Fresh Consulting

Staff Software Engineer (Security and Cryptography)

Fresh Consulting United States · $180K–$245K/yr

Business Consulting and Services · 201-500 employees

Yesterday
Remote Principal (10+ yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Staff Software Engineer will design and integrate novel cryptographic systems for orbital edge compute platforms. They are responsible for architecting security and data-sovereignty models while ensuring tenant isolation and effective key management.

What they look for

Cryptography Security Engineering C C++ Rust Key Management PKI Threat Modeling Secure Coding Cloud Security Multi-tenant Systems HSM TPM TEE CI/CD GitLab

Requirements

Candidates must have at least 8 years of professional software development experience with proficiency in C, C++, or Rust. A strong background in symmetric and asymmetric cryptography, threat modeling, and secure system design is required.

Full description

Seeking a Staff Software Engineer, Security and Cryptography to join the team designing, developing, and integrating novel cryptographic systems. Operating in a fast-paced environment characterized by rapid iteration and significant ambiguity, the successful candidate will deliver solutions quickly and effectively while developing a comprehensive security and data-sovereignty model for workloads and communications running at the orbital edge in a multi-tenant hosted environment. KEY DUTIES & RESPONSIBILITIES

  • Design, develop, and integrate novel cryptographic systems into orbital edge compute platform and software products
  • Architect and deliver a security and data-sovereignty model for multi-tenant workloads and communications running at the orbital edge, ensuring tenant isolation and customer control over sensitive data
  • Develop cryptographic and key management solutions suited to the constraints of edge compute environments, including intermittent connectivity, limited resources, and remote/autonomous operation
  • Design and implement key management and certificate lifecycle solutions, including key generation, storage, distribution, rotation, revocation, and secure deletion
  • Conduct threat modeling, architecture reviews, and security code reviews for cryptography-related features
  • Build libraries, APIs, and services that allow engineering teams to easily and correctly consume cryptographic services
  • Partner with software and hardware engineers to deliver customer-focused solutions, balancing security best practices with time-to-market
  • Integrate cryptographic solutions with hardware-backed key protection (HSMs, TPMs, or TEEs) where appropriate
  • Give and receive productive feedback during collaboration and in design and code reviews
  • Provide hands-on guidance and secure coding best practices to developers implementing cryptography
  • Evaluate and advance cryptographic agility, including readiness for post-quantum and evolving standards
  • Deliver iteratively and quickly in a fast-paced environment with significant ambiguity
  • Perform additional job duties as assigned

QUALIFICATIONS

Education & Experience

  • Bachelor of Science in Computer Science, Computer Engineering, Cybersecurity, Mathematics, or another related technical discipline, or equivalent professional experience
  • [8]+ years of professional software development experience, with strong proficiency in a systems language such as C, C++, or Rust
  • Deep engineering knowledge of symmetric and asymmetric cryptography and cryptographic protocols
  • Experience designing and implementing key management, PKI, and certificate lifecycle solutions
  • Demonstrated experience with secure development practices, threat modeling, and security-focused code review
  • Experience building secure systems in cloud and/or multi-tenant hosted environments
  • Experience with git distro (such as GitLab) and CI/CD tools
  • Prefer experience integrating cryptographic solutions with hardware-backed key protection (HSMs, TPMs, or TEEs)
  • Prefer familiarity with security and compliance frameworks such as NIST 800-53, FIPS 140-2/3, or CMMC
  • Prefer experience with post-quantum cryptography and cryptographic agility
  • Track record of making things happen in ambiguous, fast-moving environments
  • Uses good judgement to problem-solve proactively, positively impacting hard challenges
  • Demonstrated organization skills to meet tight deadlines with high quality results