Zero-Trust Backend Specialist
1 open position
Xurge Digital Lab LLC seeks a Zero-Trust Backend Specialist for a secure, metadata-protected messaging application integrated with Ethereum and leveraging Enigma Protocol's Enigma Private Network (EPN) built on NetFoundry's zero-trust framework. This role focuses on backend implementation of zero-trust networking principles, clearly distinguishing between NetFoundry's hosting APIs (infrastructure provisioning: cloud resources such as network controllers and edge routers, administrative access, billing, metrics/events, SCIM configuration) and network entity management APIs (OpenZiti for managing identities, services, and policies; reference documentation: https://openziti.io/docs/reference/developer/api/edge-management-reference).
The specialist delivers identity-native, invisible routing with no exposed ports, DNS, or routable endpoints, in a lean remote team aligned with Xurge's scalable operations and DevOps practices.
Key Responsibilities
- Implement NetFoundry zero-trust integrations: Provision infrastructure via hosting APIs and configure network entities via management APIs (requires Network/Network Group administrator API key + network ID; authentication via AWS Cognito bearer token).
- Enforce zero-trust principles (Software-Defined Perimeter/ZTNA per NIST SP 800-207): continuous posture checks, least-privilege policies, and dynamic overlays to eliminate metadata exposure (endpoints, timing, traffic patterns).
- Embed OpenZiti SDKs/tunnelers into backend services for secure connectivity and integration with Ethereum authentication flows.
- Support security architecture design, including post-quantum considerations and validation of EPN compatibility.
- Contribute to infrastructure-as-code (Terraform/Ansible), CI/CD pipelines, metadata leakage testing, and regulatory compliance (GDPR/CCPA).
- Participate in agile sprints, code reviews, and client feedback incorporation.
Required Skills & Experience
- Core Expertise: Proven zero-trust networking implementation (SDP, ZTNA; hands-on experience with OpenZiti/NetFoundry strongly preferred, or equivalents such as Zscaler, Tailscale, or Cloudflare Zero Trust).
- Backend development proficiency: Go, Python, or Node.js; REST/gRPC APIs; AWS Cognito OIDC authentication flows.
- Experience with split-API architectures: infrastructure hosting vs. entity/policy management.
- Strong security background: cryptographic identities, overlay networks, invisible endpoints; bonus for post-quantum cryptography or extreme privacy frameworks (RAVID-aligned).
- Remote collaboration skills: Git, CI/CD tools; ability to prototype and deliver rapidly.
Project-Specific Context The application extends privacy-first patterns from prior projects (secure wallet-based messaging) to Enigma's EPN, where hosting APIs enable scalable infrastructure monitoring and entity management APIs provide dynamic, fine-grained policy enforcement for Ethereum-integrated communication.
Compensation & Terms Contract duration: 3–4 months; competitive freelance rates commensurate with specialized zero-trust experience.
Join Xurge Digital Lab in delivering cutting-edge, metadata-invisible Web3 communication solutions grounded in operational excellence and user-centric innovation.
We are a team of passionate people whose goal is to improve everyone's life through disruptive products. We build great products to solve your business problems.