Back to jobs

Lead/Principal Engineer

San Francisco, CA

About OPAQUE
OPAQUE is the Confidential AI company. Born from UC Berkeley’s RISELab, we solve the core challenge blocking AI adoption at scale: security concerns about data leaks or compliance violations. OPAQUE provides verifiable privacy and governance for AI so organizations can safely run models, agents, and workflows on their most sensitive data. Its Confidential AI platform delivers verifiable runtime governance backed by cryptographic proof that data, models, and agent actions remain private, governed, and compliant with approved policies throughout every AI workflow. This extends traditional data governance tools with real runtime verification, enabling teams to responsibly deploy AI using their most valuable proprietary data, and move from pilot to production 4-5X faster. Customers and partners include ServiceNow, Anthropic, Encore Capital, Accenture, and leaders across high tech, financial services, insurance, and healthcare.

Learn More at Opaque.co

Read about our Values at Opaque.co/about

 

About the Role

We are looking for a senior technical leader with deep expertise in confidential computing and cloud-native security to help design, build, and operate next-generation secure data and compute platforms.

This role is for someone who can make architectural decisions, operate comfortably in ambiguity, and still write and review production-quality code. You will work at the intersection of cloud infrastructure, cryptography, policy enforcement, and distributed systems, helping define how sensitive workloads run securely at scale. Specifically you will work on measurement attestation proof, use of cloud attestation services so a solid understanding of RATS architecture(https://datatracker.ietf.org/doc/rfc9334/) would be beneficial.

What You’ll Do

  • Act as an authority for confidential computing architecture and strategy and work with the team

  • Design and implement end-to-end confidential computing solutions (TEE-based systems, attestation flows, key management)

  • Build and evolve attestation and trust verification mechanisms across cloud-native environments

  • Develop and maintain policy management frameworks that govern data access, compute trust, and enforcement

  • Work hands-on with Kubernetes to secure containerized workloads, including admission control, policy enforcement, and runtime security

  • Partner with product, security, and platform teams to translate security requirements into scalable systems

  • Operate effectively in high-ambiguity problem spaces, setting technical direction where patterns do not yet exist

  • Work with SDK,UX and product management as well as other engineers on the team on attestation features and platform components

Required Experience & Skills

Core Technical Expertise

  • Deep experience with confidential computing (TEEs, enclaves, secure execution environments) with 10 years of engineering experience building low level platform and systems with production scale

  • Strong understanding of attestation, RATS, identity, and trust chains

  • Expertise in Azure, AWS, Google Cloud Platform (GCP), including security primitives and managed services

  • Production experience with Kubernetes in security-sensitive environments

  • Experience designing or operating policy-based systems (authorization, access control, enforcement engines)

  • 10 years experience in  engineering and lead engineer for at least 3 years. 

Security & Systems

  • Strong background in cloud security, platform security, or infrastructure security

  • Solid understanding of cryptography fundamentals, key management, and secure data handling

  • Ability to reason about threat models, attack surfaces, and mitigations at system scale

Hands-On Engineering

  • Comfortable writing, reviewing, and debugging code in production systems

  • Experience with modern backend languages (e.g., Go, Python, Java, Scala). Go-lang preferred

  • Ability to move between architecture discussions and implementation details

Leadership & Decision Making

  • Proven ability to own technical decisions and drive them to execution

  • Comfortable pushing back, making tradeoffs, and setting direction

Experience working cross-functionally with product, engineering, and security stakeholders

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Education

Select...
Select...

What date are you able to start (MM/DD/YYYY)

Select...

Please share anything else you want us to know, such as your motivation to apply or additional context for your application.

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Opaque Systems’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.