Rodeo
Get started

eTeam

Certification Specialist

Preston
£537 – £581/day
Posted about 16 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Digital Certificate Management Consultant

Location: Inverness or Preston (5 days onsite)
Duration: 31/03/2027
Pay Rate: £537 to 581 per day all-inclusive (PAYE through Umbrella)
Must Have: Must Be SC Cleared (active)

Role Description

About the Role You’re Considering

The Digital Certificate Management Consultant operates within the Operational Integrator (OI) function within a multi-supplier (SIAM) environment and is responsible for governing, coordinating, and assuring digital certificate management activities across all suppliers.

The role provides oversight of certificate lifecycle management, supplier compliance, certificate ownership, inventory accuracy, and certificate-related risk. Working across suppliers, service management teams, security functions, and client stakeholders, the consultant ensures certificates are consistently managed, appropriately evidenced, and compliant with client security policies and regulatory requirements.

The consultant provides a consolidated and risk-based view of certificate posture across the ecosystem, enabling effective governance, operational assurance, and informed risk-based decision-making.

This is a governance, coordination, and assurance role and does not perform certificate administration, PKI operations, cryptographic engineering, or technical certificate deployment activities.

Key Responsibilities

Certificate Governance & Policy Alignment

  • Govern the digital certificate management framework across suppliers
  • Ensure supplier certificate management processes align with:
    • Client security policies
    • Cryptographic standards
    • Risk management requirements
    • Regulatory and contractual obligations
  • Establish and maintain governance for:
    • Certificate ownership and accountability
    • Lifecycle management activities
    • Expiry and renewal management
    • Risk acceptance and exception processes
  • Drive standardisation of certificate management processes and reporting across suppliers

Supplier Governance & Coordination (SIAM Model)

  • Act as the primary Operational Integrator coordination point for certificate management activities
  • Coordinate suppliers to ensure consistent management of:
    • Enterprise PKI certificates
    • Public CA certificates
    • Associated keys and secrets inventories
  • Validate supplier compliance with agreed certificate management processes
  • Challenge and drive resolution of identified gaps relating to:
    • Inventory completeness
    • Ownership accountability
    • Lifecycle management
    • Reporting quality
  • Facilitate cross-supplier collaboration where certificate dependencies exist

Certificate Inventory & Lifecycle Assurance

  • Ensure suppliers maintain complete and accurate certificate inventories
  • Validate certificates are:
    • Assigned clear ownership
    • Mapped to services, systems, and environments
    • Appropriately classified according to business criticality
  • Govern certificate lifecycle activities including:
    • Issuance
    • Renewal
    • Revocation
    • Replacement
  • Monitor supplier adherence to lifecycle management requirements
  • Ensure certificate-related operational risks are identified and managed appropriately

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Certificate Risk Management

  • Maintain visibility of certificate risk across the supplier landscape
  • Ensure effective management of:
    • Expiring certificates
    • Unmanaged certificates
    • Unknown certificate ownership
    • Non-compliant certificates
    • Weak or legacy certificate implementations
  • Support risk assessment and risk acceptance activities where remediation is not immediately achievable
  • Escalate significant certificate-related risks through appropriate governance forums

Reporting & Executive Visibility

  • Produce consolidated certificate management reporting across suppliers
  • Develop and maintain dashboards and metrics covering:
    • Certificate inventory health
    • Renewal performance
    • Certificate expiry risk
    • Policy compliance
    • Supplier performance
  • Provide evidence-based reporting to:
    • Operational governance forums
    • Security governance boards
    • Client stakeholders
  • Support strategic decision-making through clear visibility of certificate posture and associated risks

Evidence, Assurance & Audit Support

  • Define certificate management evidence requirements
  • Ensure certificate management activities are:
    • Traceable
    • Consistent
    • Audit-ready
  • Validate supplier-provided evidence relating to:
    • Inventory management
    • Lifecycle activities
    • Compliance reporting
    • Risk treatment activities
  • Support internal and external audit activities
  • Provide assurance that certificate management aligns to ISMS controls and security governance requirements

Continuous Improvement

  • Identify opportunities to improve certificate governance maturity across suppliers
  • Drive improvements in:
    • Reporting quality
    • Lifecycle management processes
    • Inventory accuracy
    • Risk management practices
  • Support the evolution of certificate management governance within the wider cyber security operating model
  • Contribute to lessons learned and service improvement activities

Your Skills and Experience

Essential:

  • Experience in Digital Certificate Management, PKI Governance, Cyber Security Governance, Information Assurance, or GRC
  • Strong understanding of:
    • Certificate lifecycle management
    • Certificate-related operational risks
    • Governance and assurance practices
    • Security compliance and audit requirements
  • Experience working within multi-supplier, SIAM, or complex outsourced environments
  • Strong stakeholder management and supplier coordination skills
  • Experience producing governance reporting and risk-based management information
  • Ability to interpret certificate management outputs and reporting without direct operational ownership

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Desirable:

  • Knowledge of:
    • Enterprise PKI environments
    • Public Certificate Authorities (DigiCert, Sectigo, Entrust, GlobalSign etc.)
    • ISO 27001 and ISMS requirements
    • NIST Cyber Security Framework
    • NCSC guidance
  • Experience within Defence, Government, Critical National Infrastructure, or highly regulated environments
  • Experience supporting audit and assurance programmes
  • Exposure to ServiceNow, GRC tooling, or certificate management platforms

Key Deliverables

  • Certificate Management Governance Framework
  • Consolidated certificate inventory reporting
  • Certificate risk and compliance dashboards
  • Supplier performance reporting
  • Certificate lifecycle assurance reporting
  • Audit-ready evidence repository
  • Governance and risk board reporting packs
  • Continuous improvement recommendations and maturity assessments

Role Definition

The role governs and assures digital certificate management across suppliers, ensuring certificates are consistently owned, managed, renewed, evidenced, and reported through a controlled, risk-based, and audit-ready framework while providing the client with a consolidated view of certificate posture and associated risk — without performing certificate administration or PKI engineering activities.

What This Role Does / Does Not Do

Does:

  • Govern, coordinate, assure, and validate certificate management activities
  • Provide enterprise-wide visibility of certificate risk and compliance
  • Drive supplier accountability and process adherence
  • Define evidence and reporting requirements
  • Support audits, assurance activities, and governance forums
  • Escalate certificate-related operational and security risks
  • Enable risk-informed decision-making

Does Not:

  • Issue, renew, revoke, or deploy certificates
  • Operate PKI infrastructure or certificate management tools
  • Manage cryptographic keys or secrets directly
  • Perform certificate engineering or administration
  • Own technical remediation or operational delivery
  • Act as a PKI engineer or security operations resource

Why This Works for an OI Service

This version fully captures the OI responsibility model because the role:

  • Governs rather than operates

  • Assures rather than administers

  • Coordinates suppliers rather than performs technical activities

  • Provides a consolidated client view across all suppliers

  • Owns risk visibility, reporting, evidence, and process compliance

  • Acts as the integration point between suppliers, service management, assurance, and client governance functions

If you are interested in this position and would like to learn more, please send through your CV and we will get in touch with you as soon as possible. Please note, candidates are often Shortlisted within 48 hours.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Digital Certificate Management
PKI Governance
Cyber Security Governance
Information Assurance
GRC
SIAM
Stakeholder Management
Supplier Coordination
Risk Management
Audit Compliance
Governance Reporting
Certificate Lifecycle Management
ISMS Controls
Operational Integration
Security Policy Alignment
Risk Assessment

Location

Preston, England, United Kingdom

Sign up to applySee more jobs like this