Senior Software Engineer, Developer Platform at Offchain | Torre

Senior Software Engineer, Developer Platform

Emma highlights
This highlight was written by Emma’s AI. Ask Emma to edit it.
Full-time

Legal agreement: Employment

Provide your expected compensation while applying
location_on
Remote (anywhere)
Shared by
Emma of Torre.ai
8 days ago

Responsibilities


As pioneers in blockchain scalability and security, we're at the forefront of transforming how the world interacts with decentralized applications. We're laying the foundation that will define the next generation of digital commerce, governance, and human interaction.Why Offchain?Offchain is setting the pace for the entire Ethereum ecosystem. We built the Arbitrum stack that powers Arbitrum One, the most widely adopted Ethereum scaling solution that exists today.Arbitrum’s ecosystem is undergoing tremendous growth with hundreds of projects and dApps on Arbitrum One today. Over 100 different teams have used Offchain technology to build their own Arbitrum chains.The Role:The Developer Platform team builds KMS, the key-management and signing service behind ZeroDev's embedded wallets (smart-account / account-abstraction wallets that app developers drop into their products). It is non-custodial: end users control their keys, and the service orchestrates secure creation, authentication, and signing on top of a third-party signing provider. This is security-critical infrastructure, externally audited, with a high review bar. You will own backend services and the cryptographic recovery and trust-model machinery around them on a small, high-ownership team, and help grow the platform from interactive consumer wallets toward programmatic and automated signing and programmable transaction policy.What you'll work on:Go backend services that broker wallet creation, authentication, and signing at scale.Key recovery and the committee trust model: distributed key generation and secret sharing that keep the service non-custodial, with recovery authority split across independent committees so no single party ever holds a user's keyTrusted Execution Environments: reconstructing and operating on key material under hardware isolation and remote attestationAuthentication and signing-provider integration: the user-facing auth methods that gate signing (passkeys / WebAuthn, OAuth, OTP, sessions, 2FA), and integrating with a third-party signing provider (authorization and policy flows, scoped credentials, quorum / consensus approvals)Security review and hardening: writing design docs and decision records, working directly with external security auditors, and turning a high review bar into shipped codeProduction operations on Kubernetes: observability and alerting, secrets and certificate management, on-call, and the compliance controls the domain requires (sanctions screening, PII-safe handling)Who you are:A strong backend engineer who has shipped and operated production services in Go (or an adjacent systems language and is eager to go deep in Go)Security-first by default: you reason about threat models, blast radius, and key custody as a habit, and you write code that holds up to security-critical reviewComfortable with applied-cryptography fundamentals (public-key crypto, signatures, key management). You do not need to be a cryptographer, but you can reason about it and learn fastSolid on distributed systems and API design: idempotency, failure modes, and clean service boundariesOperationally mature: Kubernetes, observability, and incident response are not foreign to youClear written communicator (design docs, decision records) who thrives in a collaborative, review-heavy cultureNice-to-haveTEE experience (AWS Nitro Enclaves, Intel SGX / TDX, or similar): attestation, enclave key handling, reproducible enclave buildsThreshold cryptography / MPC in practice: DKG, FROST or other threshold signatures, verifiable secret sharing, resharingAccount abstraction: ERC-4337, EIP-7702, smart-account or embedded / non-custodial wallet experienceBuilt on or integrated a custody / signing provider (Turnkey, Fireblocks, or similar), or built oneHSM / YubiKey / PIV / secure-element integrationBeen on the receiving end of a third-party security audit and driven the remediationWebAuthn / passkeys, OAuth / OIDC, and the Go crypto ecosystemPerks:Remote-first global workforce + NY officeAnnual company offsite + team onsitesProfessional reimbursement program (facilitates industry conference attendance, certifications, and more)Medical, dental & vision coverage (US + some other countries)401k retirement plan + company match (US only)Wellness stipendHome office set up / ergonomic equipment programAttention Offchain Job Seekers:This role cannot be performed in California, or Colorado.We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans.