Back
2 months ago

Senior Software Engineer (Identity)

Work type
fulltime
Grade
senior
English
b2
Country
US
This vacancy is from Hirify.Global listVacancy from Hirify Global, list of international tech companies
Plus is required to make matches and apply

Match & Cover letter

Plus required for matching with this vacancy

Job description

Text:
/
TL;DR
Senior Software Engineer (Identity): Designing and implementing secure identity infrastructure and access management systems with an accent on authentication and authorization frameworks. Focus on building scalable identity governance policies, integrating Zanzibar-based ReBAC models, and ensuring compliance with security standards like SOC2 and ISO 27001.

Location: Must be based in the United States (implied by US Department of Labor compliance and commuter benefits)

Company

Developing reliable AI systems for the world's most important decisions through high-quality data and full-stack technologies that power leading LLMs.

What you will do

  • Drive the design and implementation of identity infrastructure to ensure secure authentication and authorization across enterprise systems.
  • Build software for authentication mechanisms including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and federated identity solutions (SAML, OAuth, OpenID Connect).
  • Develop authorization mechanisms using Relation-based (ReBAC), Attribute-based (ABAC), and Role-based (RBAC) access control.
  • Create software-defined identity governance policies to ensure compliance with NIST, SOC2, and ISO 27001 standards.
  • Collaborate with stakeholders to provide guidance and technical insight on identity management best practices.

Requirements

  • 5+ years of full-time engineering experience post-graduation, specializing in infrastructure and identity systems.
  • Expertise in IAM controls and Infrastructure as Code tools such as Terraform or Pulumi.
  • Hands-on experience with authorization frameworks like OpenFGA, Authzed, Cedar, or Topaz at scale.
  • Strong understanding of Zanzibar-based ReBAC models, relationship tuples, and access control evaluation.
  • Deep knowledge of OAuth 2.0, OIDC, SAML, JWT, and IdP solutions like EntraID or Okta.
  • Extensive experience with distributed systems and public cloud platforms, preferably AWS.

Nice to have

  • Experience securing API access and implementing application-level access control mechanisms.
  • Multi-cloud infrastructure experience across AWS, Azure, and GCP.
  • Proficiency in integrating IAM solutions with Java, Python, Node.js, or .NET frameworks.
  • Experience in mentoring and supporting junior engineers.

Culture & Benefits

  • Comprehensive health, dental, and vision insurance coverage.
  • Equity compensation and retirement benefits.
  • Learning and development stipend to support professional growth.
  • Generous PTO and a commuter stipend for eligible roles.
  • Inclusive and equal opportunity workplace committed to accessibility.

Be careful: if the employer asks you to log into their system using iCloud/Google, send codes/passwords, or run code/software, don't do it - these are scammers. Always click "Report" or contact support. More in guide →