About this job
Company Profile
RS2 offers secure payment services, payment software and managed services to clients in over 35 countries. The company upholds the highest industry standards and RS2’s in-house designed payments solution is the software of choice by many of the world’s leading and most innovative banks and financial institutions.
The Role
At RS2 we treat the security of our data and cryptographic assets as our highest priority. We are looking for a meticulous, highly responsible Security Engineer to join our team, focusing specifically on Cryptographic Key Management and Hardware Security Module (HSM) administration.
This is a Junior to Mid-level role perfect for an Information Security professional who has a solid grasp of security fundamentals and is eager to specialize. We are not looking for someone who just waits for instructions; we want a proactive team member who takes initiative, owns their responsibilities, asks hard questions, and pushes the boundaries of how we secure our most critical cryptographic infrastructure.
Responsibilities
Key Lifecycle Management: Assist in the generation, distribution, rotation, revocation, and destruction of cryptographic keys across the organization.
HSM Administration: Support the daily operation, configuration, and maintenance of our Hardware Security Modules (HSMs) and Key Management Systems (KMS).
Proactive Monitoring: Monitor HSM health, capacity, and audit logs. Take initiative to identify potential anomalies or bottlenecks before they impact production.
Access & Policy Control: Ensure strict adherence to access control policies and cryptographic best practices (e.g., least privilege, separation of duties).
Documentation & Compliance: Maintain meticulous, up-to-date documentation of key management procedures, disaster recovery plans, and HSM configurations.
Continuous Improvement:Research emerging cryptographic threats. Take the lead on identifying areas where our current processes can be optimized or securely automated.
Requirements
Experience: 1 to 3+ years of experience in Information Security, IT infrastructure, or a related field.
InfoSec Foundation: A strong understanding of core Information Security principles, cryptography fundamentals (symmetric/asymmetric encryption, hashing, PKI), and network security.
High Sense of Responsibility: Cryptography requires zero margin for error. You must treat our security infrastructure with the utmost care, understanding the critical weight of protecting production keys.
Proactive Initiative: You are a self-starter. When you notice a gap in documentation, a process that could be improved, or an upcoming tech requirement, you take the initiative to address it or propose solutions.
Technical Acumen: Exposure to or hands-on experience with HSMs (e.g., Thales, Entrust, Utimaco) and enterprise Key Management Systems. Note: For junior candidates, strong theoretical knowledge combined with a high aptitude to learn is acceptable.
Work Ethic: You are highly organized, process-oriented, and cautious when dealing with critical production environments.
Growth Mindset: You are naturally curious, unafraid to tackle complex technical manuals, and eager to step out of your comfort zone to master new security technologies.
Additional Assets: Certifications such as CompTIA Security+, CEH, or foundational cloud security certifications (AWS/Azure/GCP) are considered a strong asset. Experience in highly regulated environments (Finance, Healthcare, Government) is also highly beneficial.
Think you’ve got what it takes?
Apply directly to get the conversation started! All applications will be treated with strict confidence.
Source: original employer vacancy ↗