Platform Engineer - Identity Infrastructure
Core
Design, build, and secure identity infrastructure platforms enabling SSO, token issuance, and governance for human and non-human identities across AWS, Azure, and GCP. (via careerplan.io/jobs/cf08f44c-bf75-45ed-9fab-f4836e51013e-platform-engineer-identity-infrastructure-at-palantir)
Role type
Senior Platform Engineer (Identity Infrastructure)
Builds
Geo-redundant containerized services, SSO integrations, access graphs, policy engines, and token-issuance flows.
Domain
Cloud Infrastructure (AWS/Azure/GCP) + Identity & Access Management
Required skills
Identity protocols (SAML, OIDC, OAuth 2.0, LDAP, Kerberos, FIDO2, WebAuthn), Container orchestration (EKS, ECS), Infrastructure-as-code (Terraform, Helm), Policy engines and authorization-as-code, Token issuance and federation, Non-human identity management (workload attestation, mTLS), Go/Python/TypeScript expertise
Preferred skills
Agentic identity flows, Device-bound session credentials, Continuous access evaluation
Technologies
AWS, Azure, GCP, Entra ID, Keycloak, AWS Cognito, Okta, Terraform, Helm, CloudFormation
Responsibilities
Develop automation and tooling for identity platforms, Build and secure geo-redundant containerized services, Scale SSO integrations across multiple tenants, Build tooling to standardize operational workflows, Extend identity platform to non-human identities, Build governance layer (access graph and policy engine), Design token-issuance and federation flows, Research emerging authentication standards, Pressure-test designs and threat model implementations, Partner with Security Compliance Engineers to reduce compliance complexity
Seniority
Senior, hands-on IC
