Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will design, build, ship, and own production systems for a cloud-native privileged access platform. You will develop Go services for just-in-time access, credential-less authentication, and Zero Trust access across multi-cloud and on-premises environments. You will build AI security capabilities including MCP gateways, agent identity and governance, and real-time protections against prompt injection and data exfiltration. You will develop highly available multi-region services on Kubernetes, integrate identity protocols, build secure proxy and gateway layers, and contribute through code reviews, design reviews, mentorship, and technical leadership.
Requirements
- 10+ years of hands-on software engineering experience
- 4+ years at a Principal or Staff level building large-scale security or identity products
- Experience as an individual contributor who writes and ships production code daily
- Deep knowledge of IAM and PAM including privileged access secrets and key management session brokering least privilege and Zero Trust architectures
- Hands-on expertise with OAuth2 OIDC and PKI
- Expert-level proficiency in Go or a strong systems-language background with willingness to work in Go
- Experience with AWS Azure or GCP Kubernetes and Cassandra or similar NoSQL data stores
- Experience with workflow engines such as Temporal is a plus
- Experience building or securing LLM-based systems is preferred
- Ability to drive cross-team technical decisions while staying involved in delivery
- BS or MS in Computer Science or equivalent practical experience
Responsibilities
- Design and ship core Go services for privileged access
- Build MCP gateways and AI agent identity and governance capabilities
- Implement real-time guardrails against prompt injection and data exfiltration
- Develop highly available multi-region Kubernetes services
- Build distributed systems with durable workflow orchestration and distributed data stores
- Integrate OAuth2 OIDC SAML SCIM and certificate-based authentication
- Build secure proxy and gateway layers for SSH RDP Kubernetes databases and web applications
- Conduct code and design reviews
- Mentor engineers through hands-on collaboration
- Drive cross-team technical decisions and maintain secure production code
Benefits
- Generous PTO and holiday schedule
- Parental leave
- Progressive healthcare options
- Retirement programs
- Education reimbursement
- Commuter offset for specific locations