Назад
Company hidden
5 дней назад

Senior Platform Engineer - Identity & Security (Keycloak)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Switzerland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Platform Engineer - Identity & Security (Keycloak) (Identity and Security): Shaping and operating Zurich's enterprise identity platform with an accent on Keycloak, modern authentication protocols, fine-grained authorization, and Zero Trust. Focus on designing security concepts for agentic AI, defining reference architectures and engineering standards, and translating insurance requirements into scalable identity outcomes.

Location: Zurich, Oerlikon, Switzerland; hybrid work up to 40%.

Company

hirify.global is a global insurance company serving customers in 210 countries and territories with more than 53,000 employees.

What you will do

  • Set the technical direction for identity and security engineering through concepts, principles, and reference architectures.
  • Shape and operate the enterprise identity platform, with a strategic focus on Keycloak, OAuth 2.0, OIDC, SAML, and PKCE.
  • Lead the transition away from legacy federation and extend security into event-driven and AI-augmented workflows.
  • Define identity and security concepts for AI agents, agentic workflows, workload identity, and fine-grained authorization.
  • Establish engineering standards, reviews, and quality gates across internal teams, partners, and AI-augmented workflows.
  • Partner with business domains and Digital Products to translate insurance requirements into identity and security outcomes.

Requirements

  • 7+ years of experience in software or security engineering.
  • Deep expertise in OAuth 2.0, OIDC, SAML, PKCE, token lifecycle, federation, LDAP, and hands-on Keycloak.
  • Experience with agentic AI access management and security, including agent identity, agent-to-agent authentication, MCP security, prompt injection defense, and AI supply chain security.
  • Understanding of OpenFGA, OPA, Cedar, Zero Trust, cloud-native engineering, Azure and/or AWS, containers, and event streaming.
  • Strong ownership, critical thinking, communication, and ability to translate business intent into technical specifications.
  • Fluent English required; German is a plus.

Culture & Benefits

  • Agile and collaborative multidisciplinary environment.
  • Flexible working models with hybrid work arrangements.
  • Opportunities for further training and development.
  • Culture focused on acceptance, diversity, inclusion, equity, and team spirit.
  • Application is accepted without a cover letter.

Hiring process

  • Submit an online application without a cover letter.
  • Motivation can be discussed in a personal meeting.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →