Description

Position Description

 

The Crypto Squad is an agile devops team within Data Protection Services (DPS) and is responsible for engineering, developing, and operating secure storage and management solutions for encryption keys, passwords, certificates, and other sensitive data. The technology stack consists of home-grown software, 3rd party and open source products and auxiliary services and solutions. The successful candidate will act as a subject matter expert and be responsible for proto-typing, designing and delivering robust, scalable, cross-platform solutions that span teams. He/she will be expected to collaborate with managers and lead engineers across teams, broader partners in Security, CTO and Infrastructure as well as clients in order to understand technical and business requirements that will drive solutions. Resulting software, products and services will be then become BAU within existing engineering and operations teams. Solutions will vary in size/scope and technology as well as time-frames with an expectation of some parallelization across solutions.

 

In addition, the successful candidate support day to day operations including an on call rotation. We're looking for an enthusiastic, fungible, innovative technologist with good communication skills who's willing to get their hands dirty whilst not losing sight of the bigger picture.

 

The successful candidate will be expected to:

  • Drive the implementation of solutions (large or small) across platforms
  • Contribute to proof of concept (PoCs) and document the design and architectures for these solutions
  • Drive the productionisation of the solution across appropriate engineering and operations teams
  • Research vendor and open source solutions and determine fit into strategy and architecture
  • Interface with technical contacts at external vendor providers and other internal teams to ensure a holistic solution
  • Contribute to a strategy for cryptography for the organization
  • Maintain documentation, assist customers through FAQ entries and similar
  • Resolve issues with production systems
  • Interpret high level functional requirements to contribute to implementation designs
  • Support IT Security related product evaluations and research activities

 

Skills Required

  • -Excellent problem solving skills
  • -Strong verbal and written skills to interact with global teams and customers
  • -Excellent understanding of data encryption
  • -Experience with hardware security modules (HSM) (Thales preferred)
  • -Good understanding of enterprise authentication and web security
  • -Knowledge of Agile and DevOps
  • -Good understanding of the internet protocols TCP/IP, HTTP, SSL/TLS etc
  • -Good knowledge/experience on Windows as well as Linux based authentication products and services
  • -Proficiency in Linux or other Unix variant
  • -Good understanding of secure coding techniques and IT security principals in general

 

Skills Desired

  • Understanding of Key Management Interoperability Protocol (KMIP)
  • Experience of public key infrastructure (PKI)
  • Experience with cloud encryption solutions
  • Experience with container and virtuaalizion technology such as VMware, Docker, Kubernetes, etc.
  • Understanding of cryptographic techniques
  • Experience of developing in Java, .NET, or other language including object orientated coding
  • Proven architectural and design background
  • Experience operating in large, silo'd enterprise environments
  • Good understanding of Identity Management
  • Experience/Knowledge of either of Kerberos, Active Directory (AD), or LDAP
  • Experience with certificate lifecycle management
  • Experience building multi-tier application

Education

Any Graduate