Назад
Company hidden
1 день назад

Principal Security Engineer, Customer Identity Management (CIAM)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security Engineer, Customer Identity Management (CIAM): Defining and architecting a unified customer identity platform for PROS's multi-tenant SaaS products with an accent on authentication, authorization, federation, and identity governance. Focus on designing scalable OAuth 2.0, OpenID Connect, SAML, MFA, RBAC/ABAC, and zero-trust capabilities while leading threat modeling, auditability, and cross-functional security architecture.

Location: Houston, Texas, USA; work activities are performed in an office or home-office environment

Company

hirify.global provides AI-powered offer management and revenue optimization software for the airline industry.

What you will do

  • Define and own the long-term Customer Identity Management strategy, architecture, roadmap, and operating model.
  • Design authentication, authorization, identity federation, lifecycle management, and governance services across customer-facing products.
  • Establish standards for SSO, MFA, SAML, OIDC, OAuth 2.0, RBAC, ABAC, and zero-trust security.
  • Develop a unified identity architecture supporting multiple products, tenants, and customer organizations.
  • Lead CIAM platform selection, integration, deployment, monitoring, logging, and operational governance.
  • Partner with product, engineering, security operations, compliance, and customer success teams; mentor engineers and architects.

Requirements

  • 10+ years of security engineering or platform engineering experience.
  • 5+ years designing and implementing enterprise IAM or CIAM solutions.
  • Deep expertise in OAuth 2.0, OpenID Connect, SAML, identity federation, MFA, RBAC/ABAC, and zero-trust architectures.
  • Experience with cloud-native platforms, SaaS architectures, and identity platforms such as Auth0, Okta, Entra ID, Ping Identity, or ForgeRock.
  • Strong knowledge of security architecture, threat modeling, and secure software development practices.
  • Excellent communication skills and the ability to influence architecture decisions across engineering organizations.

Nice to have

  • Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related field.
  • Understanding of core AI concepts, prompt design, and agentic AI systems.

Culture & Benefits

  • Flexible ways of working across office and home-office environments.
  • Continuous learning and opportunities for professional growth.
  • Culture centered on ownership, innovation, care, and customer success.
  • Work on AI-driven airline retailing and intelligent revenue optimization products.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →