{"schemaVersion":"jobsearcher.job.v1","id":"93bbcecc3847fa8da3c9a539","url":"https://jobsearcher.com/jobs/93bbcecc3847fa8da3c9a539","canonicalUrl":"https://jobsearcher.com/jobs/93bbcecc3847fa8da3c9a539","title":"Senior Distributed Systems & Cryptography Engineer (contract)","description":"Title: Senior Distributed Systems & Cryptography Engineer\nLocation: 1655 Grant St Concord, CA\nDuration: 6 months\nWork Engagement: W2\nWork Schedule: 3 days in office/2 days remote\nCompensation: $70-75/hr is the pay range that the employer reasonably expects to pay for this position\nBenefits on offer for this contract position: Health Insurance, Life insurance, 401K and Voluntary Benefits\nSummary:\nWe are building a next-generation Digital Asset Platform focused on solving the “Approval-to-Execution Gap” in institutional finance—ensuring that digital asset transactions are executed only when explicitly authorized by policy, without exposing sensitive cryptographic material to cloud operators or internal actors.\nThis is not a traditional wallet platform. We are designing an institutional-grade Confidential Custody Infrastructure that combines Multi-Party Computation (MPC) with hardware-enforced Confidential Computing (Trusted Execution Environments) to create a “glass vault”—a system where all cryptographic operations are isolated, verifiable, and mathematically secure.\nWe are seeking a core systems engineer with deep experience in distributed systems, cryptography, and secure infrastructure. This role requires close collaboration with technical teams and hands-on ownership of critical platform components.\nKey Responsibilities:\nMPC Protocol Implementation: Architect and implement high-performance threshold signature schemes (specifically DKLS23 or similar) for ECDSA key generation and signing.\nConfidential Computing Architecture: Design and build services that run inside Trusted Execution Environments (TEEs), specifically targeting AMD SEV-SNP and Intel TDX via Confidential Containers (CoCo).\nAttestation Framework: Implement the RATS (Remote ATtestation procedureS) architecture (RFC 9334) to ensure that no key share is released until the requesting node proves its hardware and software integrity to a Key Broker Service.\nHardware Security Integration: Design \"Cold Ceremony\" workflows that integrate offline hardware tokens as offline Key Encryption Keys (KEKs) for disaster recovery and deep storage.\nSecure Enclave Development: Write and optimize memory-safe code (Rust/Go) that operates on key material exclusively within encrypted memory regions, ensuring zero leakage to the host OS or hypervisor.\nPolicy-to-Cryptography Binding: Design mechanisms to cryptographically bind business logic approvals (e.g., WebAuthn assertions) directly to the MPC signing session, eliminating the gap between \"approval\" and \"execution\".\n\nQualifications:\nApplicants must be authorized to work for ANY employer in the U.S. This position is not eligible for visa sponsorship.\nStrong experience in systems-level engineering within distributed environments\nProven track record building or operating distributed systems at scale\nExpert-level proficiency in:\nGo (orchestration, services)\nRust (cryptographic and memory-safe components)\nExperience working in high-bar engineering environments\nStrong core engineering fundamentals (data structures, concurrency, systems design)\nExperience collaborating across engineering teams and influencing technical direction\nApplied Cryptography\nDeep experience with threshold cryptography, MPC, or related protocols\nAbility to implement cryptographic research papers (e.g., GG20) from scratch\nConfidential Computing\nHands-on experience with:\nAMD SEV-SNP\nIntel SGX/TDX\nConfidential Containers (CoCo)\nStrong understanding of attestation flows, measurements, and memory encryption\nAttestation & Identity\nFamiliarity with RATS architecture, Key Broker Services (KBS), and Attestation Services\nExperience integrating OIDC, WebAuthn, or FIDO2\nSecurity Architecture\nProven experience designing zero-trust / untrusted infrastructure systems\nDomain Expertise\nExperience in digital assets, crypto infrastructure, custody platforms, or high-security fintech environments (preferred over traditional banking)\nExposure to CNCF Trustee or similar attestation frameworks","company":"Wells Fargo","rawCompany":"wellsfargo","city":"Concord","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-03T15:26:01.028Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.07","title":"Blockchain Engineers","slug":"blockchain-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior Distributed Systems & Cryptography Engineer (contract)","description":"Title: Senior Distributed Systems & Cryptography Engineer\nLocation: 1655 Grant St Concord, CA\nDuration: 6 months\nWork Engagement: W2\nWork Schedule: 3 days in office/2 days remote\nCompensation: $70-75/hr is the pay range that the employer reasonably expects to pay for this position\nBenefits on offer for this contract position: Health Insurance, Life insurance, 401K and Voluntary Benefits\nSummary:\nWe are building a next-generation Digital Asset Platform focused on solving the “Approval-to-Execution Gap” in institutional finance—ensuring that digital asset transactions are executed only when explicitly authorized by policy, without exposing sensitive cryptographic material to cloud operators or internal actors.\nThis is not a traditional wallet platform. We are designing an institutional-grade Confidential Custody Infrastructure that combines Multi-Party Computation (MPC) with hardware-enforced Confidential Computing (Trusted Execution Environments) to create a “glass vault”—a system where all cryptographic operations are isolated, verifiable, and mathematically secure.\nWe are seeking a core systems engineer with deep experience in distributed systems, cryptography, and secure infrastructure. This role requires close collaboration with technical teams and hands-on ownership of critical platform components.\nKey Responsibilities:\nMPC Protocol Implementation: Architect and implement high-performance threshold signature schemes (specifically DKLS23 or similar) for ECDSA key generation and signing.\nConfidential Computing Architecture: Design and build services that run inside Trusted Execution Environments (TEEs), specifically targeting AMD SEV-SNP and Intel TDX via Confidential Containers (CoCo).\nAttestation Framework: Implement the RATS (Remote ATtestation procedureS) architecture (RFC 9334) to ensure that no key share is released until the requesting node proves its hardware and software integrity to a Key Broker Service.\nHardware Security Integration: Design \"Cold Ceremony\" workflows that integrate offline hardware tokens as offline Key Encryption Keys (KEKs) for disaster recovery and deep storage.\nSecure Enclave Development: Write and optimize memory-safe code (Rust/Go) that operates on key material exclusively within encrypted memory regions, ensuring zero leakage to the host OS or hypervisor.\nPolicy-to-Cryptography Binding: Design mechanisms to cryptographically bind business logic approvals (e.g., WebAuthn assertions) directly to the MPC signing session, eliminating the gap between \"approval\" and \"execution\".\n\nQualifications:\nApplicants must be authorized to work for ANY employer in the U.S. This position is not eligible for visa sponsorship.\nStrong experience in systems-level engineering within distributed environments\nProven track record building or operating distributed systems at scale\nExpert-level proficiency in:\nGo (orchestration, services)\nRust (cryptographic and memory-safe components)\nExperience working in high-bar engineering environments\nStrong core engineering fundamentals (data structures, concurrency, systems design)\nExperience collaborating across engineering teams and influencing technical direction\nApplied Cryptography\nDeep experience with threshold cryptography, MPC, or related protocols\nAbility to implement cryptographic research papers (e.g., GG20) from scratch\nConfidential Computing\nHands-on experience with:\nAMD SEV-SNP\nIntel SGX/TDX\nConfidential Containers (CoCo)\nStrong understanding of attestation flows, measurements, and memory encryption\nAttestation & Identity\nFamiliarity with RATS architecture, Key Broker Services (KBS), and Attestation Services\nExperience integrating OIDC, WebAuthn, or FIDO2\nSecurity Architecture\nProven experience designing zero-trust / untrusted infrastructure systems\nDomain Expertise\nExperience in digital assets, crypto infrastructure, custody platforms, or high-security fintech environments (preferred over traditional banking)\nExposure to CNCF Trustee or similar attestation frameworks","datePosted":"2026-08-03T15:26:01.028Z","dateModified":"2026-08-03T15:26:01.028Z","hiringOrganization":{"@type":"Organization","name":"Wells Fargo","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Concord","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"93bbcecc3847fa8da3c9a539"},"url":"https://jobsearcher.com/jobs/93bbcecc3847fa8da3c9a539"}}