Principal Platform Engineer || Agentic AI || Identity and Access Management
Core
Architect, engineer, and operate enterprise-scale Identity and Access Management (IAM) solutions, specifically unifying authorization across Nexus, F1, and LEC hosting environments while implementing authentication infrastructure.
Role type
Principal Platform Engineer (Identity & Access Management)
Builds
Unified authorization platform, AuthN solutions, IAM patterns, and SDKs for the IFS platform (Kairos/Nexus).
Domain
Enterprise Software, Cloud-Native Infrastructure, Identity & Access Management (IAM).
Deliverable
production ML models | product features | infrastructure
Required skills
Fine-grained authorization (ReBAC, RBAC, ABAC), SpiceDB (or Zanzibar-inspired), OAuth 2.0, OpenID Connect, SAML, Curity, Keycloak, Go, Kubernetes, PostgreSQL, Event-driven architecture.
Preferred skills
Policy-as-code (OPA/Rego, Cedar), Cloud-native Postgres (CNPG), GitOps, Infrastructure as Code.
Technologies
SpiceDB, PostgreSQL, Curity, Keycloak, Go, Apache Kafka, RedPanda, Kubernetes, OPA, Rego, Cedar.
Responsibilities
Architect and engineer unified authorization models; Design and implement fine-grained authorization schemas; Own operation of the authorization engine (SpiceDB); Build authorization APIs and SDKs; Architect and engineer enterprise-scale AuthN solutions; Integrate identity services with the Internal Developer Platform.
Seniority
Principal, hands-on IC with significant architectural scope.