Publicidade

Última atualização: 30 de Julho de 2026

Principal Software Engineer - Identity & Access Management

✈️ Vaga internacional💬 Inglês🌍 100% Remoto👌 Candidatura simplificada

Via Linkedin

Sobre

Key Responsibilities

  • Own the technical vision and roadmap for Sezzle’s authentication and authorization platform, including a dedicated API auth gateway and supporting identity services.
  • Architect, design, and build scalable, highly-available auth services and gateway components primarily in Golang, leveraging AWS, RDS (MySQL/Postgres), and modern distributed patterns.
  • Design and lead phased, zero-downtime migrations of auth traffic and functionality, with clear rollback and safety mechanisms at every step.
  • Establish and evolve authentication and authorization standards across the platform: OAuth2/OIDC flows, token strategy (JWT, opaque, refresh), service-to-service auth (mTLS, workload identity), and fine-grained authorization models (RBAC/ABAC/policy engines).
  • Drive consistency and scalability across a distributed microservices architecture while maintaining the performance, reliability, and latency budgets expected of an edge gateway.
  • Partner with Security and Compliance to ensure the new platform meets fintech-grade security and regulatory requirements, and champion secure-by-default patterns across engineering.
  • Establish and evolve engineering best practices for observability, security, and CI/CD across teams, with particular rigor on the auth-critical path.
  • Participate in the on-call rotation for the services you own, and help lead incident response and postmortems on the auth-critical path.
  • Mentor engineers and champion a culture of learning, innovation, and operational excellence.
  • Collaborate cross-functionally to translate business goals into technical roadmaps and deliver results that matter.

Minimum Requirements:

  • 12+ years of professional software engineering experience, including significant backend experience.
  • Deployed significant changes to a production application in the past 30 days.
  • Deep, hands-on expertise in authentication and authorization systems: OAuth2, OpenID Connect, SAML, JWT and session-based auth, token lifecycle management, and modern authorization patterns (RBAC, ABAC, policy-as-code).
  • Experience designing, building, or operating an API gateway or auth proxy at scale: whether a commercial/open-source gateway (e.g., Kong, Envoy, AWS API Gateway, Traefik) or an in-house edge service.
  • Proven track record leading a large-scale service extraction or migration: decomposing a monolith or large legacy service into well-bounded services with zero or minimal customer impact.
  • Strong proficiency in Golang, with experience building and maintaining RESTful APIs.
  • Expertise with SQL-based RDBMS (MySQL, PostgreSQL) and experience optimizing schema and queries for performance at scale.
  • Solid understanding of distributed systems design patterns (e.g., transactional outbox, event-driven architecture, queues) and the specific challenges of high-throughput, low-latency edge services.
  • Demonstrated ability to bring new ideas forward, influence decisions, and lead complex technical initiatives across many teams.
  • Demonstrated AI-forward engineering: you actively use AI tooling (e.g., Claude Code, Codex, Cursor, or custom LLM integrations) in your development work today, have opinions grounded in practice about where it helps and where it doesn't, and help teammates adopt AI-assisted workflows.
  • Bachelor’s degree in Computer Science or a similar technical field (required).

Hey!

Cadastre-se na Remotar para ter acesso a todos os recursos da plataforma, inclusive inscrever-se em vagas exclusivas e selecionadas!