Principal Engineer, Product Security & Identity
Core
Lead architectural evolution of Product Security and Customer Identity & Access Management (CIAM) capabilities for a global SaaS platform.
Role type
Principal Engineer, Product Security & Identity
Builds
Secure multi-tenant isolation, modern identity migrations, and secure API-to-API communications
Domain
Enterprise SaaS, Cloud Security, Identity & Access Management (IAM/CIAM)
Deliverable
production ML models | product features | infrastructure
Required skills
Enterprise-scale IAM/CIAM architecture, OAuth2/OIDC/SAML/SCIM protocols, Policy-as-Code (OPA/Rego), Java/Kotlin backend development, Distributed systems reliability, API security patterns, Identity migration execution
Preferred skills
Experience with Auth0/Keycloak/Ping Identity/Ory, FedRAMP compliance, Threat modeling
Technologies
Java, Kotlin, Open Policy Agent (OPA), Rego, JWT, OAuth2, OIDC, SAML, SCIM, LDAP, Active Directory, AWS Cedar
Responsibilities
Define long-term technical roadmap for platform-wide security patterns; Design and implement next-generation CIAM solutions and secure backend services; Architect declarative authorization systems using policy-as-code engines; Influence company-wide engineering standards for secure-by-default development; Guide and mentor engineering teams on secure coding practices
Seniority
Principal, strategy & mentorship