Stripe Logo

Stripe

Software Engineer, Secrets Infrastructure

Reposted 7 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in NA
Senior level
Remote
Hiring Remotely in NA
Senior level
You will build and manage TLS identity and secrets infrastructure used across Stripe, focusing on security and reliability, primarily in Go.
The summary above was generated by AI
Who we areAbout Stripe

Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.

About the team

The Secrets Infrastructure team provides the cryptographic identity and secrets management foundation for Stripe. We build and operate the internal certificate authority that authenticates every person and service at Stripe, and the secrets platform that manages everything from financial partner credentials to infrastructure access keys.

We build foundational security infrastructure at scale: our certificate authority issues mTLS client certificate identities for thousands of services and engineers, and our secrets platform and libraries protect access to critical financial systems and external partners across all of Stripe’s codebases, services, and platforms. The technical challenges include building systems with 99.99%+ availability, implementing TLS workload identity and attestation logic for new platforms, and designing secret management tools that are both secure and user-friendly. Our infrastructure must be both reliable and developer-friendly—we maintain libraries in Go, Java, Ruby, and Python. As a small team responsible for critical systems, engineers take on meaningful ownership. Through collaboration with teams across Stripe, you'll build and set direction for the authentication and secrets management underpin identity in distributed systems at scale. 

Secrets Infrastructure is a fully remote team, with a small presence in the Seattle and New York City offices. We pride ourselves on a friendly, technically rigorous, and supportive team culture.

What you'll do

You'll be responsible for TLS identity and secrets infrastructure that every Stripe service depends on. You'll build infrastructure, developer tools, and guide partner teams on architecture decisions; we regularly need to help other teams reason about cryptographic primitives and PKI, transitive trust, potential failure modes and threat models. 


Since our infrastructure and libraries are used across the entire Stripe codebase, you'll work in Go, Java, Ruby, and Python. The services we own are written in Go, so most of your hands-on work will be in Go. The typical balance of hands-on work is about 60% coding, 20% infrastructure work, and 20% security design/guidance with partner teams.

Responsibilities
  • Design and implement significant features in our certificate authority and secrets management systems
  • Work across Go, Java, Ruby, and Python to implement authentication and secrets infrastructure used by every service at Stripe
  • Work with with other engineering teams to understand their needs and design secrets and identity integrations
  • Develop certificate provisioning and secret management integrations for various compute platforms (Kubernetes, EC2, developer workstations)
  • Work on reliability improvements to maintain 99.99%+ availability for critical infrastructure; we take pride in making failure modes impossible instead of reacting to them
  • Participate in on-call rotation for critical infrastructure, working alongside senior engineers to debug and resolve production issues
Who you are

We’re looking for a senior candidate who has enough prior experience in security, backend API development, and infrastructure to quickly take responsibility for significant projects. We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement. 

Minimum requirements
  • 5+ years of professional software development experience. Strong programming skills in Go, with significant experience in other similar system programming languages (C++, Rust, C#, etc) as a potential alternative.
  • 3+ years of infrastructure and security experience (can overlap with other experience)
  • Experience in cryptography, PKI, secret management, or other security topics
  • Familiarity with infrastructure tools like Kubernetes, Terraform, and cloud platforms
  • Interest in security, infrastructure, and software development
  • Enthusiasm for learning new technologies and working across multiple programming languages
  • Strong debugging and problem-solving skills; the team maintains and troubleshoots integrations across all Stripe languages and infrastructure
  • Clear verbal and written communication skills and ability to collaborate effectively with other engineers
  • Experience leading cross-team projects and building alignment on multi-team technical direction
  • Strong technical writing skills to write design documents
  • On-call experience
Preferred qualifications
  • Prior experience building PKI or secret management infrastructure (as an SWE - not just provisioning a 3rd party tool or service)
  • Experience in Java, Ruby, or Python
  • Experience building developer tools, libraries, or platform services
  • Experience with kubernetes internals (how the platform works, not just as a user)
  • Experience operating complex services on AWS
  • Experience in fully remote work environments

Similar Jobs

3 Hours Ago
Remote
Senior level
Senior level
Professional Services • Energy • Industrial
Second-in-command on a vessel responsible for assisting the Captain with navigation, deck operations, crew supervision, safety, cargo operations, and maintenance. Coordinates watch schedules, oversees mooring and cargo handling, enforces safety protocols, and ensures regulatory compliance. Portuguese language ability preferred.
4 Days Ago
Remote
Mid level
Mid level
Healthtech
The Mass Market Representative will execute field strategies to ensure product availability, oversee promotions, submit reports, and gather market insights in the FMCG sector.
6 Days Ago
Remote
400K-400K Annually
Entry level
400K-400K Annually
Entry level
Information Technology • Mobile • Analytics • Design
As an Account Executive, you'll manage client relationships, support project execution, and enhance workflows using collaborative tools while ensuring client satisfaction and communication.
Top Skills: AirtableFigjam

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account