PKI Subject Matter Expert – Policy & Governance | Canberra (On-site) | NV1
Quick Summary
PKI Subject Matter Expert Eligibility Note Australian citizenship required. Must have an active Negative Vetting Level 1 (or higher) security clearance. Location Summary Location: Canberra (Onsite).
Australian citizenship required. Must have an active Negative Vetting Level 1 (or higher) security clearance.
Location: Canberra (Onsite).
- A tailored resume in docx format.
- RFQ ID: NMP92542 (RFx30247)
- Agency: Department of Defence – Joint Capabilities Group
- Closing Date: Wednesday, 2 September 2026 at 10:00am ACT local time
- Estimated Start Date: On execution of the Work Order
- Initial Contract Duration: 12 months, indicatively ending 30 September 2027
- Extension Term: 12 months
- Number of Extensions: 2
- Experience Level: SFIA Level 5 – GOVN 5
- Security Clearance: Active Negative Vetting Level 1 minimum
- Location of Work: Russell Offices and HMAS Harman, ACT
- Working Arrangements: Onsite. Russell Offices is the primary operations centre and HMAS Harman is the backup operations centre. Remote work may be undertaken only where specifically agreed.
- Maximum Hours: Up to 220 days at 8 hours per day during the initial term
The Directorate of Digital Identity Services is seeking a PKI Subject Matter Expert to provide policy services supporting the operation, assurance and continued evolution of a high-assurance Public Key Infrastructure environment.
The role reports directly to the PKI Operations Manager and is primarily focused on PKI policy, governance, compliance, audit support and the delivery of broader security and digital-identity outcomes.
The successful candidate will help ensure that PKI policies and documentation remain aligned with government, industry and international trust frameworks while supporting emerging capabilities such as post-quantum cryptography and interoperable smartcards.
Responsibilities
~2 min read- →Regularly review and update existing PKI artefacts, principally the core PKI and Gatekeeper-endorsed documentation set, including the Certificate Practice Statement and associated X.509 Certificate Policies.
- →Ensure PKI documentation and policies remain closely aligned with Gatekeeper and applicable CA/B Forum Trust Programs.
- →Provide advice, guidance and reporting to the PKI Policy Board.
- →Liaise with relevant legal, financial, technical and governance stakeholders to obtain appropriate endorsement of PKI policies.
- →Support projects seeking PKI services through meetings, technical advice and documentation review.
- →Support international PKI outcomes and agreements, including attending teleconferences, preparing minutes and actioning agreed items.
- →Contribute to the design, documentation and implementation of future PKI initiatives, including the transition to post-quantum cryptographic solutions.
- →Maintain awareness of emerging PKI, cryptographic and security trends.
- →Rapidly uplift organisational knowledge and practices to maintain compliance with changing requirements.
- →Become a PKI Operator to support escorting activities and compliance with No Lone Zone access requirements, associated controls and operational assurance measures.
- →Assist with preparation for the annual PKI audit, including a comprehensive review of relevant artefacts.
- →Assist in responding to audit findings and reporting to Gatekeeper, the PKI Policy Board and the CA/B Forum through the Common Certificate Authorities Database.
- →Liaise with business areas and projects to support the broad adoption and use of smartcards.
- →Develop documentation supporting the use of smartcards.
- →Support PKI policy development and compliance activities.
- →Help deliver a national smartcard token that interoperates with allied environments.
- →Provide additional support as directed by the PKI Operations Manager.
- SFIA GOVN Level 5 – Enterprise IT Governance
- Public Key Infrastructure policy and governance
- High-assurance PKI environments
- Certificate Practice Statements
- X.509 Certificate Policies
- Certification Authority operations and obligations
- Australian Government Gatekeeper Framework
- WebTrust
- Allied Communications Protocol 185
- CA/B Forum Trust Programs
- Common Certificate Authorities Database
- Microsoft Root Trust Program
- Hardware Security Modules
- Smartcards, card readers, drivers and applet middleware
- PKI audit preparation and remediation
- International and Five Eyes PKI policy development
- Post-quantum cryptography
- Cryptographic and security compliance
The Directorate of Digital Identity Services sits within Enterprise Technology Operations Branch and operates and maintains the Public Key Infrastructure used to provide enterprise security and assurance for personnel and resources accessing information, applications and sites.
The PKI operates as a high-assurance environment and is trusted across internal, allied, partner and internet environments. It enables electronic representations of identity across test, unclassified, protected and secret domains.
The environment is operated in accordance with PKI Management Authority policies and directions. Public PKIs are also certified and regularly audited against the Federal Government Gatekeeper Framework, Allied Communications Protocol 185 and the Microsoft Root Trust Program.
The RFQ seeks experience in any or all of the following:
- PKI;
- Software and infrastructure (card readers, drivers, HSM and applet middleware) in a PKI environment;
- Gatekeeper, WebTrust, ACP-185;
- Certification Authority Browser Forum (CA/B) Forum;
- Policy development in the 5 eyes/international arena; and
- Policy (specifically PKI related) development.
- Technical Merit
The demonstrated skills, knowledge and experience of the tenderer’s proposed personnel in delivering outcomes similar to the requirements; and
- Supplier Personnel
The extent to which the Supplier is assessed as having suitable Key Person(s) possessing the skills, qualifications, experience (including technical) and capacity to undertake and deliver the Services including the ability to resource the skills and levels required to perform the Services. Additionally, the Supplier’s proposed approach to minimising the turnover of personnel and how the Supplier will manage the associated risk. CVs of all proposed Key Persons must be provided to the Commonwealth.
The above evaluation criteria are not listed in any order of priority.
We know the government ICT market and we keep things straightforward. We take time to understand your background, your goals and the type of role that suits you. We believe transparency is about more than rates and our margins are fair and always disclosed.
- Fair, disclosed margins
- Clear communication at every stage
- Honest advice on fit and competitiveness
- Visibility on submissions and process status
- A professional and respectful experience
You choose what's best for you.
- PAYG through Pinaka
- Third-party payroll
- Self-employed (own ABN)
With a single, transparent and fixed margin, we ensure compliance to all state and payroll laws. So that is one less thing for you to worry about.
Already in a role but not happy with the setup?
Port in your contract to Pinaka for a simpler and more transparent experience. We also have some exciting limited time offers on top of the incredible margins we offer.
Our referral program for people who introduce strong candidates to us.
Refer a friend - Earn $1/hr per successful referral as long as you both with us. Refer as many friends as you want; no caps.
Location & Eligibility
Listing Details
- First seen
- August 26, 2026
- Last seen
- August 26, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 52%
- Scored at
- August 26, 2026
Signal breakdown
Please let pinaka know you found this job on Jobera.
Similar Subject Matter Expert jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.