Назад
Company hidden
3 дня назад

Senior Cryptography Engineer (Fintech)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Cryptography Engineer (Fintech): Protecting hirify.global's payment processing, customer data, and internal systems through robust, scalable cryptographic controls with an accent on designing, building, and automating key management, certificate lifecycle, and HSM governance. Focus on reducing operational risk, enabling secure developer self-service, and shaping the long-term cryptographic strategy across financial services.

Location: Onsite in London, UK

Company

hirify.global is a financial services company operating at scale, committed to strong security assurance across its business-critical platforms.

What you will do

  • Build, implement, and manage tooling for key generation, distribution, backup, automated rotation, and secure deletion across hybrid cloud environments.
  • Develop self-service certificate issuance workflows integrated with CI/CD pipelines.
  • Maintain certificate authority infrastructure, trust store management, and validation processes.
  • Build certificate provisioning patterns for containerized applications, API gateways, and service meshes.
  • Configure and maintain integrations with Cloud KMS services and support hardware security module (HSM) operations.
  • Implement cryptographic infrastructure using Terraform, CloudFormation, and configuration management.

Requirements

  • 3+ years implementing cryptographic systems with a deep understanding of symmetric/asymmetric encryption, digital signatures, key derivation, and PKI concepts.
  • Hands-on experience with cloud KMS services (e.g., Azure Key Vault, AWS KMS) and/or HSM platforms (e.g., Thales, Entrust, Azure CloudHSM).
  • Practical experience with certificate authorities, X.509 certificates, TLS/SSL configuration, and automated certificate lifecycle management.
  • Good understanding of security and compliance frameworks and standards for cryptography, including PCI-DSS, NIST, and FIPS.
  • Work format: Onsite in London, UK.

Nice to have

  • Experience with Infrastructure as Code (IaC) using Terraform, CloudFormation, or Pulumi, and CI/CD pipelines (GitHub Actions).
  • Strong development skills in one or more of: Python, Go, Java, or C#.
  • Experience building internal tools, libraries, and documentation for engineering teams.
  • Experience modernizing cryptographic systems, algorithm migration, and technical debt remediation.

Culture & Benefits

  • Commitment to diversity, equality, and inclusion.
  • Equal opportunity employer.
  • Support for colleagues to bring their whole selves to work.
  • Accommodations and reasonable adjustments available for disabilities or caring responsibilities during the application and interview process.

Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →