Principal Engineer, Cryptographic Key Management System
Core
Designing and operating HSM-backed key management, application-level cryptographic integrations, and post-quantum readiness to protect enterprise and federal subscriber data.
Role type
Principal Cybersecurity Engineer (Cryptographic Key Management)
Builds
Enterprise cryptographic key management capabilities, cryptographic services, and post-quantum cryptography readiness for regulated environments.
Domain
Cybersecurity, Cryptography, Federal Compliance
Deliverable
production ML models | product features | infrastructure
Required skills
Enterprise cryptographic key management, HSM operations (Thales Payshield, Luna), key lifecycle operations, cryptographic integrations, post-quantum cryptography readiness, threat modeling, escalation management, high-level design architecture, security technologies, networking, web services, SOA, scripting (Python/Perl/Shell/HTML/PHP), federal & compliance regulations (SOX, PCI, CPNI, FIPS 140-2/140-3, CMMC Level 2, NIST 800-171/172)
Preferred skills
Key ceremony execution, host command development, PCI PIN/EMV/P2PE workflows, cloud security principles (AWS, Azure, GCP), cryptographic platforms (CipherTrust, HashiCorp Vault, PKCS#11, KMIP), cyber threat landscape analysis (TTPs)
Technologies
Thales Payshield, Luna HSMs, CipherTrust Manager, A10, F5, CheckPoint, Venafi, Mobile Iron, AWS, Azure, FireEye, Damballa, CyberArk, ArcSight, Splunk, Symantec, PCF, Docker, Qualys, Veracode
Responsibilities
Conduct security assessments, code reviews, and vulnerability testing; develop proactive security measures and strategies; serve as an authority in cybersecurity providing guidance and leadership; drive strategic security initiatives to protect against cyber threats and ensure compliance; evaluate new technologies and processes for potential security vulnerabilities; mentor peers and junior team members
Seniority
Principal, hands-on IC with strategic leadership