Distinguished Engineer, Platform Security Engineering- Encryption and Tokenization (REMOTE)
MD Chevy Chase (Office) - JPS
As a Distinguished Engineer, you will collaborate with our Sr Staff, Staff, and Sr. Engineers to innovate and construct new systems, enhance existing ones, and discover fresh opportunities to apply your specialized knowledge in data security to resolve critical issues. You will spearhead the strategy and execution of a technical roadmap that accelerates product delivery and unlocks new engineering capabilities. Your leadership will be crucial in the design, implementation, and maintenance of a robust Encryption and Tokenization platform, ensuring the protection of sensitive data throughout the organization.Â
Position ResponsibilitiesÂ
Lead the development and execution of encryption, tokenization and key management platforms, solutions and strategies across the enterprise.Â
Ensure the quality, usability, and performance of the encryption and tokenization platform including ensuring high availability, disaster recovery, and auditable loggingÂ
Influence and educate leadership on the importance of secure data protection and key management practicesÂ
Collaborate across enterprise teams, including compliance, security and data governance teams to ensure cryptographic products are compliant to company policiesÂ
Stay updated on emerging trends in cryptography and apply this knowledge to enhance data protection strategiesÂ
Provide technical guidance and mentorship, fostering a culture of innovation and continuous improvementÂ
Collaborate with cross-functional teams to integrate data protection (encryption and tokenization) solutions seamlessly with organizational goalsÂ
Build resilient and scalable key management systems architectures, driving innovation and cost efficiency.Â
QualificationsÂ
Strong understanding of cryptographic encryption/tokenization and Key Management System. Â
Demonstrated experience in designing and implementing resilient, scalable, and efficient solutions for data at rest encryption using open-source cryptography libraries and encryption/tokenization protocols (FPE, AEAD etc.)Â
Strong software engineering skills (experience with Go preferred)Â
Knowledge of key management, Google Tink, PKCS11, JCE , OpenSSL and other crypto librariesÂ
Experience with PostgreSQL including its native replication mechanismsÂ
Strong problem-solving abilities with a proactive approach to security risk mitigationÂ
Strong expertise with site reliability engineering practices and operational excellence - Implementing and utilizing infrastructure observability and monitoring tools (Grafana, Prometheus, OpenTelemetry, eBPF)Â
Building and evolving CI/CD tools and pipelines (Bazel, Terraform, Argo CD/Workflows/Rollouts)Â
Excellent communication skills for conveying technical concepts to diverse stakeholderÂ
Experience with Data Protection and Key Management System within large-scale, distributed environmentsÂ
Knowledge of industry standards and regulations related to Key Management Systems, Cryptography, Encryption and TokenizationÂ
Ability to lead and execute encryption, tokenization and key management projects from conception to deploymentÂ
Familiarity with hardware security modules (HSM) and Cryptography StandardsÂ
ExperienceÂ
10+ years in security engineering with âŚ
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Benefits/PerksDental Health and well-being Medical Paid training Paid Training and Licensures Paid Vacation Parental leave Total Rewards Program Tuition reimbursement Vision Insurance
Tasks- Implementation
- Influence and educate leadership
- Provide technical guidance and mentorship
Architecture AWS Azure Building C CI/CD Cloud Cloud Services Cryptography Data Governance Data Protection Data Security Disaster Recovery Encryption Engineering Practices GCP Go Grafana Leadership Mentorship Monitoring Monitoring tools Observability OpenTelemetry PostgreSQL Prometheus Reliability REST Security Security Engineering Software Engineering Technical Roadmap Terraform Tokenization
Experience10 years
EducationBachelor's degree in Computer Science Bachelor's degree in information systems Computer Science Equivalent degree Information Systems Work experience
Certifications Timezones