range: USD $145,400.00 - $210,000.00 / Year

Your opportunity

At Schwab, you are empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us "challenge the status quo" and transform the finance industry together. Schwab's Cybersecurity Services (SCS) organization is the first line of defense for the Firm. The Lead Security Engineer of the Public Key Infrastructure (PKI) team will play a key role on a team of cyber security data protection subject matter experts and engineers to create, implement, and maintain PKI controls using on-prem, SaaS, and IaaS cloud-based solutions to reduce risk and enforce Schwab's security policies and standards for data protection. You are a driven senior lead engineer with a deep passion to be an accelerator and change agent with the ability to build a security community and progressive Dev/SEC/Op's culture.

Want more jobs like this?

Get jobs in Phoenix, AZ delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.


You will be responsible for innovating, developing, and implementing groundbreaking PKI capabilities to secure data in on-prem, SaaS, and IaaS workloads. You have in-depth experience in managing and deploy Public Key Infrastructure environments, Certificate Authorities (CA), and in maintaining the lifecycle of X.509 certificates across large corporate enterprise environments. This role requires expertise in the cybersecurity industry.

Responsibilities Include, but not Limited to:

  • Lead team from a technical perspective and work with partners to architect and deploy PKI infrastructure, including Certificate Authorities (CAs), Registration Authorities (RAs), and Hardware Security Modules (HSMs).
  • Implement and maintain the issuance and management of digital certificates for users, servers, and devices across the organization.
  • Define certificate lifecycle management policies (issuance, renewal, revocation).
  • Integrate PKI with other security systems like authentication and access control mechanisms.
  • Conduct regular security assessments and audits of PKI systems to identify vulnerabilities and potential risks.
  • Work with other IT teams to integrate PKI solutions into existing systems and applications.
  • Maintain close ties to various stakeholders, developers, and engineers across the company, ensuring the services we create meet their needs as products evolve.
  • Communicate extensively with Data Protection Product and engineering teams across the organization.
  • Drive complex technical initiatives to full delivery leveraging knowledge of Cyber security practices, software engineering principles, agile frameworks, and customer engagement.
  • Design, build, and maintain infrastructure to meet the organization's requirements and ensure high availability.
  • Applying adept understanding and experience with systems automation platforms and technologies.

What you have

Required:

  • 10+ years of hands-on experience in network security, data security, and/or other cybersecurity-related controls and technologies.
  • Bachelor's Degree in computer science or related field highly preferred.
  • Ability to foster collaborative, open, working relationships with technology groups and other stakeholders, including vendor relationships.
  • Clear communication skills and ability to interact effectively at multiple levels of an organization, and to influence leadership (Including translating technical information based on specific audiences).
  • Experience implementing multiple high-visibility and high-impact enterprise cybersecurity projects with cross-functional teams while maintaining superior results including planning, development and management of technical requirements, design, testing and deployment of security solutions.
  • Strong understanding of Public Key Infrastructure (PKI) principles.
  • Expertise in PKI technologies like Microsoft Active Directory Certificate Services (AD CS), Entrust, Venafi, or other commercial PKI solutions.
  • Experience with managing Hardware Security Modules (HSMs).

Preferred:

  • Multiple certifications in cybersecurity and data protection cybersecurity highly preferred (CISSP, GIAC, CISM, CCSP, CISA, or Security+, or other related certifications).

What's in it for you

At Schwab, we're committed to empowering our employees' personal and professional success. Our purpose-driven, supportive culture, and focus on your development means you'll get the tools you need to make a positive difference in the finance industry. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.

We offer a competitive benefits package that takes care of the whole you - both today and in the future:

  • 401(k) with company match and Employee stock purchase plan
  • Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
  • Paid parental leave and family building benefits
  • Tuition reimbursement
  • Health, dental, and vision insurance

Client-provided location(s): Phoenix, AZ, USA
Job ID: CharlesSchwab-2025-107877
Employment Type: Other

Perks and Benefits

  • Health and Wellness

    • Health Insurance
    • Dental Insurance
    • Vision Insurance
    • Life Insurance
    • Short-Term Disability
    • Long-Term Disability
    • FSA
    • FSA With Employer Contribution
    • HSA
    • HSA With Employer Contribution
    • Pet Insurance
    • Mental Health Benefits
  • Parental Benefits

    • Birth Parent or Maternity Leave
    • Non-Birth Parent or Paternity Leave
    • Fertility Benefits
    • Adoption Assistance Program
    • Family Support Resources
    • Adoption Leave
  • Work Flexibility

    • Hybrid Work Opportunities
  • Office Life and Perks

    • Commuter Benefits Program
    • Snacks
    • Company Outings
    • On-Site Cafeteria
    • Holiday Events
  • Vacation and Time Off

    • Paid Vacation
    • Paid Holidays
    • Personal/Sick Days
    • Sabbatical
    • Leave of Absence
    • Volunteer Time Off
  • Financial and Retirement

    • 401(K) With Company Matching
    • Stock Purchase Program
    • Performance Bonus
    • Financial Counseling
  • Professional Development

    • Tuition Reimbursement
    • Promote From Within
    • Shadowing Opportunities
    • Access to Online Courses
    • Internship Program
    • Work Visa Sponsorship
    • Leadership Training Program
    • Associate or Rotational Training Program
  • Diversity and Inclusion

    • Employee Resource Groups (ERG)
    • Diversity, Equity, and Inclusion Program