> Markdown version of [/jobs/ext/1664484-senior-cloud-security-cryptography-engineer](https://www.wearedevelopers.com/jobs/ext/1664484-senior-cloud-security-cryptography-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cloud Security & Cryptography Engineer - **Company:** Caci Inc - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $114,600.0 - $252,100.0 - **Contract:** Permanent contract - **Skills:** C (Programming Language), Java (Programming Language), Application Programming Interfaces (APIs), Agile Methodology, Authentication Protocols, C++ (Programming Language), Cloud Computing, Cloud Computing Security, Computer Programming, Data Structures, Distributed Systems, Federal Information Processing Standards (FIPS), Hardware Security Module, Python (Programming Language), Key Management, OAuth, Public Key Infrastructure, Security Assertion Markup Language (SAML), Software Engineering, Transport Layer Security, Google Cloud, Okta, Software Security, Backend, Information Technology, Gsuite, Terraform - **Published:** July 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=231c9a001ef42107 ## About the Role * BS in Computer Science, or equivalent practical experience in data structures and software security. * 8+ years of industry experience in software development or cloud infrastructure engineering. * 5+ years of advanced proficiency in general-purpose languages like Python, C, C++, Java, or Go. * 5+ years' experience designing and developing large-scale, distributed infrastructure or highly secure operating environments. * 5+ years' experience with cryptographic algorithms, Public Key Infrastructure (PKI), TLS/SSL, authentication protocols, and threat modeling. * 3+ years of Google Cloud Identity, OAuth/SAML, Keycloak, and Google Workspace SSO integration. * Strong programming proficiency in languages such as C++, Go, or Python. * At least 3 years of experience in security and cryptographic engineering * At least 3 years of experience in Agile team roles supporting security and cryptographic projects * At least 3 years of experience with PKI, Key Management, and certificate lifecycle processes * GCP Professional Cloud Security Engineer certification * GIAC Python & Cryptography (GPCS / GCIP) certification, * 4+ years of experience using Terraform to codify security and cryptographic infrastructure configurations * 4+ years of network or operating system administrative experience focused on security hardening. * FIPS 140-2/3 validation processes and managing keys in a multi-level security environment, including policies for key generation and rotation. ## Description * Build foundational backend services used by Cloud customers and internal Google systems to secure, rotate, and manage cryptographic keys (e.g., Cloud Key Management Service). * Work across all layers of the production stack, from high-level, customer-facing Cloud APIs down to low-level operating systems and physical hardware. * Architect and scale HSM (Hardware Security Module) backed services to meet strict enterprise compliance and high-availability requirements. * Design cryptographic and secret management solutions, manage key lifecycles, and handle encryption schemes (e.g., Customer-Managed Encryption Keys or External Key Managers). * Design and deploy environments like Confidential VMs and Trusted Execution Environments (TEEs) to protect data while it is in use. * Design robust, reliable data-centric security and authentication protocols across global, hyper-scale cloud data centers. Implement Client-Side Encryption (CSE) for Google Workspace and ensure mutually authenticated TLS 1.3 communications., * 4+ years of experience implementing scalable cloud applications and platform services utilizing cryptographic controls ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Seriously gaming your cloud expertise: from cloud tourist to cloud native](https://www.wearedevelopers.com/videos/373-seriously-gaming-your-cloud-expertise-from-cloud-tourist-to-cloud-native) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)