Principal Platform Engineer || Identity Platform (AuthN/AuthZ)
Core
Architecting and building a consolidated, multi-tenant identity platform (AuthN/AuthZ) for cloud-native, legacy, and lifecycle cloud environments.
Role type
Principal Platform Engineer (Identity)
Builds
A unified authorization engine (SpiceDB/PostgreSQL) and enterprise authentication infrastructure (Curity/Keycloak) for the company's next-generation platform.
Domain
Enterprise Software, Cloud Infrastructure, Identity & Access Management
Deliverable
production ML models | product features | infrastructure
Required skills
Fine-grained authorization systems (ReBAC/RBAC/ABAC), SpiceDB/OpenFGA/Ory Keto, Curity, Keycloak, Go, PostgreSQL, Kubernetes (AKS), Kafka/RedPanda, Policy-as-code (OPA/Cedar), OAuth 2.0, OIDC, SAML 2.0
Preferred skills
Event-driven architecture, GitOps, IaC, JVM tuning, distributed systems debugging
Technologies
SpiceDB, PostgreSQL, Curity, Keycloak, Go, Kafka, RedPanda, Kubernetes, Helm, OPA, Rego, Cedar
Responsibilities
Architect and build the authorization engine and authentication infrastructure; operate identity providers under load; write production code in Go; design authorization schemas and permission models; manage Kubernetes clusters and cloud-native environments.
Seniority
Principal, hands-on IC