Source Job

United States

  • Define architecture and technical direction for a large-scale IAM platform supporting authentication, authorization, and identity governance.
  • Lead design and implementation of secure, scalable identity systems including RBAC, ABAC, and multi-tenant architectures.
  • Partner with Security, Compliance, and Product teams to meet enterprise governance and regulatory requirements.

IAM OAuth 2.0 OpenID Connect SAML Okta

20 jobs similar to Senior Staff Software Engineer – Identity & Access Management Platform

Jobs ranked by similarity.

United States

  • Lead the design and evolution of Kaseya’s IAM platform, defining architecture and technical direction across multiple products.
  • Build and operate core IAM platform services, APIs, and integrations for authentication, authorization, and identity governance.
  • Partner with Security, Compliance, and Product teams to meet governance and regulatory requirements while mentoring engineers.

Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Backed by Insight Partners, Kaseya has experienced sustained double-digit growth, supports customers in over 20 countries, and manages over 15 million endpoints worldwide.

US

  • Lead the design, development, and maintenance of authentication and authorization systems.
  • Propose, design, develop and implement cloud-based identity solutions.
  • Collaborate with cross-functional teams to drive the development of new auth features.

Maven Clinic is the world's largest virtual clinic for women and families, committed to making healthcare accessible to all. They provide clinical, emotional, and financial support through their digital programs. Maven has over 2,000 employers and health plans as clients and has been recognized with over 30 workplace and innovation awards.

US Unlimited PTO

  • Build and improve core parts of Temporal Cloud's identity platform including authentication (OAuth 2.0/OIDC, SAML) and authorization (RBAC and policy-based access).
  • Integrate with enterprise identity providers (Okta, Entra ID, Google Workspace) and support user provisioning (SCIM) while addressing identity threats like token replay.
  • Write clear architecture and design docs, and contribute to the team's technical direction.

Temporal is an open source programming model that simplifies code and makes applications more reliable. We are a growing team of curious, driven, and collaborative individuals building the reliable foundation for every developer's toolbox.

US

  • Lead enterprise authentication services across multiple Microsoft Entra ID tenants, ensuring secure and reliable access for workforce and partner applications.
  • Partner with cybersecurity, infrastructure, and application teams to design and implement MFA, SSO, and conditional access patterns with modern protocols.
  • Manage a team of direct reports and offshore staff, driving automation, vendor relationships, and operational metrics for authentication platforms.

NBCUniversal is a world-leading media and entertainment company, creating content across film, television, and streaming, and operating theme parks and consumer products. As a subsidiary of Comcast Corporation, they have a large global workforce and foster an inclusive culture with opportunities for community service and talent development.

Latin America

  • Design and develop scalable IAM solutions, including identity provisioning and access management workflows.
  • Integrate corporate directories, cloud environments, and third-party applications with the core IAM platform.
  • Configure Single Sign-On (SSO), Multi-Factor Authentication (MFA), and federated identity protocols.

Nortal is a digital transformation company delivering complex solutions for global enterprises and public sector organizations. They have a close-knit remote team across Latin America and foster a culture of autonomy and open communication.

$192,000–$278,000/yr
US Canada

  • Design and evolve identity services that power secure access across 1Password products.
  • Architect scalable systems for authentication, authorization, federation, session management, and policy enforcement.
  • Mentor engineers at various stages of their careers and foster technical growth.

1Password is building the foundation for a safe, productive digital future. As one of the most loved brands in cybersecurity, they take a human-centric approach from product strategy to user experience. They have surpassed $400M in ARR and have over 180,000 businesses trusting their platform.

US Canada

  • Design and evolve IAM foundations for AI Agents, including agent identity and permission guardrails.
  • Build authentication and authorization systems that are reliable, standards-based, and performant for millions of global users.
  • Partner with Infrastructure, Security, Compliance, and Product Engineering to solve complex cross-functional risk and governance challenges.

Samsara (NYSE: IOT) is the pioneer of the Connected Operations Cloud, enabling organizations to harness IoT data to improve safety, efficiency, and sustainability. As a recently public company with over 2.3 million connected devices, they foster a culture of growth mindset, inclusion, and long-term impact.

US 12w maternity 12w paternity

  • Lead high-performing engineering teams in building identity security platforms (ITDR and ISPM) for millions of users globally.
  • Define technical vision, architecture, and engineering standards for scalable, identity-focused cybersecurity products.
  • Collaborate with product, security, and architecture teams to drive roadmap execution and deliver customer value.

Jobgether is an AI-powered job matching platform that connects candidates with hiring companies efficiently. As a partner company, we manage applications and next steps for this role, operating in a remote-first, high-growth environment focused on cybersecurity.

Netherlands 6w PTO

  • Design, implement, and manage privileged access controls including Privileged Identity Management (PIM) and just-in-time (JIT) access.
  • Lead access review and certification processes, ensuring remediation actions are completed and access remains aligned with least-privilege principles.
  • Manage the lifecycle of service accounts, machine identities, secrets, API keys, and credentials, including rotation, monitoring, and decommissioning.

This position is listed on behalf of a partner company, who manages all applications and next steps. The partner is looking for an Identity & PAM Security Engineer based in Netherlands. The role sits at the core of enterprise security, focusing on how identities are governed, accessed, and protected across critical systems and infrastructure.

Europe 6w PTO

  • Manage privileged access controls, identity governance, and security across cloud and enterprise environments.
  • Design and implement automation for identity workflows, access validation, and remediation activities.
  • Collaborate with Security, Infrastructure, and Engineering teams to strengthen identity security.

Sporty Group is a remote-first company focused on building scalable and secure software systems. They have a distributed team with a culture of sustainability and performance-based bonuses.

$212,000–$286,000/yr
US Unlimited PTO

  • Design and build Temporal Cloud's identity platform end-to-end.
  • Scale the auth hot path to meet Temporal Cloud's SLOs.
  • Integrate with enterprise IdPs and threat-model identity flows.

Temporal provides an open-source programming model simplifying code and enhancing application reliability. They aim to be the reliable foundation of every developer’s toolbox. They value curiosity, drive, collaboration, authenticity, and humility and are growing.

US

  • Lead the design and development of scalable IAM and eCommerce systems.
  • Architect and implement secure authentication flows (OAuth2, OIDC) and robust payment processing lifecycles.
  • Serve as the subject matter expert for diagnosing and resolving complex issues across the identity and purchase funnel.

VERSANT is a leading force in news, sports and entertainment that is home to iconic and trusted brands. As an independent, publicly traded company, VERSANT brings together cable networks and dynamic digital and direct-to-consumer brands.

LATAM

  • Responsible for unpacking existing technical guidelines.
  • Configuring directory synchronization, authentication, and access management.
  • Translating business logic into robust configurations.

In All Media is a global technology consulting company that partners with leading organizations to design, build, and scale high-impact digital products. Our teams specialize in software engineering, data platforms, and artificial intelligence solutions, collaborating with enterprise clients across the Americas.

India

  • Design, build, and maintain custom IAM applications, APIs, and automation that support identity lifecycle management and role-based access.
  • Partner with cybersecurity, infrastructure, and business stakeholders to translate IAM requirements into secure technical designs.
  • Engineer automated joiner, mover, leaver provisioning processes and ensure system integrations across enterprise platforms like Okta, Salesforce, and ServiceNow.

Shared Services provides identity and access management solutions for enterprise platforms. They operate in the information technology sector with a focus on secure integration patterns and operational reliability.

US

  • Administer and operate identity systems including Okta, Active Directory, SSO, and MFA.
  • Design secure authentication solutions and build infrastructure as code using Terraform.
  • Enhance CI/CD pipelines, monitor system health, and troubleshoot incidents for platform reliability.

Versant (Nasdaq: VSNT) is an industry-changing media and entertainment business and home to trusted brands that shape culture, inform audiences, and build lasting connections. It operates across four core markets with a powerful portfolio of iconic brands and complementary digital assets.

$90,000–$125,000/yr
US

  • Partner with engineers and security SMEs to design, improve, and implement Identity and Access Management (IAM) solutions for VA.gov products.
  • Analyze security metrics and access management trends to inform how the program approaches security architecture.
  • Develop and document requirements for IAM solutions including identity lifecycle, role management, separation of duties, and access workflows.

Oddball believes that the best products are built when companies understand and value the things they are working on. They value learning and growth and the ability to make a big impact at a small company.

$143,200–$243,400/yr
North America Canada Unlimited PTO

  • Design, develop, and maintain backend services and APIs for the IAM platform, ensuring high performance and scalability.
  • Collaborate with cross-functional teams to build features that align with business goals and meet security requirements.
  • Enhance the performance, security, and scalability of the IAM platform through code reviews, testing, and refactoring.

ServiceNow, acquiring Veza, pioneers in identity security, focuses on answering the fundamental question of who can and should take what action on what data. With the scale and resources of an enterprise platform company, they maintain the product velocity and mission-driven focus of a security innovator.

  • Embed inside 4-5 strategic enterprise customers as their dedicated technical partner for agent identity, writing production code and owning technical outcomes from prototype to production.
  • Architect and deploy Okta's agent security stack including Cross-App Access, Fine-Grained Authorization, MCP Gateway, and agent client registration into customer infrastructure.
  • Engage senior leadership, brief CISOs and CIOs, and align architecture decisions to frameworks like OWASP Top 10 for Agentic Applications and NIST AI RMF.

Okta secures access for 20,000 organizations and billions of users. We are a global community united by a drive to innovate, with an Equal Opportunity Employer culture.

US Canada

  • Help build the foundation for secure access at Owner, designing and improving authentication and authorization systems.
  • Own critical auth infrastructure end to end, contributing to systems for login, sessions, token management, and access enforcement.
  • Improve reliability and observability by instrumenting auth services with alerting, dashboards, and runbooks.

Owner is an AI-native system that local business owners use to succeed, starting with restaurants. They're building the system that replaces the many tools owners use to run their business, powering everything from websites to POS systems. Their team is in the low hundreds and scaling quickly.

$190,000–$230,000/yr
US Canada Unlimited PTO

  • Build, operationalize, and scale the security engineering practices that protect our benefits platform.
  • Partner with teams building web and mobile applications, backend services, system integrations and data platforms.
  • Set direction and mature security capabilities; introduce strong standards and ship incremental improvements.

Benepass is making benefits easy by tailoring them to the unique needs of the workforce with an easy-to-use and highly customizable fintech platform. They are backed by leading investors and have raised approximately $75 million in equity capital, fostering an inclusive environment for its employees.