Cerby

Sr. Backend Engineer - Access Management

Cerby
Apply
2 months ago
Remote, United StatesSenior

Responsibilities

  • Design and develop scalable, high-performance backend software for SaaS applications.
  • Build and maintain authentication, authorization, identity automation, SSO, and federated identity capabilities.
  • Design secure REST APIs and implement secure authentication flows, session management, and token-based authentication.
  • Architect distributed, fault-tolerant, highly available, and resilient systems.
  • Use Python, Go, or equivalent backend programming languages to deliver production software.
  • Work with cloud platforms, queues, messaging and streaming systems, distributed data stores, relational databases, and key/value databases.
  • Instrument distributed systems with telemetry, metrics, traces, and log management.
  • Own software delivery from design through development, testing, delivery, and production release.
  • Participate in code reviews and promote secure, maintainable, scalable, and high-quality coding practices.
  • Mentor junior and other engineers, share knowledge, and help define engineering and AI-assisted development best practices.
  • Collaborate with product managers, engineering managers, UX designers, and distributed remote teams.
  • Contribute to security-first development and proactively identify and mitigate vulnerabilities.

Requirements

  • 5+ years of professional software engineering experience focused on building and scaling SaaS applications.
  • 3+ years of hands-on experience with authentication and authorization systems.
  • Experience developing and maintaining distributed applications.
  • Experience mentoring junior developers and conducting security-first code reviews.
  • Deep understanding of OIDC, SAML, and SCIM protocols.
  • Strong knowledge of IAM concepts, including RBAC and ABAC.
  • Experience designing and developing secure REST APIs.
  • Understanding of web security vulnerabilities and mitigations, including CORS, XSS, and CSRF.
  • Knowledge of JWT and other token-based authentication systems, session management, and secure authentication flows.
  • Proficiency in Python, Go, or an equivalent backend programming language.
  • Experience building scalable cloud-based systems and working with distributed, fault-tolerant architectures.
  • Experience with SQS or similar queuing, messaging, and streaming platforms.
  • Experience with S3, MySQL, PostgreSQL, Redis, DynamoDB, or similar data stores.
  • Experience with telemetry and observability; OpenTelemetry and Datadog experience is a plus.
  • Experience with security compliance frameworks such as SOC 2, GDPR, or HIPAA is desirable.
  • Experience integrating with identity providers such as Okta or Entra ID is desirable.
  • Experience implementing SSO and federated identity management is desirable.
  • Familiarity with encryption processes and key management is a plus.
  • Prior cybersecurity experience and experience at a venture-funded, high-growth SaaS startup are preferred.
  • Strong analytical, problem-solving, communication, collaboration, mentoring, product-mindedness, and adaptability skills.

Benefits

  • Remote-first work environment with collaboration across time zones.
  • Opportunity to work on enterprise security, identity automation, and disconnected-application access challenges.
  • Culture encourages experimentation with AI tools, open knowledge sharing, and continuous learning.

Tech Stack

Amazon DynamoDBDatadogGoMySQLPostgreSQLPythonRedis

Categories

Cerby

About Cerby

51-200 employees

Cerby builds an identity security platform for enterprise IT and security teams to secure and automate access to disconnected or nonfederated applications. Its SaaS pairs an access-management backend with a cross-browser extension for credential injection, passkeys, and lifecycle automation where SSO or SCIM are unavailable. Founded in 2020 and headquartered in Alameda, California, the company is privately held.

Contact me