Staff Security Engineer
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Security Engineer based in United States.
This is a senior-level security engineering role focused on designing and scaling identity and access management systems that protect large-scale, mission-critical production environments.
The position plays a central role in defining how workforce identity, privileged access, and authentication systems are built, governed, and operated across complex infrastructure.
You will set architectural direction for identity lifecycle management, access controls, federation, and secure administrative systems.
The role blends hands-on engineering with deep architectural ownership, driving long-term improvements in security posture and operational maturity.
It requires strong collaboration with cross-functional engineering teams to embed least-privilege and just-in-time access principles at scale.
You will also lead technical reviews, mentor senior engineers, and influence how secure access systems evolve across the organization.
This is a high-impact role for engineers who enjoy solving deep infrastructure security challenges in distributed environments.
Accountabilities:
- Define and lead the technical architecture for enterprise identity and access management systems, including identity lifecycle, entitlements, privileged access, and federation models.
- Design and evolve secure authentication and authorization systems using protocols such as OAuth, OpenID Connect, and SAML.
- Drive large-scale identity platform transformations, including migrations, system consolidations, and phased cutover strategies with strong focus on reliability and reversibility.
- Architect and enforce least-privilege and just-in-time access models across production systems and developer infrastructure.
- Own operational excellence for IAM services, including reliability, observability, on-call support, incident response, and postmortem leadership.
- Improve system resilience through better testing, deployment safety, rollback strategies, and automated validation frameworks.
- Collaborate with infrastructure and security teams to integrate identity services with cloud platforms such as AWS, Azure, or GCP.
- Lead technical design reviews, set engineering standards, and ensure consistency across identity-related services.
- Mentor senior engineers and influence engineering practices across security and infrastructure domains.
- Contribute to building scalable APIs and systems designed for programmatic and agent-driven access workflows.
- 7+ years of experience in software engineering or security engineering, building and operating production-grade distributed systems.
- Strong programming background in at least one modern language such as Go, Java, Python, C++, or Rust.
- Deep expertise in identity and access management systems, including directory services and enterprise identity platforms such as Okta and Microsoft Entra ID.
- Proven experience designing and operating authentication and authorization systems at scale in cloud environments.
- Hands-on experience leading or contributing to large-scale identity migrations or IAM platform consolidations.
- Strong understanding of security architecture principles, including least privilege, access control models, and secure system design.
- Experience working with major cloud providers such as AWS, Azure, or GCP.
- Ability to design robust, scalable systems with high availability and strong operational discipline.
- Proven leadership experience mentoring engineers and driving cross-team technical alignment.
- Strong communication skills with the ability to influence architectural decisions across multiple engineering groups.
- Competitive compensation package with base salary ranging from $140,400 to $372,300 depending on experience and location.
- Eligibility for annual bonuses, stock awards, and performance-based incentives.
- Comprehensive healthcare coverage including medical, dental, vision, and wellness programs.
- Remote-first work environment across the United States.
- Generous learning and professional development opportunities.
- Equity participation and long-term financial growth opportunities.
- Inclusive, diverse, and collaborative engineering culture.
- Strong focus on work-life balance, flexibility, and autonomy.