Staff Product Security Engineer

Posted Aug 13

This is a fully remote position, open to applicants in California, +4 more states.

📋 Description

• Design, develop, and manage CIAM backend services for customer registration, authentication, authorization, account lifecycle, and profile management.

• Implement identity standards including OAuth 2.0, OIDC, SAML, and SCIM.

• Create backend APIs and services in Python and Kotlin for web, mobile, and partner applications.

• Integrate CIAM platforms with user data repositories, messaging systems, fraud detection signals, and downstream customer platforms.

• Take ownership of secure authentication and account processes, encompassing MFA, step-up authentication, device binding, consent, and adaptive authentication.

• Automate CIAM infrastructure and deployments utilizing Infrastructure as Code and CI/CD pipelines.

• Monitor, troubleshoot, and enhance CIAM services for optimal performance, resilience, and abuse detection.

• Collaborate with teams across product, frontend, mobile, security, and partner engineering.


⛳️ Requirements

• Over 7 years of experience in designing, developing, and launching scalable backend systems using Python or Kotlin.

• At least 5 years of professional experience in backend software engineering.

• Strong background in the implementation of CIAM systems.

• In-depth practical knowledge of OAuth 2.0, OIDC, SAML, and SCIM.

• Production experience with Python or a comparable backend programming language.

• Experience in designing APIs, automation frameworks, and distributed architectures.

• Hands-on experience in building and maintaining CI/CD pipelines.

• Familiarity with GitHub workflows and Buildkite or similar build systems.

• Experience in cloud-native development, ideally with AWS.

• Proficient in extending and integrating CIAM platforms like Okta, Auth0, Ping Identity, ForgeRock, or Azure AD B2C using custom code, hooks, and APIs.

• Understanding of API design, data modeling, latency, error management, and observability.

• Experience with Infrastructure as Code and automation tools, such as Terraform.

• Fundamental knowledge of security engineering principles including access control, token management, encryption, MFA, and privacy by design.

• Ability to collaborate effectively with product, frontend, mobile, and security teams.

• Familiarity with Cursor and AI-augmented development environments.


🏝️ Benefits

• 100% subsidized medical coverage for employees and their dependents.

• Dental and vision coverage for employees and their dependents.

• Monthly stipends for health, wellness, and technology-related expenses.

• Flexible Spending Wallets with stipends for Technology, Food, Lifestyle needs, and family formation costs.

• Competitive vacation and holiday policies.

• Employee stock purchase plan (ESPP) allowing for discounted Affirm shares.

• Reasonable accommodations provided during the hiring process.

People also viewed

Campbell's18 hours ago

Workday Platform Owner – Integration, Reporting, Security

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$127.9k – $175.9k/year
ApplyView job
VALCE Talent Solutions18 hours ago

SAP Basis, Security Experience

MX flagMexico OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
The Hello Team19 hours ago

Senior Cybersecurity & Compliance Consultant, HIPAA, NIST, SOC 2

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Anduril Industries20 hours ago

Senior Security Engineer

US flagCalifornia, +1 more stateFull-timeCybersecurity / Security Engineer$1/year
ApplyView job
Anduril Industries20 hours ago

Senior Security Engineer – OT

US flagCalifornia, +1 more stateFull-timeCybersecurity / Security Engineer$1/year
ApplyView job
Optiv22 hours ago

Senior Cybersecurity Advisor – AI

US flagKansas OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers