Website:
byosync.com
Job details:
Company Description ByoSync is focused on transforming how digital trust works by eliminating repetitive identity and data verification across platforms. Instead of repeatedly sharing documents, OTPs, and personal data, users store verified information in a secure personal vault. Companies request access only when necessary, with every approval tied to clear consent, purpose, and time limits. This approach keeps users in control of their data, helps organizations reduce risk, and makes digital trust reusable and more efficient for both individuals and businesses.
Role Description The Lead Engineer will oversee the design, development, and delivery of ByoSync’s core platform, with a focus on secure data storage, consent-driven access, and scalable architecture. Day-to-day responsibilities include leading a cross-functional engineering team, reviewing and writing high-quality code, defining technical roadmaps, and implementing best practices for security, performance, and reliability. The role involves close collaboration with product management and design to translate business requirements into robust technical solutions, as well as mentoring engineers and improving development processes.
What You'll Work On
— Build and maintain vault infrastructure: tokenization, field-level encryption, token lifecycle management, and revocation cascades that instantly kill downstream access
— Design and scale the scan engine backend: data flow analysis APIs, PII detection pipeline, risk scoring, and fix proposal generation with SDK/API context for the customer's stack
— Integrate CI/CD monitoring hooks that trigger rescans on every push and verify controls are closed after fixes are applied
— Build access control systems: role-based, purpose-bound, TTL-scoped employee access with full audit logging for every sensitive data view
— Implement vendor and tool lineage tracking: every data movement logged with who accessed what, why, when, and through which integration
— Build the KYA agent authorization layer: agent registration, credential issuance, scope management, runtime verification, and revocation bound to verified human mandates
— Generate tamper-evident, append-only audit evidence packaged for DPDP, RBI, EU AI Act, and SOC2 readiness
— Build and maintain dashboard APIs powering integration management, tokenization controls, compliance progress, and evidence export
Qualifications
— 2–3 years backend engineering in production environments
— Strong command of Node.js or Python (we use both)
— PostgreSQL for token and audit log management at scale
— Redis for nonce management, TTL-based token expiry, and replay protection
— REST API design and webhook architecture — ByoSync sits as middleware between company systems
— Understanding of field-level encryption and decryption — not just HTTPS, actual data-at-rest encryption per field
— Experience with role-based, purpose-bound, TTL-scoped access control systems
— Familiarity with append-only, tamper-evident audit log design
— Comfortable with Git and CI/CD pipeline integration
Preferred (Nice to Have)
— Exposure to tokenization and vault architecture (Skyflow, Evervault, VGS)
— Familiarity with MCP protocol — how AI agents connect to tools
— Experience with agent identity and credentialing systems
— Knowledge of AST-based code analysis or data flow taint analysis (Semgrep or similar)
— Exposure to trusted execution environments — AWS Nitro Enclaves or equivalent
— Familiarity with policy-as-code engines — Cedar, OPA, or similar
— Understanding of DPDP Act data handling requirements and RBI authentication guidelines
— Experience with DigiLocker API integration
Industry
Technology · AI Infrastructure · Data Security
Employment Type
Click on Apply to know more.