11 days ago
Responsibilities
- Audit existing authentication and authorization infrastructure and produce an industry-standard gap analysis.
- Design and execute a six-month roadmap to improve infrastructure to industry standards.
- Drive SOC2 compliance work, including controls, evidence, remediation, and enforceable platform controls.
- Build scalable systems and tooling for onboarding new data sources.
- Design and implement authorization architecture that securely enables company AI tooling.
- Support software engineers and internal vibe-coders in shipping code safely and quickly.
- Partner with engineering leadership on architecture decisions supporting enterprise-market expansion.
Requirements
- 7+ years of infrastructure or security engineering experience.
- Production ownership of authentication and authorization systems.
- Proficiency in Python and broad software engineering judgment.
- Experience leading or heavily contributing to a SOC2 or equivalent compliance effort.
- Experience auditing legacy systems and determining what to fix, replace, or retain.
- Experience designing scalable data infrastructure for onboarding new data sources.
- Ability to assess and secure misbehaving AI agents and AI tooling.
- Ability to prioritize high-leverage platform investments and build durable, well-documented systems.
- Preferred: experience building a comprehensive authentication and authorization system.
- Preferred: strong opinions about RBAC implementation and its limitations.
Benefits
- In-person role in New York City.
- Direct visibility into top-line business goals and enterprise-market expansion.
