StackAI Logo

StackAI

Senior Software Engineer - Encryption & PHI

Posted 7 Days Ago
Remote or Hybrid
Hiring Remotely in United States
248K-282K Annually
Senior level
Remote or Hybrid
Hiring Remotely in United States
248K-282K Annually
Senior level
Build and operate security-critical backend systems in Python, including encryption, key management, sensitive-data controls, credential protection, tenant isolation, authentication, signing, and token handling. Own projects end to end from investigation and architecture through implementation, migration, staged rollout, observability, and recovery. The role requires applied cryptography, strong trust-boundary judgment, and experience safely evolving systems handling sensitive or regulated data across cloud, VPC, and on-premises deployments.
The summary above was generated by AI
About StackAI

StackAI is the enterprise AI transformation platform for organizations with regulated and complex operations. It gives teams one place to build, deploy, govern, and scale AI agents that can analyze data, connect to business systems, and carry out business-critical workflows.

Those agents need to work wherever an enterprise’s data and systems live. StackAI supports more than 100 enterprise integrations and can be deployed in our multi-tenant cloud, in a customer’s VPC, or on-premises—allowing organizations to bring AI into sensitive operational work while retaining control over where their agents and data run.

StackAI is an Asana company and continues to operate as its own product and brand.

 
About the role

We are looking for a senior Python engineer who has built security-critical product systems.

You will join the Core Engineering team and build the systems that determine how StackAI encrypts customer data, manages keys and signatures, handles PHI and PII, protects customer credentials, and enforces tenant and authentication boundaries.

We’re looking for an engineer who brings strong security judgment to the software they build: someone who can move between architecture and implementation, reason carefully about trust boundaries, and turn security requirements into reliable product capabilities.

This is hands-on backend engineering in an existing, fast-moving codebase. You will write production Python and take projects from initial investigation and design through implementation, migration, rollout, and operation.

The systems you build will shape which sensitive and regulated workloads enterprises can run on StackAI and how confidently they can put them into production.

 
What you’ll do
  • Build encryption and key-management systems. Design and evolve how customer data is encrypted, how keys are scoped and rotated, and how these systems work across hosted, VPC, and on-premises deployments.

  • Protect sensitive data. Build the controls that detect, transform, and safely handle PHI, PII, and other sensitive data across workflows, connectors, model calls, logs, and storage.

  • Secure customer credentials. Protect the credentials and tokens customers provide to StackAI, from storage and access control through their use at runtime.

  • Strengthen product trust boundaries. Improve tenant isolation, signing and verification, session and token handling, and service-to-service authentication.

  • Create shared security foundations. Build Python services, libraries, and APIs that make security-critical behavior consistent and straightforward for other engineers to use.

  • Evolve live systems safely. Plan and execute migrations, compatibility periods, staged rollouts, observability, recovery, and rollback.

What we’re looking for
  • 4+ years of experience building and operating production backend systems.

  • Strong professional experience with Python in a substantial production codebase.

  • Hands-on experience implementing and operating security-critical product systems, including the code that enforces their guarantees.

  • Depth in at least one of the following:

    • Encryption and key management

    • Signing, authentication, sessions, or token infrastructure

    • Multi-tenant isolation

    • Sensitive-data processing

    • Secure storage and runtime use of customer credentials

  • Practical knowledge of applied cryptography

  • Experience changing critical systems without disrupting existing customers or making previously stored data inaccessible.

  • Strong judgment around trust boundaries, failure modes, and the consequences of compromise.

  • The ability to take an ambiguous technical problem from investigation through production rollout.

You do not need to have worked in every area listed above. We are looking for a strong software engineer with meaningful depth in security-critical systems and the ability to take ownership of adjacent problems.

Prior healthcare experience is helpful but not required. We care more about your ability to understand sensitive-data requirements and turn them into reliable product behavior.

 
Bonus points
  • Experience with HashiCorp Vault, cloud KMS products, HSMs, envelope encryption, or key rotation

  • PHI or PII detection, redaction, pseudonymization, or tokenization

  • PKI, certificate systems, or cryptographic signing

  • Multi-tenant SaaS products handling sensitive customer data

  • Experience in healthcare, payments, identity, financial infrastructure, or another security-sensitive domain

  • Self-hosted, VPC, on-premises, or air-gapped deployments

  • AI-agent, LLM, or connector-based application architecture

  • Startup or growth-stage product experience

How we work

The Core Engineering team owns the systems at the center of StackAI. Engineers take problems end to end: defining the approach, writing the code, planning the migration, and remaining accountable for how the system behaves in production.

The work moves quickly, and decisions are made close to the implementation. We value engineers who can make sound trade-offs under ambiguity, ship durable systems, and continue improving them as the product and its requirements evolve.

As part of Asana, you will be able to draw on established security and infrastructure teams when a problem crosses application and platform boundaries. This role remains embedded in Core Engineering, with direct ownership of the product systems you build.

Similar Jobs

56 Minutes Ago
Remote or Hybrid
United States
Senior level
Senior level
Artificial Intelligence • Cloud • Payments • Software • Business Intelligence • Generative AI • Automation
Lead full-cycle recruiting for Product teams, partnering with Product leaders on workforce planning, sourcing, talent assessment, hiring strategy, and candidate experience. Build pipelines for Product Management, Operations, Design, and Leadership roles; provide market and compensation insights; use recruiting metrics to improve hiring outcomes; maintain ATS data integrity; implement scalable processes; and mentor recruiting teammates.
Top Skills: Ai Recruiting ToolsApplicant Tracking Systems (Ats)Recruiting Analytics Tools
2 Hours Ago
Remote or Hybrid
189K-290K Annually
Expert/Leader
189K-290K Annually
Expert/Leader
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Leads the technical strategy, architecture, and delivery of scalable hardware-in-the-loop software platforms for autonomous vehicle validation. Designs reliable, observable platform services, APIs, automation, CI/CD, testing, and deployment capabilities spanning AV software, AI models, vehicle hardware, and infrastructure. Resolves complex cross-team technical challenges, improves performance and cost efficiency, mentors engineers, establishes standards, and influences architecture across the AV organization.
Top Skills: APIsBazelC++Ci/CdHardware-In-The-Loop (Hil)LinuxPlatform As A Service (Paas)PythonRosSoftware-In-The-Loop (Sil)SQL
2 Hours Ago
Remote or Hybrid
125K-155K Annually
Senior level
125K-155K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Designs and evaluates secure enterprise technology deployments through end-to-end security and threat analysis. Partners with business, IT, and cybersecurity teams on network, application, cloud, and enterprise security controls. Develops security guidance and mitigation requirements, communicates cybersecurity programs to stakeholders, documents best practices, and provides technical mentorship across concurrent initiatives.
Top Skills: CcpaCis Critical Security ControlsCloud Security MatrixCwe/Sans Top 25Endpoint Detection And Response (Edr)GdprHipaaIaasMitre Att&CkNist CsfOwasp Top 10PaasPci DssSaaSSox

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account