Desired Skills and Experience

  • Protect our users’ reading and editing habits from mass surveillance
  • Keep our TLS infrastructure up to date in the face of evolving threats
  • Keep track of the ever-changing landscape of browsers and other UAs
  • Analyze and optimize our edge software infrastructure to enhance our users’ experiences
  • Assess and deploy newer protocols, technologies, and software as their time becomes ripe
  • Deprecate older ones in a timely manner while balancing the needs of legacy clients
  • Reactively respond to, and proactively engineer against, DDoS and other attacks
  • Analyze and advise on application-layer security issues exposed over HTTPS
  • Other related Traffic and Security/Privacy work as required
  • A deep and current understanding of TLS, HTTP[S], TCP/IP, DNS, and other related protocols
  • Hands-on experience working with TLS libraries and HTTP server software configuration
  • A working knowledge of modern cryptography from a systems engineering point of view
  • Experience working on general infrastructure and application-layer security issues
  • Experience with Open Source operations tooling for configuration management, orchestration, and monitoring.
  • Experience working on Open Source operations infrastructure in general
  • Bachelor’s degree or the equivalent in related work experience
  • Experience operating TLS-terminating reverse proxy servers at global scale
  • Experience operating large web properties at a global scale
  • Programmer experience writing and/or modifying network daemons and/or libraries in languages such as C, C++, Go, Python, and/or Rust
  • Some knowledge of Linux IPVS load-balancing
  • Some knowledge of global IP routing
  • Some knowledge of HTTP caching and related CDN technologies
  • https://grafana.wikimedia.org/dashboard/db/tls-ciphers
  • https://www.ssllabs.com/ssltest/analyze.html?d=en.wikipedia.org
  • https://wikitech.wikimedia.org/wiki/HTTPS
  • Fully paid medical, dental and vision coverage for employees and their eligible families (yes, fully paid premiums!)
  • The Wellness Program provides reimbursement for mind, body and soul activities such as fitness memberships, baby sitting, continuing education and much more
  • The 401(k) retirement plan offers matched contributions at 4% of annual salary
  • Flexible and generous time off - vacation, sick and volunteer days, plus 19 paid holidays - including the last week of the year.
  • Family friendly! 100% paid new parent leave for seven weeks plus an additional five weeks for pregnancy, flexible options to phase back in after leave, fully equipped lactation room.
  • For those emergency moments - long and short term disability, life insurance (2x salary) and an employee assistance program
  • Pre-tax savings plans for health care, child care, elder care, public transportation and parking expenses
  • Telecommuting and flexible work schedules available
  • Appropriate fuel for thinking and coding (aka, a pantry full of treats) and monthly massages to help staff relax
  • Great colleagues - diverse staff and contractors speaking dozens of languages from around the world, fantastic intellectual discourse, mission-driven and intensely passionate people