7+ years in Cloud Infrastructure or Security Engineering roles
Proven experience with large-scale production systems
Strong understanding of IAM protocols (SAML, OAuth2, OIDC)
Hands-on experience with AWS identity controls
Experience with container technologies and Kubernetes
Proficient in Python or Go and Terraform for automation
Security-focused mindset with Zero Trust implementation
Responsibilities
Drive design and architecture of cloud infrastructure and identity platforms
Implement IAM, IGA, and authentication solutions using modern standards
Develop automation and infrastructure-as-code solutions with Terraform
Design security controls for AI systems and core security services
Collaborate across teams to promote secure-by-design solutions
Lead initiatives to improve infrastructure scalability and reliability
Write reliable code and mentor engineers
Benefits
Flexible work arrangements
Opportunity for professional development and training
Collaborative work environment
Access to cutting-edge technology and tools
Involvement in impactful projects that shape company security practices
Full Job Description
Responsibilities:
Drive the design and architecture of secure, scalable cloud infrastructure and identity platforms in AWS and our own data centers.
Design and implement IAM, IGA, authentication, authorization, SSO, MFA, identity lifecycle management, and provisioning/deprovisioning solutions using modern identity platforms and standards such as SAML, OAuth2, OIDC, and SCIM.
Develop automation, integrations, and infrastructure-as-code solutions using Terraform and programming languages such as Python and Go.
Design and implement security controls for AI-powered systems, including controlled, audited, and governed agent workflows, while contributing to core security services such as service identity, secrets management, key management, authentication, and authorization.
Partner across Security, Engineering, and Infrastructure teams to drive secure-by-design solutions, implement Zero Trust principles, and reduce operational friction.
Drive technical direction and cross-team initiatives that improve the scalability, reliability, security, and developer experience of our infrastructure.
Write high-quality, reliable code, participate in architecture and code reviews, mentor engineers, and help raise the technical bar across the team.
Support critical production systems and drive operational excellence through scalability, resiliency, observability, and automation.
Participate in on-call and incident response for the Developer Productivity organization.
Skills & Qualifications
7+ years of experience in Cloud Infrastructure, Platform Engineering, Identity & Access Management, Identity Engineering, or Security Engineering.
Proven experience designing and owning complex production infrastructure or platform systems at scale.
Strong knowledge of authentication, authorization, identity lifecycle management, and federation protocols including SAML, OAuth2, OIDC, SCIM, and RBAC.
Experience designing and operating identity and access controls within AWS environments, with hands-on experience building and operating production-level services on AWS.
Experience working with container technologies and deploying and operating services on Kubernetes.
Strong automation and coding skills with Python or Go, along with Terraform or similar IaC technologies.
A security-first mindset with experience implementing Zero Trust, least-privilege access, and compliance frameworks such as SOC2, FedRAMP, or ITAR.
A strong platform and operational mindset, with experience supporting and improving production services through monitoring, troubleshooting, incident response, and automation.
Demonstrated ability to influence technical direction, drive cross-team initiatives, and mentor other engineers.
Excellent collaboration and communication skills, with a proven ability to work across teams and influence technical decisions.
Preferred Skills & Qualifications
Hands-on experience with identity platforms such as Okta, Microsoft Entra ID (Azure AD), or modern IAM/IGA platforms.