2 months ago
Remote, United StatesSenior
Responsibilities
- Design and develop scalable, high-performance backend software for SaaS applications.
- Build and maintain authentication, authorization, identity automation, SSO, and federated identity capabilities.
- Design secure REST APIs and implement secure authentication flows, session management, and token-based authentication.
- Architect distributed, fault-tolerant, highly available, and resilient systems.
- Use Python, Go, or equivalent backend programming languages to deliver production software.
- Work with cloud platforms, queues, messaging and streaming systems, distributed data stores, relational databases, and key/value databases.
- Instrument distributed systems with telemetry, metrics, traces, and log management.
- Own software delivery from design through development, testing, delivery, and production release.
- Participate in code reviews and promote secure, maintainable, scalable, and high-quality coding practices.
- Mentor junior and other engineers, share knowledge, and help define engineering and AI-assisted development best practices.
- Collaborate with product managers, engineering managers, UX designers, and distributed remote teams.
- Contribute to security-first development and proactively identify and mitigate vulnerabilities.
Requirements
- 5+ years of professional software engineering experience focused on building and scaling SaaS applications.
- 3+ years of hands-on experience with authentication and authorization systems.
- Experience developing and maintaining distributed applications.
- Experience mentoring junior developers and conducting security-first code reviews.
- Deep understanding of OIDC, SAML, and SCIM protocols.
- Strong knowledge of IAM concepts, including RBAC and ABAC.
- Experience designing and developing secure REST APIs.
- Understanding of web security vulnerabilities and mitigations, including CORS, XSS, and CSRF.
- Knowledge of JWT and other token-based authentication systems, session management, and secure authentication flows.
- Proficiency in Python, Go, or an equivalent backend programming language.
- Experience building scalable cloud-based systems and working with distributed, fault-tolerant architectures.
- Experience with SQS or similar queuing, messaging, and streaming platforms.
- Experience with S3, MySQL, PostgreSQL, Redis, DynamoDB, or similar data stores.
- Experience with telemetry and observability; OpenTelemetry and Datadog experience is a plus.
- Experience with security compliance frameworks such as SOC 2, GDPR, or HIPAA is desirable.
- Experience integrating with identity providers such as Okta or Entra ID is desirable.
- Experience implementing SSO and federated identity management is desirable.
- Familiarity with encryption processes and key management is a plus.
- Prior cybersecurity experience and experience at a venture-funded, high-growth SaaS startup are preferred.
- Strong analytical, problem-solving, communication, collaboration, mentoring, product-mindedness, and adaptability skills.
Benefits
- Remote-first work environment with collaboration across time zones.
- Opportunity to work on enterprise security, identity automation, and disconnected-application access challenges.
- Culture encourages experimentation with AI tools, open knowledge sharing, and continuous learning.
Tech Stack
Categories
About Cerby
Cerby builds an identity security platform for enterprise IT and security teams to secure and automate access to disconnected or nonfederated applications. Its SaaS pairs an access-management backend with a cross-browser extension for credential injection, passkeys, and lifecycle automation where SSO or SCIM are unavailable. Founded in 2020 and headquartered in Alameda, California, the company is privately held.
