Назад
Company hidden
5 дней назад

Platform Engineer - Identity Infrastructure (Cybersecurity)

135 000 - 200 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Platform Engineer - Identity Infrastructure (Cybersecurity): Building and operating secure identity infrastructure for corporate and customer-facing platforms with an accent on access governance, authorization, token issuance, and workload identity. Focus on designing policy engines and entitlement graphs, scaling cloud-native services across AWS, Azure, and GCP, and implementing short-lived least-privilege credentials for non-human identities and AI agents.

Location: New York, NY; hybrid work

Salary: $135,000–$200,000 per year, plus potential restricted stock units, sign-on bonus, and other incentives.

Company

hirify.global builds software for data-driven decisions and operations used by important institutions worldwide.

What you will do

  • Design, build, and operate secure-by-design identity infrastructure and tooling for corporate and customer-facing platforms.
  • Build and manage geo-redundant containerized services in AWS and Azure using EKS and ECS.
  • Scale SSO integrations across multiple Entra ID tenants with infrastructure-as-code frameworks.
  • Extend the identity platform to workload and AI-agent identities with scoped, short-lived credentials.
  • Develop access graphs, policy engines, token-issuance layers, and federation flows that enforce auditable least-privilege access.
  • Research authentication and session-security standards, threat-model implementations, and collaborate with security and compliance engineers.

Requirements

  • 3+ years of experience in SRE, DevOps, software engineering, or an equivalent discipline, with a strong passion for security.
  • Experience deploying and operating containerized production services or APIs in AWS, Azure, or Google Cloud.
  • Expert-level proficiency in Go, Python, or TypeScript; Go is preferred.
  • Experience with infrastructure as code using Terraform, Helm, CloudFormation, or similar tools.
  • Technical proficiency in identity protocols including SAML, OIDC, OAuth 2.0, LDAP, Kerberos, FIDO2, or WebAuthn.
  • Active TS/SCI security clearance, or eligibility and willingness to obtain one.

Nice to have

  • Experience with Entra ID, Keycloak, AWS Cognito, or Okta.
  • Experience with policy engines, authorization as code, relationship-based access models, or entitlement graphs.
  • Experience with workload identity federation, mTLS, workload attestation, delegation flows, and agentic identity.

Culture & Benefits

  • Medical, dental, vision, life, AD&D, and disability insurance options.
  • Commuter benefits, a 401(k) plan, paid holidays, and flexible paid time off.
  • Paid parental leave, subsidized backup care, and fertility and family-building benefits.
  • Relocation assistance and supportive leave programs.
  • Hybrid work options support in-person collaboration, connectivity, and innovation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →