Senior Software Engineer, Cloud Identity

3 weeks ago
Full-time
Senior
Software Development
Temporal

Temporal

Temporal provides an open source durable execution platform that enables developers to create resilient applications capable of maintaining successful operations despite failures, network issues, and other disruptions.

Internet Software & Services
51-250
Founded 2019
$128M raised

Description

  • Build and improve authentication, authorization, and workload identity systems for Temporal Cloud.
  • Help keep the authentication path fast and reliable to meet service-level objectives.
  • Integrate with enterprise identity providers and support SCIM-based user provisioning.
  • Address identity security risks such as token replay and privilege escalation.
  • Partner with Security, Product, and platform teams to deliver secure-by-default patterns.
  • Contribute to IAM lifecycle management and audit practices.
  • Write clear architecture and design documentation.
  • Help shape the technical direction of the identity team.

Requirements

  • Solid hands-on experience building and operating production identity or authentication systems.
  • Experience with OAuth 2.0/OIDC, SAML, JWT, and token/key rotation.
  • Good understanding of authorization models such as RBAC and ABAC.
  • Familiarity with policy engines such as OPA, Cedar, or OpenFGA is a plus.
  • Experience operating distributed systems in production, including some on-call responsibility.
  • Proficiency in Go.
  • Experience with Python, Java, or Rust is a plus.
  • Strong communication skills and ability to collaborate across security, product, and engineering teams.
  • Exposure to workload identity or short-lived/federated credentials such as SPIFFE/SPIRE, mTLS, or WIF is a plus.
  • Experience with SCIM provisioning and enterprise SSO integrations is a plus.
  • Contributions to identity open source projects such as Keycloak, Ory, Dex, OpenFGA, or SPIRE are a plus.
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, or HIPAA as they apply to IAM is a plus.
  • Familiarity with Temporal or other durable-execution engines, especially auth implications around workers and task queues, is a plus.
  • Experience designing customer-facing API authentication such as scoped tokens, API keys, and rotation is a plus.

Benefits

  • Base salary range of $212,000 to $237,000, depending on qualifications and location.
  • Eligible for stock options through Temporal's equity plan.
  • Unlimited PTO plus 12 holidays and 2 floating holidays for U.S. employees.
  • 100% premium coverage for medical, dental, and vision insurance for U.S. employees.
  • AD&D, short-term disability, long-term disability, and life insurance options.
  • 401(k) plan for U.S. employees.
  • Learning and development, lifestyle spending, in-home office setup, professional memberships, WFH meals, and internet stipend perks.
  • International PTO and benefits vary by country, with additional perks including the Calm app for mental wellness.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Intern, Forward Deployed Engineering

Workato 251-1K IT Services

Workato is hiring a Forward Deployed Engineering intern to support AI-driven automation initiatives by helping build intelligent agents and enterprise workflow integrations on its Agentic AI platform.

JavaScript JSON LLM Python REST API Salesforce
11 hours, 34 minutes ago

Software Engineer 3

Black Duck Inn 1K-5K Internet Software & Services

Black Duck Software is seeking a License Developer to evolve legacy licensing systems and build reliable, production-ready services for secure 24/7 customer use.

CI/CD DevSecOps Java Kubernetes Linux REST API Ruby on Rails
11 hours, 34 minutes ago

Statistical Programmer Sr

eClinical Solutions 251-1K Professional Services

Experienced Statistical Programmer role at a clinical research organization focused on delivering compliant statistical programming outputs for multiple clinical studies and regulatory submissions.

Git GitHub GitLab R SAP Shell Scripting
11 hours, 34 minutes ago

Data Conversion Software Engineer

Career TEAM 251-1K Professional Services

Career Team is hiring a Data Conversion Software Engineer to build data transformation and integration software for government-funded workforce development programs across the United States.

Agile Angular CI/CD Docker Express.js JavaScript JSON MongoDB NestJS Next.js Node.js React Scrum TypeScript XML
11 hours, 48 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers