1 day ago
Responsibilities
- Manage identity and access infrastructure as code in Terraform with peer-reviewed change control, drift detection, and policy-as-code.
- Advance zero trust engineering access controls, including short-lived credentials, just-in-time elevation, and elimination of standing privilege.
- Own joiner/mover/leaver processes and access lifecycles for human identities, service accounts, and agents.
- Operate access review and certification workflows that generate audit evidence.
- Build tools to identify over-permissioned identities, unused credentials, and policy drift, and drive remediation.
- Build automated access-request, approval, risk-scoring, and access-review workflows on a low-code orchestration platform.
- Partner with security, infrastructure, and product engineering teams and consult on IAM design for new services.
Requirements
- Bachelor of Science in Computer Science or equivalent practical experience.
- At least 3 years of hands-on identity and access management experience in a cloud-native engineering environment.
- Deep AWS IAM expertise, including policy evaluation logic, permission boundaries, assume-role patterns, SCPs, and Terraform expression of IAM policies.
- Fluency with SAML, OIDC, OAuth 2.0, SCIM, RBAC, ABAC, and policy-based access models.
- Working knowledge of Okta administration and APIs, including SSO, provisioning, group rules, and authentication policies.
- Ability to automate IAM work with scripting or low-code/no-code orchestration platforms, including LLM- or agent-driven steps.
- Excellent written and verbal communication skills for explaining access decisions to engineers, auditors, and executives.
Benefits
- Healthcare programs with employee premiums fully covered under at least one plan and family premiums covered at 80% under all plans.
- Nationwide medical, vision, and dental coverage, plus HSA employer contributions and FSA options.
- Expanded mental health support, paid parental leave, and fertility benefits.
- Paid holidays, firmwide extended holidays, flexible PTO, and personal sick time.
- Professional development stipend, wellness and fitness benefits, healthy lunches provided daily, and commuter benefits.
About Verkada
Verkada builds a cloud-managed physical security platform for enterprises, combining security cameras, access control, sensors, alarms, intercoms, and visitor management with web and mobile software. It sells hardware plus software licenses through a subscription model to organizations like schools, retailers, and industrial sites. Founded in 2016 and headquartered in San Mateo, California, Verkada reports 30,000+ customers worldwide and is privately held.
