SlipstreamJobsFresh Startup & VC-Backed Jobs

Staff Software Engineer, Platform Cryptography 

ServiceNow - Santa Clara, CA, United States - Hybrid - posted 2026-09-28

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 166,500 - 291,400 / annual

ServiceNow's Platform Security team is seeking a Staff Software Engineer to architect and deliver enterprise-scale cryptographic systems integrated with AI-driven detection and reasoning engines. You will own the cryptographic backbone of the ServiceNow platform across certificate lifecycle management, key management, secrets distribution, and workload identity for a regulated SaaS environment. In this role, you will design and maintain high-quality, scalable cryptographic services meeting FIPS compliance requirements. You'll architect mission-critical crypto services with reliability and security as first-class design constraints, operating them end-to-end on Kubernetes in a multi-tenant SaaS environment, including deployment, scaling, on-call duties, and incident response. You will bring a security-first mindset to every design review, threat-modeling features beyond the happy path. A key aspect of this role is evaluating where AI/ML legitimately enhances cryptographic and security operations—such as anomaly detection in key usage, ML-assisted certificate lifecycle risk scoring, and AI-assisted code review for cryptographic anti-patterns—while distinguishing these from hype-driven applications. You'll collaborate with product owners, security architects, and platform teams to translate compliance and security requirements into working cryptographic frameworks. You will mentor engineers on secure coding practices, cryptographic pitfalls, and design review rigor. You'll stay current on cryptographic advancements, including post-quantum readiness, and proactively integrate emerging standards before they become compliance deadlines. This is core, regulated-environment security engineering at enterprise scale, requiring both deep technical depth and strong leadership to elevate the team's security posture. QUALIFICATIONS: Required: - 8+ years of professional software engineering experience - Production-scale proficiency in Java, Go, or comparable strongly-typed language - Strong CS fundamentals: data structures, algorithms, OO design, distributed systems tradeoffs - Production experience running services on Kubernetes (deployments, Helm, CI/CD) in a SaaS/multi-tenant environment - Working understanding of core cryptographic primitives (symmetric/asymmetric encryption, hashing, digital signatures, TLS/PKI fundamentals) - Demonstrated security-first engineering habits: secure coding practices, threat modeling, code review discipline Preferred: - Direct experience in cryptography, PKI, key management, secrets management, certificate lifecycle systems, HSM/KMS integration, or crypto-agility work - Hands-on AI/ML exposure - Experience applying ML techniques to security/ops problems (anomaly detection, risk scoring, log/telemetry analysis) or critically integrating LLM tooling into engineering workflows - Experience with regulated environments (FIPS 140-2/3, FedRAMP, common criteria, or similar) - Exposure to post-quantum cryptography - Track record mentoring engineers and raising the security bar on a team

Similar roles