SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Software Engineer - Encryption & PHI

StackAI - Warsaw, Poland - In-office - posted 2026-09-21

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

StackAI is an enterprise AI transformation platform (owned by Asana) that helps organizations with regulated and complex operations build, deploy, govern, and scale AI agents. The platform supports 100+ enterprise integrations and can be deployed in multi-tenant cloud, customer VPC, or on-premises environments. You will join the Core Engineering team as a Senior Python engineer responsible for building security-critical systems that determine how StackAI encrypts customer data, manages cryptographic keys and signatures, handles PHI and PII, protects customer credentials, and enforces tenant and authentication boundaries. This is hands-on backend engineering in an existing, fast-moving codebase. You will write production Python and take projects from initial investigation and design through implementation, migration, rollout, and operation. The systems you build will shape which sensitive and regulated workloads enterprises can run on StackAI. Key responsibilities: - Design and evolve encryption and key-management systems, including key scoping, rotation, and cross-deployment support (hosted, VPC, on-premises) - Build controls to detect, transform, and safely handle PHI, PII, and sensitive data across workflows, connectors, model calls, logs, and storage - Protect customer credentials and tokens from storage and access control through runtime use - Strengthen product trust boundaries: tenant isolation, signing/verification, session/token handling, service-to-service authentication - Create shared security foundations: Python services, libraries, and APIs for consistent security behavior - Plan and execute safe migrations of live systems with compatibility periods, staged rollouts, observability, recovery, and rollback The Core Engineering team owns systems at the center of StackAI. Engineers take problems end-to-end: defining approach, writing code, planning migration, and remaining accountable for production behavior. Work moves quickly with decisions made close to implementation. As part of Asana, you can draw on established security and infrastructure teams when problems cross application and platform boundaries, while maintaining direct ownership of your product systems. REQUIREMENTS: - 4+ years of experience building and operating production backend systems - Strong professional experience with Python in a substantial production codebase - Hands-on experience implementing and operating security-critical product systems, including code that enforces their guarantees - Depth in at least one of: encryption and key management, signing/authentication/sessions/token infrastructure, multi-tenant isolation, sensitive-data processing, or secure storage and runtime use of customer credentials - Practical knowledge of applied cryptography - Experience changing critical systems without disrupting existing customers or making previously stored data inaccessible - Strong judgment around trust boundaries, failure modes, and consequences of compromise - Ability to take ambiguous technical problems from investigation through production rollout BONUS: - Experience with HashiCorp Vault, cloud KMS products, HSMs, envelope encryption, or key rotation - PHI or PII detection, redaction, pseudonymization, or tokenization - PKI, certificate systems, or cryptographic signing - Multi-tenant SaaS products handling sensitive customer data - Background in healthcare, payments, identity, financial infrastructure, or other security-sensitive domains - Self-hosted, VPC, on-premises, or air-gapped deployments - AI-agent, LLM, or connector-based application architecture - Startup or growth-stage product experience

Similar roles