2 дня назад
Senior Information Security Engineer (Identity & Access Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Information Security Engineer (Identity & Access Security): Building and hardening identity lifecycle, access control, and zero-trust capabilities across Match Group's global portfolio with an accent on authentication, authorization, privileged access, non-human identities, and AI agent security. Focus on engineering automated solutions, integrating device and SaaS security signals, and solving complex least-privilege and access governance challenges across enterprise environments.
Location: Hybrid in Palo Alto, San Francisco, Los Angeles, New York, or Vancouver
Company
operates a unified security program across a portfolio of dating and social products, including Tinder, Hinge, Match, Meetic, OkCupid, Plenty of Fish, Azar, and Pairs.
What you will do
- Drive identity and access lifecycle strategy across the global product portfolio.
- Strengthen authentication with device trust, post-authentication detection, and DPoP.
- Enforce least privilege, right-size entitlements, and modernize privileged access with just-in-time controls.
- Manage Cloudflare Zero Trust Network Access policies and support the transition from traditional network-based access.
- Secure non-human identities, including OAuth tokens, service accounts, API keys, and emerging AI agent connections.
- Build automated security solutions and integrate endpoint, SaaS, vulnerability, and access-control signals.
Requirements
- 7+ years of experience in security engineering, IT engineering, or infrastructure, with substantial identity and access expertise.
- Hands-on experience with Okta policy design, device assurance, FastPass, device trust, and RBAC.
- Experience with Cloudflare Zero Trust or a comparable platform, plus strong knowledge of SAML, OIDC, OAuth 2.0, and SCIM.
- Experience with identity governance, identity lifecycles, compliance requirements, and non-human identity security.
- Experience with Terraform or other infrastructure-as-code tools, GitOps, and automation using Python or similar technologies.
- Ability to influence cross-functional outcomes and drive complex security problems to completion without formal authority.
Nice to have
- Endpoint management or EDR experience with Jamf, CrowdStrike, or similar tools.
- Audit and compliance experience with SOX, PCI-DSS, or ISO 27001.
- Experience working in global EMEA or APAC environments.
Culture & Benefits
- Hybrid work environment across multiple US and Canadian locations.
- Values include ownership, speed, collaboration, candor, safety, and creativity.
- Base pay may vary by location and may be adjusted geographically for other approved work locations.
- Reasonable accommodations are available during pre-employment testing and interviews.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →