Platform Engineer - Identity Infrastructure
Core
Design, build, and operate secure-by-design identity infrastructure and tooling for agents, workloads, and humans to enable secure access governance and management at scale.
Role type
Senior IC Platform Engineer (Identity Infrastructure)
Builds
Next-generation identity platform components including access graphs, policy engines, and token-issuance layers for corporate and customer-facing infrastructure.
Domain
Cybersecurity / Identity & Access Management (IAM) / Cloud Infrastructure
Deliverable
production ML models | product features | infrastructure
Required skills
Identity protocols (SAML, OIDC, OAuth 2.0, LDAP, Kerberos, FIDO2, WebAuthn), container orchestration (EKS, ECS), infrastructure-as-code (Terraform, Helm), policy engines and authorization-as-code, token issuance and federation, non-human identity management (mTLS, workload attestation), threat modeling, compliance service design.
Preferred skills
Go, Python, TypeScript, agentic identity flows, device-bound session credentials, continuous access evaluation.
Technologies
AWS, Azure, Google Cloud Platform, Entra ID, Keycloak, AWS Cognito, Okta, EKS, ECS, Terraform, Helm, CloudFormation.
Responsibilities
Develop automation and tooling for corporate and customer-facing identity platforms; Build, secure, and manage geo-redundant containerized services in AWS and Azure; Scale SSO integrations across multiple Entra ID tenants; Build tooling to standardize operational workflows across AWS, Azure, and GCP; Extend the identity platform to non-human identities (workloads and AI agents); Build the governance layer (access graph and policy engine); Design token-issuance and federation flows for least-privilege access; Research and drive adoption of emerging authentication standards; Pressure-test designs and partner with Security Engineers to threat model implementations; Partner with Security Compliance Engineers to build services that reduce compliance complexity.
Seniority
Senior, hands-on IC