Senior Backend Engineer (Identity & Access Management)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Remote, hybrid, or office-based in Albania, Austria, Azerbaijan, Belgium, Bosnia and Herzegovina, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Georgia, Germany, Hungary, Italy, Kosovo, Latvia, Lithuania, Luxembourg, North Macedonia, Norway, Poland, Portugal, Romania, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzerland, The Netherlands, or Ukraine.
Salary: EUR 3,850–5,125 per month gross. Additional earnings of up to EUR 1,000 per month may be included in the annual bonus.
Company
is an international software development company delivering technology solutions for financial, healthcare, retail, telecom, and other business domains.
What you will do
- Design, develop, and operate high-throughput, low-latency identity services covering SSO, MFA, session management, and federation.
- Implement and scale OAuth 2.0, OpenID Connect, JWT, authentication, authorization, token issuance, rotation, and revocation.
- Build clean, concurrent, performant Go backend services with gRPC and HTTP APIs.
- Deploy, manage, and automate identity infrastructure using CI/CD, monitoring, and incident response practices.
- Integrate identity providers such as Keycloak and AWS Cognito and maintain federation patterns.
- Lead security reviews and threat modeling, conduct design reviews, mentor engineers, and contribute to the technical roadmap.
Requirements
- 7+ years of backend engineering experience, including 5+ years with Go.
- Production experience with IAM, Go, gRPC, and complex distributed backend systems.
- Deep expertise in OAuth 2.0, OIDC, SSO, MFA, RBAC, JWT, token security, session management, and cryptography.
- Strong understanding of web security, federated identity, secure coding, and OWASP Top 10.
- Hands-on experience with AWS, Kubernetes, and Terraform, plus experience designing high-throughput, low-latency systems.
- Upper-Intermediate English or higher and the ability to explain security and architecture trade-offs to technical and non-technical stakeholders.
Nice to have
- Experience with SAML, SCIM, PKI, JWKs/JWKS endpoints, KMS/HSM, token introspection, rate limiting, abuse mitigation, and adaptive authentication.
- Working knowledge of commercial or open-source identity platforms.
Culture & Benefits
- Remote, office-based, and hybrid work options.
- Mentoring, onboarding, professional development, and career growth opportunities.
- Access to a continuously updated corporate training portal and compensation for certifications such as AWS and PMP.
- Private health insurance and sports compensation depending on the type of employment.
- Corporate events, referral program, and other employee activities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →