Staff CIAM Security Engineer
Core
Design and operate backend CIAM services to protect customers and support growth for B2C and B2B platforms.
Role type
Staff CIAM Security Engineer (hands-on IC)
Builds
Core identity and authentication backend services, APIs, and infrastructure
Domain
Fintech / Customer Identity and Access Management (CIAM)
Deliverable
production ML models | product features | infrastructure
Required skills
Python, Kotlin, AWS, MySQL, Spark, Kubernetes, OAuth 2.0, OIDC, SAML, SCIM, Terraform, CI/CD, API design, distributed systems, MFA, adaptive authentication
Preferred skills
Experience with Okta, Auth0, Ping Identity, ForgeRock, Azure AD B2C, Cursor, AI-augmented development environments
Technologies
Python, Kotlin, AWS, MySQL, Spark, Kubernetes, Terraform, Buildkite, GitHub
Responsibilities
Design and build core CIAM backend services for registration, login, authorization, and account lifecycle; Implement identity standards (OAuth 2.0, OIDC, SAML, SCIM) in code; Develop backend APIs for web, mobile, and partner applications; Integrate CIAM platforms with internal systems (user data, fraud signals); Own secure authentication flows (MFA, step-up, device binding, consent); Automate CIAM infrastructure using IaC and CI/CD; Monitor and optimize services for performance and abuse detection.
Seniority
Staff, hands-on IC