> Markdown version of [/jobs/ext/1044542-specialty-software-engineer-3-contingent](https://www.wearedevelopers.com/jobs/ext/1044542-specialty-software-engineer-3-contingent). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Specialty Software Engineer 3 - Contingent - **Company:** PTR Global - **Location:** Concord, United States - **Experience:** Experienced - **Salary:** $124,800.0 - $145,600.0 - **Contract:** Permanent contract - **Skills:** Business Logic, Cloud Computing, Digital Assets, Disaster Recovery, Hardware Security Module, Information Systems Security Architecture Professional, Key Management, OpenID, Software Engineering, Build Management, Kubernetes - **Published:** June 9, 2026 - **Apply:** https://www.dice.com/job-detail/343e005a-7bd4-451e-9dbf-fcf10cdd392a ## About the Role * 7 plus years of experience in systems-level engineering, with expert proficiency in Go (for orchestration) and Rust (for cryptographic primitives). Applied Cryptography: * Deep experience implementing Threshold Cryptography and Multi-Party Computation (MPC). * Candidate should be comfortable implementing papers like GG20 from scratch. Confidential Computing: * Hands-on experience with TEE technologies, specifically Confidential Containers (CoCo), AMD SEV-SNP, or Intel SGX/TDX. * Candidate must understand attestation flows, measurements, and memory encryption. Attestation Standards: * Familiarity with the RATS architecture and components like Key Broker Services (KBS) and Attestation Services (AS). Secure Architecture: * Experience designing \"Defense-in-Depth\" systems where infrastructure (Kubernetes/Cloud) is treated as untrusted. Preferred (Nice-to-Haves): * Experience with OIDC/Identity standards (integrating WebAuthn/FIDO2 with cryptographic operations). * Familiarity with CNCF Trustee or similar attestation frameworks. * Experience in institutional custody, key management, or high-security fintech environments., * 4 plus years of Specialty Software Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education. ## Description * Client is engineering a next-generation Digital Asset Platform designed to solve the \"Approval-to-Execution Gap\" in institutional finance: ensuring that digital asset transactions are signed only when strictly authorized by policy, without exposing private keys to cloud operators or insiders. * Client is moving beyond standard hot wallets to build an institutional-grade Confidential Custody Infrastructure. * Client's platform combines Multi-Party Computation (MPC) with hardware-enforced Confidential Computing (TEEs) to create a \"glass vault\"-a system where key operations are cryptographically isolated, attestable, and mathematically proven secure. Responsibilities: * MPC Protocol Implementation: Architect and implement high-performance threshold signature schemes (specifically DKLS23 or similar) for ECDSA key generation and signing. * Confidential Computing Architecture: Design and build services that run inside Trusted Execution Environments (TEEs), specifically targeting AMD SEV-SNP and Intel TDX via Confidential Containers (CoCo). * Attestation Framework: Implement the RATS (Remote Attestation Procedures) architecture (RFC 9334) to ensure that no key share is released until the requesting node proves its hardware and software integrity to a Key Broker Service. * Hardware Security Integration: Design \"Cold Ceremony\" workflows that integrate offline hardware tokens as offline Key Encryption Keys (KEKs) for disaster recovery and deep storage. * Secure Enclave Development: Write and optimize memory-safe code (Rust/Go) that operates on key material exclusively within encrypted memory regions, ensuring zero leakage to the host OS or hypervisor. * Policy-to-Cryptography Binding: Design mechanisms to cryptographically bind business logic approvals (e.g., WebAuthn assertions) directly to the MPC signing session, eliminating the gap between \"approval\" and \"execution\"., * Consult on or participate in moderately complex initiatives and deliverables within Specialty Software Engineering and contribute to large-scale planning related to Specialty Software Engineering deliverables. * Review and analyze moderately complex Specialty Software Engineering challenges that require an in-depth evaluation of variable factors. * Contribute to the resolution of moderately complex issues and consult with others to meet Specialty Software Engineering deliverables while leveraging solid understanding of the function, policies, procedures, and compliance requirements. * Collaborate with client personnel in Specialty Software Engineering. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [The Algorithm That Nearly Killed Me: When Testing Isn't Enough](https://www.wearedevelopers.com/videos/2110-the-algorithm-that-nearly-killed-me-when-testing-isn-t-enough) - [An alternative approach to digital sovereignty: Confidential Computing](https://www.wearedevelopers.com/videos/100043-an-alternative-approach-to-digital-sovereignty-confidential-computing) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Where we're going we don't need JavaScript - Programming with Type Annotations](https://www.wearedevelopers.com/videos/455-where-we-re-going-we-don-t-need-javascript-programming-with-type-annotations) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)