All Jobs Vacancy

Java Security Engineer - Cryptography, PKI & Cloud Key Management

Posted 2 days ago by SAI Systems Intl., Inc.

Experience

5–7 years in Java development with strong hands-on experience in application security, cryptography, PKI, and secure software development.

Job Summary

We are looking for a Senior Java Security Engineer with strong expertise in Java Cryptography Architecture (JCA), Java Cryptography Extension (JCE), PKI, X.509 certificates, encryption, digital signatures, and secure application development.

The ideal candidate will have hands-on experience implementing cryptographic solutions using AES, RSA, ECC, SSL/TLS, certificate management, OAuth2/JWT, and security frameworks such as Spring Security. Experience with cloud-based key management solutions such as AWS KMS and HashiCorp Vault is highly desirable.

Key Responsibilities

  • Design and develop secure Java applications using industry-standard cryptographic practices.
  • Implement encryption/decryption, hashing, digital signatures, key generation, and key-management mechanisms.
  • Work extensively with JCA/JCE and Java security providers.
  • Implement and manage AES, RSA, ECC and other cryptographic algorithms appropriately.
  • Design and integrate PKI infrastructure, X.509 certificates, certificate chains, CSRs, keystores, truststores, and certificate lifecycle management.
  • Implement and troubleshoot SSL/TLS configurations, mutual TLS (mTLS), cipher suites, and certificate validation.
  • Develop secure authentication and authorization mechanisms using Spring Security, OAuth2, OpenID Connect, and JWT.
  • Integrate applications with HashiCorp Vault, AWS KMS, HSMs, or other key-management platforms.
  • Design secure approaches for encryption of data at rest and in transit.
  • Participate in security architecture and threat-modeling activities.
  • Conduct secure code reviews and identify cryptographic and application-security vulnerabilities.
  • Establish and enforce secure coding standards and cryptographic best practices.
  • Collaborate with application, cloud, DevOps, and security teams to implement enterprise security controls.
  • Troubleshoot complex certificate, TLS, authentication, encryption, and key-management issues.
  • Ensure solutions align with organizational security policies and relevant industry standards.

Java & Security

  • Strong Java programming experience.
  • JCA / JCE
  • Java KeyStore (JKS), PKCS#12, truststores and keystores
  • Java security providers and cryptographic APIs
  • Secure coding and application security principles

Cryptography

  • Symmetric encryption: AES
  • Asymmetric cryptography: RSA, ECC
  • Hashing: SHA-2/SHA-3 and related concepts
  • Digital signatures and signature verification
  • Key generation, storage, rotation, and lifecycle management
  • Encryption at rest and encryption in transit
  • Strong understanding of cryptographic primitives, algorithms, modes, padding, IVs/nonces, and randomness
Rate:
Not specified
Location:
Remote
IR35 Status:
Not specified
Remote Status:
Remote
Industry:
Cybersecurity
Seniority Level:
Senior

Take-Home Pay

Not Available

Visit calculators for additional details

Create a free account to view the take-home pay for this contract

Share job