Job Description
Join the Frontline of Digital Trust
QuantumCore Security is at the vanguard of modern authentication infrastructure. We are looking for a visionary 2FA Security Engineer to architect and deploy next-generation multi-factor authentication solutions that protect enterprise assets from evolving threats. In this role, you will bridge the gap between security policy and technical implementation, ensuring that our clients' digital identities remain uncompromised.
At QuantumCore, we don't just patch vulnerabilities; we build resilient security frameworks. You will work in a collaborative environment with experts in cryptography, cloud architecture, and threat intelligence.
Why Join Us?
- Competitive compensation package with equity options.
- Comprehensive health, dental, and vision coverage.
- Unlimited PTO and flexible remote-first culture.
- Access to cutting-edge security tools and certifications.
Responsibilities
- Design, implement, and maintain robust Multi-Factor Authentication (MFA) and 2FA protocols across cloud and on-premise environments.
- Integrate and manage hardware security keys (YubiKey, FIDO2) and software token solutions (TOTP, SMS, Push).
- Conduct security audits and penetration testing to identify authentication weaknesses.
- Develop automated scripts (Python/Bash) to streamline provisioning and de-provisioning of 2FA policies.
- Collaborate with DevOps teams to integrate 2FA into CI/CD pipelines and containerized applications.
- Stay abreast of the latest cybersecurity trends and Zero Trust architecture principles.
Qualifications
- Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
- 5+ years of experience in cybersecurity, specifically in IAM (Identity and Access Management) and authentication technologies.
- Deep technical knowledge of 2FA protocols (TOTP, WebAuthn, FIDO2, SAML, OAuth 2.0).
- Proficiency in scripting languages such as Python, Bash, or PowerShell.
- Experience with enterprise identity providers (Okta, Azure AD, Keycloak, or Google Workspace).
- Certifications such as CISSP, CEH, or Security+ are highly preferred.