Staff Software Engineer (Cloud Identity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Software Engineer (Cloud Identity): Designing and building Cloud's identity platform with an accent on authentication (OAuth 2.0/OIDC/SAML), authorization (RBAC/ReBAC), and workload identity federation. Focus on scaling the auth hot path for low latency, integrating enterprise IdPs, and eliminating single points of failure in a multi-tenant SaaS environment.
Location: Must be based in the United States (Remote)
Salary: $212,000 – $286,000
Company
is an open-source programming model that provides a reliable foundation for developers to build durable-execution applications and simplify complex distributed workflows.
What you will do
- Design and build the identity platform end-to-end, including authentication, authorization, and workload identity federation.
- Scale the authentication hot path to meet SLOs using in-memory bundles, caching, and revocation strategies.
- Integrate with enterprise IdPs such as Okta, Entra ID, and Google Workspace, and manage SCIM 2.0 provisioning.
- Partner with Security, Product, and platform teams to define IAM lifecycles and ship secure-by-default patterns.
- Mentor engineers, maintain clear architecture documentation, and engage with customers to unblock adoption.
Requirements
- Must be based in the United States.
- Deep hands-on experience building production identity systems (OAuth 2.0/2.1, OIDC, SAML, JWT/JOSE).
- Strong grasp of authorization at scale (RBAC, ABAC, ReBAC/Zanzibar) and policy engines like OPA or Cedar.
- Proven track record of operating latency-sensitive distributed systems in production with on-call ownership.
- Proficiency in Go.
Nice to have
- Experience with Python, Java, or Kotlin.
- Contributions to identity OSS projects (Keycloak, Ory, Dex, OpenFGA, SPIRE) or standards bodies (IETF, OpenID Foundation).
- Experience with compliance frameworks such as FedRAMP, SOC 2, ISO 27001, or HIPAA.
- Familiarity with or other durable-execution engines.
Culture & Benefits
- Comprehensive health coverage (Medical, Dental, Vision) and an Empower 401K plan.
- Equity options as part of the company's equity plan.
- Unlimited PTO, 12 holidays, and 2 floating holidays.
- Stipends for in-home office setup, internet, professional development, and work-from-home meals.
- Wellness perks including a Calm app subscription and a lifestyle spending account.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →