Gemini · 22 hours ago
Senior Principal Security Engineer (Applied Cryptography and Authentication)
Maximize your interview chances
CryptocurrencyFinance
H1B Sponsor Likely
Insider Connection @Gemini
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Lead PKI Architecture and Engineering: Design, implement, and maintain a robust PKI infrastructure that supports the secure issuance, management, and revocation of digital certificates.
Harden secrets management: Enhance the security posture of our secrets management platforms by implementing best practices and advanced cryptographic controls.
Provide expertise in applied cryptography: Apply cryptographic principles to ensure the confidentiality, integrity, and authenticity of sensitive data at rest and in transit.
Eliminate insecure authentication practices: Drive the removal of shared/static credentials and transition to a scalable, user-friendly multi-factor authentication (MFA) solution.
Partner with engineering teams: Collaborate with engineering teams on security architecture and implementation decisions related to access management, cryptography, and related areas of infrastructure security.
Contribute to security risk reduction: Work with AppSec, Threat Detection, Incident Response, GRC, and other security teams to identify, assess, and mitigate security risks.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
15+ years of experience in the field.
Extensive experience in designing, deploying, and managing PKI systems, including certificate authorities, registration authorities, and certificate lifecycle management.
Deep knowledge of identity and access management technologies, protocols, and standards including WebAuthn/FIDO2, OAuth2/OpenID Connect, passkeys, PKCS #11, SAML, SCIM, RADIUS, LDAP, and X.509.
Significant experience with container orchestration technologies and relevant security considerations. We often use Kubernetes and EKS.
Significant experience with distributed systems or cloud computing, and the relevant security best practices. We often use AWS.
Significant software development experience. We often use Python or Go.
Experience building and owning high-availability critical systems or cloud-based services.
Able to self-scope, define, and manage short and long term technical goals.
Preferred
Experience designing and implementing cryptographic infrastructure at scale such as PKI, secrets management, authentication, or secure data storage/transmission.
Experience designing and implementing systems for identity and access management.
Experience with configuration management and infrastructure as code. We often use Terraform.
Experience with SPIFFE/SPIRE.
Significant experience with Hashicorp Vault.
Benefits
Comprehensive health plans
401K with company matching
Paid Parental Leave
Flexible time off
Company
Gemini
Gemini is a licensed digital asset exchange and custodian built for both individuals and institutions.
H1B Sponsorship
Gemini has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (2)
2022 (31)
2021 (35)
2020 (11)
Funding
Current Stage
Late StageTotal Funding
$424.9MKey Investors
Draper DragonMorgan Creek Digital
2022-06-20Secondary Market· $1M
2022-02-17Series Unknown· undefined
2021-11-18Series A· $423.9M
Leadership Team
Recent News
2024-10-29
2024-10-29
2024-10-26
Company data provided by crunchbase