Scale AI Staff Software Engineer to design and implement identity infrastructure for secure authentication and authorization. Focus on IAM controls, compliance, and enterprise security standards.
Responsibilities
Drive the design, and implementation of our identity infrastructure to ensure secure authentication and authorization across enterprise systems.
Build software for authentication mechanisms such as Single Sign-On (SSO), Multi-Factor Authentication (MFA), and federated identity solutions (SAML, OAuth, OpenID Connect).
Build software for authorization mechanisms such as Relation-based access control (ReBAC), Attribute-based access control (ABAC), Role-based access control (RBAC).
Build software-defined identity governance policies to ensure compliance with security policies, industry regulations (e.g., NIST, SOC2, ISO 27001), and organizational standards.
Present technical information to teams and stakeholders, providing guidance and insight on identity management and best practices.
Ideally you’d have:
5+ years of full-time engineering experience, post-graduation with specialities in infrastructure and identity systems.
Infrastructure expertise – IAM controls, Infrastructure as Code (Terraform, Pulumi), microservice deployment best practices.
Hands-on experience working with OpenFGA, Authzed, Cedar, Topaz, or similar authorization frameworks at scale.
Strong understanding of Zanzibar-based ReBAC models, relationship tuples, and access control evaluation.
Strong knowledge of authentication standards such as OAuth 2.0, OIDC, SAML, and JWT, as well as industry standard IdP solutions like EntraID, Okta, etc.
Extensive experience in software development and a deep understanding of distributed systems and public cloud platforms (AWS preferred).
Qualification
Required
8+ years of full-time engineering experience, post-graduation
Specialties in back-end systems related to building large-scale data storage, streaming, and warehousing systems
Extensive experience in various database technologies, streaming/processing solutions, indexing/caching, and data query engines
Preferred
Experience securing API access and implementing access control mechanisms at the application level.
Multi-cloud infrastructure experience – AWS, Azure, GCP, and more.
Proficiency in integrating IAM solutions with applications built using frameworks such as Java, Python, Node.js, or .NET.