SlipstreamJobsFresh Startup & VC-Backed Jobs

Staff Software Engineer, Platform Cryptography 

ServiceNow - Santa Clara, CA, United States - Hybrid - posted 2026-09-21

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 166,500 - 291,400 / annual

ServiceNow's Platform Security team is seeking a Staff Software Engineer to architect and operate enterprise-scale cryptographic infrastructure integrated with AI-driven detection systems. You will own the cryptographic backbone of the ServiceNow platform across certificate lifecycle management, key management, secrets distribution, and workload identity for a regulated SaaS environment. In this role, you will design and deliver high-quality, scalable cryptographic services meeting FIPS compliance requirements. You'll architect mission-critical crypto services on Kubernetes in a multi-tenant SaaS environment, owning services end-to-end including deployment, scaling, on-call support, and incident response. You'll bring a security-first mindset to every design review, threat-modeling features and identifying potential vulnerabilities. A key aspect of this role is evaluating where AI/ML legitimately enhances security—such as anomaly detection in key usage, ML-assisted certificate lifecycle risk scoring, and AI-assisted code review for cryptographic anti-patterns—while distinguishing these from hype. You'll collaborate with product owners, security architects, and platform teams to translate compliance and security requirements into working cryptographic frameworks. You'll mentor engineers on secure coding practices, cryptographic pitfalls, and design review rigor. You'll also stay current on cryptographic advancements, including post-quantum readiness, and proactively bring these forward before they become compliance deadlines. This is core, regulated-environment security engineering at scale, requiring both deep technical expertise and strong leadership to raise the security bar across the organization. QUALIFICATIONS: Required: - 8+ years of professional software engineering experience - Production-scale proficiency in Java, Go, or comparable strongly-typed language - Strong CS fundamentals: data structures, algorithms, OO design, distributed systems tradeoffs - Production experience running services on Kubernetes (deployments, Helm, CI/CD) in a SaaS/multi-tenant environment - Working understanding of core cryptographic primitives (symmetric/asymmetric encryption, hashing, digital signatures, TLS/PKI fundamentals) - Demonstrated security-first engineering habits: secure coding practices, threat modeling, code review discipline Preferred: - Direct experience in cryptography, PKI, key management, secrets management, certificate lifecycle systems, HSM/KMS integration, or crypto-agility work - Hands-on AI/ML exposure - Experience applying ML techniques to security/ops problems (anomaly detection, risk scoring, log/telemetry analysis) or critically integrating LLM tooling into engineering workflows - Experience with regulated environments (FIPS 140-2/3, FedRAMP, common criteria, or similar) - Exposure to post-quantum cryptography - Track record mentoring engineers and raising the security bar on a team

Similar roles