Post-Quantum Cryptography Specialist
About the role
Iron Bow Technologies is a next-generation solutions provider delivering mission success across government, healthcare, and commercial industries. The Post-Quantum Cryptography Specialist will serve as the program’s subject-matter expert for the VA’s migration from quantum-vulnerable cryptography to NIST-standardized post-quantum cryptographic algorithms, providing applied cryptographic expertise for PQC assessment, planning, testing, implementation, validation, and transition. The role is primarily remote with limited travel to customer facilities.
Responsibilities
- Serve as technical SME for NIST-standardized post-quantum cryptography.
- Lead and support the PQC Readiness Assessment across HSMs, partitions, CAs, KMS platforms, middleware, cryptographic interfaces, and dependent applications.
- Assess support for ML-KEM, ML-DSA, and SLH-DSA.
- Develop and maintain the PQC Upgrade Roadmap.
- Plan and validate HSM PQC firmware upgrades and associated rollback procedures.
- Test PQC and hybrid cryptographic implementations under representative production workloads.
- Evaluate cryptographic module and algorithm validation status under NIST CMVP and CAVP.
- Develop migration strategies consistent with NIST IR 8547 and CNSA 2.0.
- Support creation and maintenance of the Crypto Agility Plan.
- Develop and maintain the Cryptographic Bill of Materials (CBOM).
- Assess harvest-now-decrypt-later risks and assist in prioritizing migration of sensitive systems.
- Support parallel classical/PQC operation and phased deprecation of quantum-vulnerable algorithms.
- Support PQC/hybrid Certificate Authority testing and migration.
- Monitor changes to NIST, NSA/CNSA, IETF, CMVP, CAVP, and other relevant cryptographic standards.
Skills
- Advanced knowledge of applied cryptography.
- Direct, substantive experience with FIPS 203 / ML-KEM, FIPS 204 / ML-DSA, and FIPS 205 / SLH-DSA.
- PQC algorithm implementation, testing, integration, or transition-planning experience.
- Familiarity with NIST IR 8547 transition guidance.
- Familiarity with CNSA 2.0 requirements.
- Understanding of NIST CMVP and CAVP processes and ability to interpret module and algorithm validation status.
- Understanding of HSM and PKI implementation considerations associated with PQC.
What sets you apart
- Cryptographic engineering, computer science, mathematics, or cybersecurity background.
- Experience with HSM-based PQC implementations.
- Experience with hybrid classical/PQC PKI or certificate architectures.
- Experience developing CBOMs or cryptographic discovery/inventory capabilities.
Why you’ll love it
You will be part of a growing company that values your voice, ideas, and experience, contributing to Iron Bow’s transformational shift in delivering value to customers and employees. You will work with passionate professionals in a culture that fosters respect, support, and empowerment.