Software Engineer, Identity & Access Management (IAM)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Software Engineer (IAM/Go/Python): Building the security foundation for an API Platform connecting autonomous factories with an accent on authentication, authorization, and credential automation. Focus on designing scalable RBAC/ABAC/ReBAC models and securing machine-to-machine communication across multi-cloud and on-prem environments.
Location: Los Angeles, CA. Must be a U.S. citizen, lawful permanent resident, or eligible for ITAR authorizations.
Salary: $192,000 – $273,500 + equity
Company
is building autonomous factories for the aerospace and defense industry to manufacture critical parts up to 10x faster and 2x cheaper.
What you will do
- Design and implement scalable authentication and authorization systems for human and machine identities.
- Own the authentication stack, including SSO, MFA, and OIDC/SAML integrations across AWS and GCP.
- Build fine-grained access control systems using RBAC, ABAC, and ReBAC models.
- Develop frameworks and CLI tools to automate credential provisioning, rotation, and policy enforcement.
- Collaborate with the API Platform PM to ensure IAM capabilities are delivered as high-quality developer experiences.
- Set engineering-wide IAM standards and serve as the domain expert for access-sensitive architecture.
Requirements
- 8–12+ years of software engineering experience, with 3+ years focused on identity and auth systems at scale.
- Deep expertise in OAuth 2.0, OpenID Connect (OIDC), SAML, and SCIM.
- Strong understanding of access control models (RBAC, ABAC, ReBAC) and architectural tradeoffs.
- Proficiency in Go, Python, or similar languages.
- U.S. citizenship, lawful permanent residency, or ITAR eligibility is required.
- Bachelor's degree in Computer Science or equivalent practical experience.
Nice to have
- Experience building IAM systems for external developer ecosystems.
- Knowledge of policy-as-code frameworks like OPA or Casbin.
- Experience with zero-trust network architecture and secrets management (e.g., Vault).
- Prior experience in aerospace, defense, or manufacturing environments.
Culture & Benefits
- Comprehensive medical, dental, vision, and life insurance plans.
- 401k retirement plan.
- Flexible vacation policy.
- Relocation support may be provided based on business needs.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →