Remote job
Founding Cryptography Engineer
Job details
About this role
Role overview Own the cryptographic systems at the heart of a post-quantum security platform. This senior, high-trust role focuses on implementing hybrid signing, key exchange, a verifiable transparency log, and an attested signing environment. The work is expected to be correct, auditable, and clear enough for security teams to inspect closely.
Responsibilities - Design and implement hybrid signatures combining ML-DSA with Ed25519 or ECDSA, and ML-KEM key exchange. - Build and maintain an RFC 6962 Merkle transparency log, including consistency proofs and witness cosigning. - Harden signing with envelope encryption, enclave attestation, and hardware-backed keys. - Develop reference verifiers and keep behavior consistent across the CLI, SDKs, and API. - Apply NIST post-quantum cryptography standards and relevant specifications in production code.
Requirements - Strong Go programming skills; Rust experience is preferred. - Track record building security-sensitive systems. - Practical knowledge of applied cryptography, including signatures, key encapsulation, hashing, X.509, and TLS. - Ability to read standards and RFCs and implement them accurately. - Commitment to testable, auditable, well-documented code.
Nice to have - Experience with confidential computing environments such as Nitro Enclaves or SGX, or with TPM 2.0. - Contributions to open-source cryptography libraries.
Benefits and work setup - Remote-first role open to US and EU time zones. - Candidates are assessed on demonstrated ability rather than formal credentials.