Staff, Software Engineer, Information Security - Managed File Transfer Security Transformation

Walmart Walmart · Retail · Bentonville, AR +1

Staff Software Engineer focused on security transformation of Walmart's enterprise Managed File Transfer (MFT) platform. This role involves leading the modernization of MFT authentication and authorization, specifically transitioning from SSH key-based to SSH certificate-based authentication at enterprise scale. Responsibilities include defining roadmaps, designing CA architecture, automating provisioning, and ensuring data security and cryptographic hygiene.

What you'd actually do

  1. Serve as the subject matter expert (SME) for Managed File Transfer platforms (e.g., SFTP, FTPS, HTTPS-based transfers, enterprise MFT solutions).
  2. Define and drive the strategic roadmap for modernizing MFT authentication and authorization models.
  3. Lead the transition from static SSH key-based authentication to SSH certificate-based authentication at enterprise scale.
  4. Establish architectural standards and patterns for secure file movement across internal, cloud, and third-party environments.
  5. Provide technical leadership for high-availability, scalable, and secure MFT infrastructure.

Skills

Required

  • Deep expertise in Managed File Transfer technologies and secure file transfer protocols (SFTP, FTPS, SCP, HTTPS, etc.).
  • Advanced knowledge of SSH authentication mechanisms, including: SSH key generation and management, Key rotation strategies, Key governance challenges, SSH certificate-based authentication design and implementation
  • Strong understanding of Public Key Infrastructure (PKI), certificate authorities, and certificate lifecycle management.
  • Experience designing secure machine-to-machine authentication models at scale.
  • Strong knowledge of encryption, data-in-transit protection, and secure protocol configuration.
  • Experience automating infrastructure and security controls using scripting or infrastructure-as-code tools.
  • Ability to design scalable, resilient, and highly available infrastructure solutions.
  • Strong analytical and problem-solving skills.
  • Excellent communication skills with the ability to influence both technical and non-technical stakeholders.
  • Proven ability to lead cross-functional initiatives in complex enterprise environments.

Nice to have

  • Experience implementing SSH certificate authorities in large enterprise environments.
  • Familiarity with cloud-based MFT architectures and hybrid environments.
  • Experience with secrets management and key vault technologies.
  • Knowledge of regulatory and compliance frameworks impacting data transfer (PCI, SOX, HIPAA, etc.).
  • Relevant certifications (CISSP, CISM, GIAC, etc.) are a plus.

What the JD emphasized

  • enterprise scale
  • SSH certificate-based authentication
  • automation frameworks
  • Reduce risk associated with unmanaged or orphaned SSH keys
  • security guardrails, policies, and best practices
  • regulatory requirements