This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
At Schwab, you are empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us “challenge the status quo” and transform the finance industry together. Schwab’s Cybersecurity organization is the first line of defense for Schwab. The Lead Engineer of Cryptography will play a key role on a team of cyber security data protection subject matter experts and engineers to create, implement, and maintain cryptography controls using on-prem, SaaS, and IaaS cloud-based solutions to reduce risk and enforce Schwab’s security policies and standards for data protection. You are a driven lead engineer with a deep passion to be an accelerator and change agent with the ability to build a security community and progressive Dev/SEC/Op’s culture. You will be responsible for innovating, developing, and implementing groundbreaking cryptography capabilities to secure data in on-prem, SaaS, and IaaS workloads. You have Lead level engineer experience in implementing cryptographic solutions through design, implementation, and maintenance phases to secure infrastructure and applications by developing and applying complex algorithms, mathematical models, and encryption techniques to protect sensitive data from unauthorized access, ensuring data integrity and confidentiality within an organization. This role requires expertise in the cybersecurity industry.
Job Responsibility:
Design, analyze, and implement various cryptographic algorithms like symmetric encryption (AES), asymmetric encryption (RSA), digital signatures, and key management protocols based on organizational needs
Integrate cryptographic algorithms into applications and systems, ensuring proper key handling, secure communication channels (TLS/SSL), and compliance with industry standards
Identify potential weaknesses in existing cryptographic systems and propose solutions to mitigate security risks
Stay informed about emerging threats and cryptographic attacks to proactively address potential security vulnerabilities
Optimize cryptographic operations to maintain system efficiency while ensuring robust security
Ensure adherence to relevant security regulations and best practices related to cryptography
Work closely with software engineers to integrate cryptographic components into applications and provide technical guidance on secure coding practices
Maintain close ties to various stakeholders, developers, and engineers across the company, ensuring the services we create meet their needs as products evolve
Communicate extensively with Data Protection Product and engineering teams across the organization
Drive complex technical initiatives to full delivery leveraging knowledge of Cyber security practices, software engineering principles, agile frameworks, and customer engagement
Lead team to design, build, and maintain infrastructure to meet the organization’s requirements and ensure high availability
Applying adept understanding and experience with systems automation platforms and technologies
Requirements:
8+ years of hands-on experience in network security, data security, and/or other cybersecurity-related controls and technologies
Bachelor’s Degree in computer science or related field highly preferred
Experience with managing Hardware Security Modules (HSMs)
Extensive knowledge of symmetric and asymmetric encryption algorithms, digital signatures, hashing functions, key exchange protocols, and secure random number generation
Ability to foster collaborative, open, working relationships with technology groups and other stakeholders, including vendor relationships
Clear communication skills and ability to interact effectively at multiple levels of an organization, and to influence leadership
Experience working on multiple high-visibility and high-impact enterprise cybersecurity projects with cross-functional teams while maintaining superior results including planning, development and management of technical requirements, design, testing and deployment of security solutions
Nice to have:
Experience in on-premises and cloud cybersecurity within the Financial Services sector
Experience with native tooling in Public Cloud offerings as well as third party security controls
Multiple certifications in cybersecurity and data protection cybersecurity highly preferred (CISSP, GIAC, CISM, CCSP, CISA, or Security+, or other related certifications)
What we offer:
401(k) with company match and Employee stock purchase plan
Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions