Description review

Human8e Ltd | Applied cryptographer, protocol review | REMOTE (worldwide) | Contract, fixed fee

Human8e Ltd · REMOTE (worldwide) · back to the listing

HR standards

59/100

needs work

Title ↔ description

54/100

needs work

Reads as

Security Engineer

90% confident

What this role officially is

ICT security administrator — ESCO, the EU occupation classification

ICT security administrators plan and carry out security measures to protect information and data from unauthorised access, deliberate attack, theft and corruption.

Also known as: network security administrator, system security administrator, ICT security administrators, IT security administrator

How others title the same work

Large employers

  • Security Risk Management Specialist Canonical Ltd.
  • Security Software Engineer Canonical Ltd.
  • Senior Security Operations Engineer Canonical Ltd.
  • Staff Security Operations Engineer Canonical Ltd.
  • Ubuntu Security Engineer Canonical Ltd.

Startups

  • Security Engineer (Bangalore, India) AiPrise
  • Security & Trust Engineer Alex
  • Elucid | Senior Security Engineer | Boston, MA | ONSITE (hybrid) | $130k–$170k Elucid
  • Factory | Security Engineer | ONSITE, San Francisco, CA | Full-Time Factory
  • Factory | Security Engineer | Onsite in San Francisco | Full-time Factory

What the listing never says

  • No section describes what the person would actually do. Scope clarity
  • No pay range published. Candidates cannot tell whether applying is worth their time. Pay transparency

The listing, marked up

Nothing in the wording of this listing tripped a check. The scores above still judge how complete and coherent it is.

We're an early-stage UK company building a mobile application, funded by its founder (just me), which is why the scope below is deliberately narrow.
I'm looking for an applied cryptographer to review a protocol specification before it ships. It is small and specific: three messages, two parties, signature-based, using hardware-backed keys on both iOS and Android. It uses standard primitives only (ECDSA over P-256, SHA-256) and invents no new cryptography; the question is how they are combined. The specification is written and frozen, with test vectors and the generator that produces them.
What I want is a competent second opinion on whether it is sound: six specific questions answered in writing. Not an open-ended audit or a penetration test. The person I'm looking for has either published on protocol security or reviews protocols professionally; being good with crypto libraries isn't quite the same thing.
One piece of contract work, not a role. Under a short mutual NDA.
Email [email protected] by Sunday 4 October with a short summary of the protocol analysis you've done, and I'll send scope, timing and what I'd need from you.

How this was produced

Highlights are found by rule, not by a model: each one is a phrase matched at a known position, and every note is a template we wrote. The two scores come from a typed-decision model (Jev) that reads the listing against the official role definition and real listings for the same role, and returns probabilities rather than prose — it never writes any of the words on this page, and never chooses what to highlight.

Deterministic penalty applied to the HR score: 12 points (from 71 before penalties). Reviewed 1 Oct 2026.