
Staff Product Security Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in California, +4 more states.
• Design, develop, and manage CIAM backend services for customer registration, authentication, authorization, account lifecycle, and profile management.
• Implement identity standards including OAuth 2.0, OIDC, SAML, and SCIM.
• Create backend APIs and services in Python and Kotlin for web, mobile, and partner applications.
• Integrate CIAM platforms with user data repositories, messaging systems, fraud detection signals, and downstream customer platforms.
• Take ownership of secure authentication and account processes, encompassing MFA, step-up authentication, device binding, consent, and adaptive authentication.
• Automate CIAM infrastructure and deployments utilizing Infrastructure as Code and CI/CD pipelines.
• Monitor, troubleshoot, and enhance CIAM services for optimal performance, resilience, and abuse detection.
• Collaborate with teams across product, frontend, mobile, security, and partner engineering.
• Over 7 years of experience in designing, developing, and launching scalable backend systems using Python or Kotlin.
• At least 5 years of professional experience in backend software engineering.
• Strong background in the implementation of CIAM systems.
• In-depth practical knowledge of OAuth 2.0, OIDC, SAML, and SCIM.
• Production experience with Python or a comparable backend programming language.
• Experience in designing APIs, automation frameworks, and distributed architectures.
• Hands-on experience in building and maintaining CI/CD pipelines.
• Familiarity with GitHub workflows and Buildkite or similar build systems.
• Experience in cloud-native development, ideally with AWS.
• Proficient in extending and integrating CIAM platforms like Okta, Auth0, Ping Identity, ForgeRock, or Azure AD B2C using custom code, hooks, and APIs.
• Understanding of API design, data modeling, latency, error management, and observability.
• Experience with Infrastructure as Code and automation tools, such as Terraform.
• Fundamental knowledge of security engineering principles including access control, token management, encryption, MFA, and privacy by design.
• Ability to collaborate effectively with product, frontend, mobile, and security teams.
• Familiarity with Cursor and AI-augmented development environments.
• 100% subsidized medical coverage for employees and their dependents.
• Dental and vision coverage for employees and their dependents.
• Monthly stipends for health, wellness, and technology-related expenses.
• Flexible Spending Wallets with stipends for Technology, Food, Lifestyle needs, and family formation costs.
• Competitive vacation and holiday policies.
• Employee stock purchase plan (ESPP) allowing for discounted Affirm shares.
• Reasonable accommodations provided during the hiring process.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.