Lead Security Engineer — Cryptographic Libraries & TLS
Next Frontier Capital
Take on a crucial role where you'll be a key part of a high-performing team building and maintaining foundational cryptographic infrastructure. Make a real impact as you help shape the way secure communications are configured, tested, and deployed across the enterprise at one of the world's largest and most influential companies. As a Lead Security Engineer at JPMorgan Chase within the CTC Emerging Technologies Security group, you will own and evolve a TLS abstraction layer that provides a unified interface for TLS stack configuration across Java, Python, and Node.js runtimes. You will serve as both a hands‑on developer and a subject‑matter expert at the intersection of network security protocols and polyglot software engineering. You will be responsible for ensuring that the library remains secure, performant, well‑tested, and aligned with evolving TLS standards and enterprise security policy. Job Responsibilities Design, implement, debug, and extend the TLS abstraction layer, ensuring consistent TLS configuration and behavior across Java (JSSE/Bouncy Castle), Python (ssl/OpenSSL bindings), and Node.js (built‑in TLS/OpenSSL) runtimes. Serve as the team's subject‑matter expert on TLS 1.2 and 1.3 handshake mechanics, cipher suite negotiation, certificate validation, key exchange algorithms, and session resumption — and translate that expertise into library design decisions. Architect clean, well‑documented APIs that decouple application‑level TLS intent (e.g., minimum protocol version, allowed cipher suites, certificate pinning, mutual TLS) from the platform‑specific implementation details of each runtime's TLS stack. Build and maintain comprehensive test suites — including unit, integration, interoperability, and protocol‑conformance tests — that verify correct TLS behavior across all supported runtimes and configurations. Develop test harnesses that exercise edge cases such as certificate chain validation failures, protocol downgrade scenarios, and cipher suite mismatches. Design, maintain, and improve CI/CD pipelines for the library, including automated builds, multi‑runtime test matrices, static analysis, dependency scanning, and artifact publishing across all supported language ecosystems (Maven/Gradle, PyPI, npm). Triage and resolve complex TLS‑related issues reported by consuming applications, including handshake failures, performance regressions, certificate trust‑store misconfigurations, and runtime‑specific behavioral differences. Monitor developments in TLS standards (IETF RFCs), cryptographic library updates (OpenSSL, Bouncy Castle), and runtime release notes to proactively assess impact on the library and plan necessary updates. Produce clear integration guides, migration documentation, and configuration references so that consuming teams can adopt and configure the library with minimal friction. Work with application teams, platform engineering, and enterprise security policy owners to gather requirements, communicate breaking changes, and align library capabilities with organizational security mandates. Contribute to a team culture of diversity, equity, inclusion, and mutual respect. Required Qualifications, Capabilities, and Skills Bachelor's degree in Computer Science, Computer Engineering, or a related field; 7+ years of software development experience, with at least 3 years focused on security‑sensitive or infrastructure‑level library development. Strong hands‑on development skills in at least two of Java, Python, and Node.js/TypeScript, with a willingness and ability to work across all three. Experience with each language's native TLS/cryptographic APIs (e.g., JSSE, Python ssl module, Node.js tls module). Deep understanding of TLS 1.2 and 1.3 — including handshake flows, key exchange mechanisms (ECDHE, DHE), certificate authentication (X.509, chain‑of‑trust, Certificate Verify), cipher suite semantics, ALPN/SNI, and session management. Familiarity with underlying cryptographic primitives (AES‑GCM, ChaCha20‑Poly1305, RSA, ECDSA, EdDSA, HKDF). Demonstrated experience designing, versioning, and maintaining libraries or SDKs consumed by other engineering teams, including thoughtful API surface design, semantic versioning, and backward‑compatibility management. Proven experience building multi‑dimensional test strategies for security‑critical software, including protocol‑conformance testing, cross‑platform interoperability testing, and negative/adversarial test cases. Hands‑on experience designing and maintaining CI/CD pipelines (e.g., Jenkins, GitHub Actions, or equivalent), including multi‑language build matrices, automated security scanning (SAST, dependency vulnerability checks), and artifact publication. Strong diagnostic skills for network‑level issues — comfortable using tools like Wireshark, OpenSSL CLI (s_client, s_server), keytool, and language‑specific debuggers to trace TLS handshake failures and certificate issues. Solid understanding of agile development methodologies, including iterative delivery, code review discipline, and application resiliency principles. Preferred Qualifications, Capabilities, and Skills Experience with cryptographic library internals such as OpenSSL, Bouncy Castle, or LibreSSL. Familiarity with FIPS 140‑2/140‑3 compliance requirements and their impact on TLS configuration and cryptographic provider selection. Experience with mutual TLS (mTLS) at scale, including certificate lifecycle management and automated rotation. Knowledge of PKI systems, HSMs, or key management infrastructure. Experience with container‑based build and test environments (Docker, Kubernetes) and cloud platforms (AWS). Familiarity with performance profiling of TLS handshakes and bulk‑encryption throughput across runtimes. Experience using AI‑assisted development tools (e.g., GitHub Copilot, Claude Code) to accelerate library development and test generation. Relevant certifications such as CISSP, CCSP, or vendor‑specific security credentials are a plus but not required. Equal Opportunity & Diversity We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans. #J-18808-Ljbffr Next Frontier Capital
$250k - $350k
...insatiable drive to push the boundaries of what's scientifically possible. About the Role You will lead, design, build, and operate security engineering at Periodic Labs. You will secure the systems that power our research and operations, including authentication...SuggestedRemote workVisa sponsorship$142.8k - $274.8k
...and future on-line services. This role is for a Principal Security Engineer with a background in security protocols and secure hardware... ...supporting security protocols, key management, attestation, and cryptographic services. Implemented and optimized secure boot flows to...SuggestedOngoing contractWork at officeLocal areaWorldwide$157k - $185k
...Security Engineer, Application Security Join us in building the future of finance. Our mission is to democratize finance for all. An... ...lifecycle. The team creates practical safeguards, including shared libraries, frameworks, and automated checks that make secure...SuggestedWork at officeFlexible hoursShift work3 days per week- ...Security Engineer Immediate need for a talented Security Engineer. This is a 06+ Months Contract opportunity with long-term potential and... ...management, and remediation processes. Our client is a leading IT Industry and we are currently interviewing to fill this and...SuggestedContract workImmediate start
- ...We are looking for a skilled Network Security Engineer with strong expertise in Fortinet (FortiGate) firewalls, along with working knowledge of Palo Alto , F5 WAF , and Load Balancers . The role requires hands‑on experience in firewall management, troubleshooting, and...Suggested
- ...sides. Founded by ex-Meta product and engineering leaders, we've raised over $30M in total... .... The Role We're looking for a Security Engineer to own security across our enterprise... .... You'll secure the products we ship, lead the compliance initiatives that unlock...Shift work
- ...We are seeking a Security Engineer to design and implement Data Loss Protection capabilities for complex security use cases, identifying bad actor threat behaviors and preventing/reducing malicious behavior within our platforms ecosystem. You will be on the forefront,...
$190k - $250k
...Senior Cloud Security Engineer Kodiak Robotics, Inc. was founded in... ...security foundations including cryptographic frameworks, mTLS... ...security expertise, including leading complex security initiatives... ...Built security frameworks or libraries adopted across an engineering...Temporary workWork at officeVisa sponsorshipFlexible hours$200k - $340k
...Infrastructure Security Engineer Palo Alto, CA About XAI XAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence....Temporary work$137.86k - $250k
...Carlos, CA (on-site) The Role As a Product Security Engineer, you will help secure NEO end-to-end—from the operating system and cryptographic infrastructure running on the robot to... ...remediation of security vulnerabilities Lead security initiatives end-to-end and serve...Temporary workLocal areaFlexible hours$210k - $255k
...banking app? That was us! Cardlytics (NASDAQ: CDLX) is the industry-leading purchase intelligence and incentives platform. We are a... ...Cardlytics purchase incentive platform. Working closely with peer engineering and product teams, Publisher Engineering ensures these APIs...Full timeWork at officeRemote workFlexible hours$190k - $243k
...Founded in 2017, Obsidian Security was created to close a critical gap: securing the SaaS... ...Overview: We’re looking for a Staff Security Engineer to join our team and help drive our... ...is excited about working at an industry-leading cybersecurity startup company with...Work from homeFlexible hours$170k - $190k
...speed, ownership, and a relentless focus on outcomes. ASAPP’s AI Engineering team is seeking an enterprising, talented and curious machine learning engineer. We are seeking a highly experienced Lead AI/ML Engineer to join our Core GenerativeAgent team. You will play...Full time- ...Senior Federal Information Systems Security Engineer (ISSE) The Senior Federal Information Systems Security Engineer (ISSE) serves as a... ...better future for all. Discover your potential at a company leading the way in AI and cloud solutions that impact billions of lives...Contract workWork experience placementRelocationFlexible hours
$100k - $258k
...knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who... ...THE ROLE: We are seeking a skilled and innovative Application Security Engineer to join our technology-driven company. In this role,...Temporary work$200k - $245k
...BitGo is the leading infrastructure provider of digital asset solutions, delivering custody... ...have focused on enabling our clients to securely navigate the digital asset space. With a... ...seeking a Senior Application Security Engineer to lead the technical execution of our...Full timeWork at officeWorldwide- ...Security Engineer Identify vulnerabilities through test, system design review or code analysis; explain how a vulnerability exploitation works and root cause; recommend secure solutions and mitigations, tailored to each environment. Have strong communication skills...
- ...Employment Type Full time Location Type Hybrid Department Engineering Cloud & Security Security About Beacon AI We’re a fast-moving team of aviators... ...Overview We are seeking a highly skilled and motivated Lead Security Engineer to join our team. In this role, you will...Permanent employmentFull timeWork at officeLocal areaRemote work3 days per week
- ...benefits details below Business Function: IT Security Location (Secondary): Irvine Office--LOC... ...capabilities and our industry-leading portfolio of products that are recognized... ...seeking a highly experienced Senior Security Engineer to own, design, and continuously improve...Temporary workWork at officeRemote workFlexible hoursShift work
$80 - $90 per hour
...Position: Security Engineer III Location: Cupertino, California Duration: 12 months Contract Type: W2 Job ID: 175804 Job... ...collaboration abilities. About PTR Global: PTR Global is a leading provider of information technology and workforce solutions....Hourly payFull timeContract work$80 - $90 per hour
...Position: Security Engineer III Location: Cupertino, California Duration: 12 months Contract Type: W2 Job ID: 175804 Job Overview The Security Engineer III will play a critical role in ensuring the security and integrity of systems, networks, and data. This position requires...Hourly payContract work- ...: 200657994-0836 Summary We are seeking an experienced Security Engineer to play a pivotal role in shaping the security posture of our... ...and emerging technologies. In this high-impact role, you will lead sophisticated security assessments, conduct comprehensive...Shift work
- ...advance your career - and we have the perfect software engineering opportunity for you. As a Lead Software Engineer at JPMorgan Chase within the Commercial... ...the firm's state-of-the-art technology products in a secure, stable, and scalable way. As an emerging member of a software...
$187k - $220k
...rewards. The Application Security team mission is to ensure that... ...risks, and empowering the engineering community with effective security... ...ll design and safeguard the cryptographic foundations of our fintech... ...Work with technical leads to develop strategies, programs...Work at officeFlexible hoursShift work3 days per week$162k - $235k
...expert while expanding your knowledge. As a Senior Engineer , you will own the design and implementation of key security infrastructure, serving as a key technical... ...and scalable manner. Strategic Threat Modeling: Lead threat modeling exercises for critical systems and...Local area$219k - $240k
...About The Role We're hiring a Lead Analytics Engineer to be the senior technical owner of Obsidian's data warehouse and analytics foundation.... ...partner closely with Product, Sales, CS, Finance, Marketing, and Security, and collaborate with teammates across the Business Systems...Flexible hours$200k - $260k
...intelligent Search, an AI Assistant, and scalable AI agents on one secure, open platform. With over 100 enterprise SaaS connectors,... ...About the Role: Glean is seeking a Site Reliability Engineering Lead to foster a culture of engineering excellence, drive technical...Work at officeHome officeFlexible hours$100k - $258k
...knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who... ...ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate...Permanent employmentTemporary work$170k - $210k
...ones on vehicles that are more affordable, more enjoyable and 10-50x more efficient. The Role ALSO is looking for an Engineering Technical Lead – Engineering Triage within the Validation & Tools Engineering team to lead the technical triage function supporting our...Local areaRemote workFlexible hours$130k - $170k
...commitments. About the role We are looking for someone to lead enterprise security operations within our security team. You will be responsible... ...the organization. Additionally, you will collaborate with engineering, operations and legal teams to ensure compliance with all...Permanent employmentFull timeFor contractorsFor subcontractorCasual workWork at officeRemote workDay shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Security Engineer — Cryptographic Libraries & TLS. Be the first to apply!
- lead engineer Palo Alto, CA
- security engineer Palo Alto, CA
- information technology security engineer Palo Alto, CA
- senior cloud security engineer Palo Alto, CA
- senior application security engineer Palo Alto, CA
- sr information security engineer Palo Alto, CA
- network security engineer Palo Alto, CA
- IT security engineer Palo Alto, CA
- aws cloud security engineer Palo Alto, CA
- library Palo Alto, CA


