Remote job
Staff Security & Cryptography Engineer
Job details
About this role
Role overview Own security architecture across high-throughput financial platforms, federated AI pipelines, and cloud meshes. The work spans applied cryptography, zero-trust networking, and offensive security, treating protection as a first-class engineering concern rather than a late-stage checklist. The role is remote (global), full-time, with a compensation range of $205k–$270k plus profit share.
Responsibilities - Design end-to-end cryptographic protocols, secure key management using HSMs and KMS, and zero-knowledge or multi-party computation workflows - Implement zero-trust network architectures with automated mTLS rotation and microsegmentation via Cilium, eBPF, and SPIFFE/SPIRE - Run offensive security assessments, automated fuzzing, and threat modeling across Rust, Go, and cloud codebases - Architect supply chain security pipelines at SLSA Level 3, with reproducible builds and SBOM signing - Act as the technical authority during third-party institutional audits and SOC 2 / ISO compliance reviews
Requirements - 6+ years in application security, systems security, or applied cryptography - Strong proficiency in Rust, Go, or C with deep knowledge of memory safety and kernel isolation primitives - Hands-on experience with modern cryptographic primitives such as ECDSA, Ed25519, AES-GCM, and TLS 1.3 - Deep understanding of container security, Kubernetes RBAC, and Linux security modules including AppArmor, Seccomp, and eBPF - Strong written communication for explaining threat models and mitigations to stakeholders
Nice to have - Published CVEs, academic cryptography papers, or high-tier bug bounty track record
Benefits and work setup - Remote-first, globally distributed team - Compensation band of $205k–$270k plus profit share - Small senior pod with asynchronous rituals