🔐 Senior Security Specialist – HSM & Encryption Key Management
📍 Pittsburgh, PA | Hybrid (2 Days Onsite / 3 Remote)
💼 Mid–Senior Level | Full-Time | Immediate Start
💲 Base Salary: $120,000 – $160,000
🏡 Hybrid Schedule: 2 days in-office or as needed for critical operations
🚫 Visa Sponsorship: Not Supported
🚚 Relocation: Possible for the ideal candidate
🌟 The Opportunity
Join a top-tier financial organization as a Senior Security Specialist, leading enterprise-wide initiatives in encryption key management, HSM lifecycle operations, and cryptographic security.
This is a pivotal role for a hands-on technical expert passionate about cryptography, encryption algorithms, and key lifecycle management. You’ll be at the forefront of protecting critical enterprise assets by designing and managing secure encryption frameworks, performing key ceremonies, and maintaining compliance within a highly regulated industry.
If you’re seeking a challenging role where you’ll directly influence enterprise security architecture and cryptographic strategy — this is it.
🧭 What You’ll Do
🧩 Encryption & Key Management
Design, develop, and implement enterprise encryption solutions and HSM frameworks.
Lead HSM lifecycle activities, including initialization, configuration, upgrades, and decommissioning.
Manage encryption key lifecycle processes — including generation, rotation, backup, and destruction.
Oversee key ceremonies, dual control, and chain-of-custody procedures to ensure compliance and audit readiness.
🔒 Security Operations & Risk Mitigation
Provide subject matter expertise on encryption technologies and cryptographic controls.
Develop and maintain secure room operations, documentation, and procedural guidelines.
Evaluate risks, identify vulnerabilities, and recommend solutions aligned with enterprise security frameworks.
Support compliance with internal and external regulatory standards.
🧠 Technical Leadership
Collaborate with cross-functional teams to integrate cryptographic solutions into enterprise systems.
Advise on the impact of new standards, policies, and technologies on existing security solutions.
Mentor junior security professionals, sharing expertise in cryptography and secure key management.
Stay ahead of industry trends and emerging technologies to proactively strengthen security posture.
⚙️ What You’ll Bring
Bachelor’s degree (Master’s or relevant certifications preferred).
8+ years of experience in security engineering or cryptographic key management, ideally within a highly regulated or banking environment.
Deep experience with Hardware Security Modules (HSMs) such as Thales Network HSM, nShield, and Cloud HSM solutions.
Strong understanding of encryption algorithms, cryptographic principles, and key management lifecycle.
Familiarity with Aruba, Aravo, Thales CipherTrust Manager, or Oracle Key Vault a plus.
Knowledge of BYOK / HYOK integrations across Azure, AWS, or GCP preferred.
Hands-on experience with scripting, automation, and analytics tools such as PowerBI, Dynatrace, Jira, Confluence, and SharePoint.
Excellent problem-solving, documentation, and communication skills.
🧩 Ideal Candidate
Brings physical HSM management experience (PED-based operations).
Comfortable leading key ceremonies and secure chain-of-custody processes.
Excels in both technical execution and process oversight.
Demonstrates composure and attention to detail in high-stakes, compliance-driven environments.
🎁 Benefits & Perks
Comprehensive Medical, Dental, and Vision coverage
401(k) with company match
Paid Time Off and Holidays
Employee Assistance Programs
Ongoing professional development and certification support
Hybrid flexibility with occasional on-site collaboration
🧭 Interview Process
1️⃣ Introductory call with Talent Partner
2️⃣ Technical Interview with Security Leadership
3️⃣ Final round with Enterprise Security Team
🌍 Why Join
Step into a mission-critical security role that directly safeguards enterprise data and digital infrastructure. You’ll collaborate with top cybersecurity experts, leverage leading-edge cryptographic technologies, and help shape the organization’s encryption strategy for years to come.
This is your opportunity to own the encryption key lifecycle, drive innovation in HSM management, and make a tangible impact in a world-class enterprise security environment.