Senior Cyber Cryptographic Engineer
Role details
Job location
Tech stack
Job description
As a Cyber Cryptographic Engineer at Capital One, you will play a critical role in securing our cloud platforms and applications. You will specialize in cryptographic solutions, key management, and enterprise security platforms for critical data security services. As part of our Cyber team, you will engineer and develop solutions supporting web and mobile applications, machine learning, and big data, with a strong emphasis on cryptographic integrity and security.
You will engineer solutions to make it easy to operate large-scale infrastructure in our public cloud environment securely. These solutions will facilitate the deployment of software-defined networking, advanced security controls, and cryptographic capabilities that make our cloud usage both flexible and highly secure. As part of a centralized engineering team focused on serverless architecture, you will accelerate the development of hundreds of teams across Capital One, ensuring their solutions meet the highest cryptographic standards., + Build automated solutions via AWS Lambda and serverless architecture, incorporating strong cryptographic implementations.
-
Proactively identify architectural weaknesses, particularly cryptographic vulnerabilities, and provide appropriate solutions.
-
Evangelize a security-centered and cryptography-first approach to drive adoption across a large enterprise.
-
Innovate techniques for visualizing large amounts of complex, real-time security data, including cryptographic events, in a simple, elegant manner for users.
-
Participate in or lead complex or high-severity troubleshooting and incident problem resolutions involving cryptographic issues with other infrastructure teams or vendors.
-
Translate business needs into workable, cryptographically secure technology solutions that meet the needs of internal customers.
-
Act as a project lead or participate as a team member on projects involving certificates, keys, and advanced cryptographic security measures.
-
Participate in capacity planning, performance monitoring, and maintenance to ensure high availability and proactively identify opportunities for service improvement, especially in cryptographic systems.
-
Strong understanding of DevOps principles and their application to secure cryptographic deployments.
-
Participate in an off-hours on-call support rotation, focusing on cryptographic and security incidents.
-
Effectively communicate technical issues/challenges, including complex cryptographic concepts, to both technical and non-technical audiences.
Requirements
-
A master engineer with a deep understanding of cryptographic principles and solutions.
-
Automate security and cryptographic processes by default.
-
Strive for simplicity and robustness in cryptographic solutions.
-
Enjoy performing multiple technical functions, especially those related to security and cryptography.
-
An expert learner who understands the bigger picture for the business and the importance of cryptographic security., + High School Diploma, GED or equivalent certification
-
At least 3 years of experience with AWS, Microsoft Azure, or Google Cloud Platform
-
At least 3 years of experience in security and cryptographic engineering
-
At least 3 years of experience in Agile team roles supporting security and cryptographic projects
-
At least 3 years of experience with PKI, Key Management, and certificate lifecycle processes
Preferred Qualifications:
-
Bachelor's degree in Computer Science, Information Systems, or Engineering with a focus on Cryptography or Security.
-
4+ years of experience leading technical teams or projects with a cryptographic focus
-
4+ years of experience utilizing Python to develop cryptographic tools and applications
-
5+ years of experience managing enterprise Public Key Infrastructure (PKI) and cryptographic protocols
-
4+ years of experience with AWS Lambda or serverless automation platforms
-
4+ years of experience with AWS security, monitoring, and logging services including CloudWatch, GuardDuty, Macie, Config, and CloudTrail
-
4+ years of experience implementing scalable cloud applications and platform services utilizing cryptographic controls
-
4+ years of experience using Terraform or AWS CloudFormation to codify security and cryptographic infrastructure configurations
-
4+ years of network or operating system administrative experience focused on security hardening