Principal Platform Identity Engineer
Firmus Technologies23 hours ago
Sydney, AustraliaStaff+
Responsibilities
- Design, build, and operate workforce and service identity platforms, including SSO and identity-provider integrations.
- Operate internal certificate authority, certificate lifecycle management, secrets management, rotation, access policies, and audit controls.
- Automate identity, certificate, and secrets provisioning through delivery and infrastructure workflows.
- Own privileged access management, including just-in-time elevation, approval workflows, change-record integration, and break-glass access.
- Design dual-control key custody, delegated authority, recovery paths, and auditable custody records for production cryptographic material.
- Harden trust-plane services, provide audit and customer-due-diligence evidence, and support ISO 27001 and SOC 2 controls.
- Act as the deepest technical escalation point for identity and secrets faults and mentor engineers across the function.
Requirements
- Deep experience designing, building, and operating IAM platforms with SSO and identity-provider integration.
- Strong experience with certificate lifecycle management, internal PKI, and secrets-management platforms, including rotation, access policy, and audit.
- Practical experience with privileged access management, just-in-time elevation, break-glass procedures, HSMs, and dual-control or quorum-based key custody.
- Solid understanding of zero-trust architecture for multi-tenant platforms and experience embedding identity and secrets into automation workflows.
- Strong scripting or programming ability with technologies such as Python, Go, or Bash.
- Experience serving as a senior escalation point for identity and security-related faults in a 24/7 production environment.
- Understanding of identity and access evidence for ISO 27001 or SOC 2, including separation of duties and independent privileged-access approval.
- Preferred experience with Kubernetes-native identity, SPIFFE/SPIRE, cloud or colocation environments, GPU or HPC infrastructure, and relevant identity or security certifications.
- A bachelor’s degree in computer science, engineering, or a related discipline, or an equivalent combination of relevant experience and training, is preferred.
- Clear technical judgment and communication skills for explaining trust-model decisions to engineers and auditors.
Benefits
- Based in Australia or Singapore, with travel to Australian AI Factory sites as required.
- Shares an after-hours escalation roster for the identity domain within a 24/7 operations function.
Tech Stack
Categories
About Firmus Technologies
Firmus Technologies builds energy‑efficient AI infrastructure, developing liquid‑cooled “AI Factory” data centers and operating a large‑scale GPU cloud for model training. The company sells capacity and services to developers, enterprises, education, and government customers, with a focus on energy and cost efficiency across Asia‑Pacific. Founded in 2019 in Australia, Firmus is privately held and headquartered in St Leonards, Tasmania.