Skip to content
CoinbaseCoinbase

Senior Staff Software Engineer, Platform - IAM

Leads the multi-year technical strategy and architecture for Coinbase’s identity and access management platform across hundreds of systems and engineering teams. Requires 12+ years of software engineering experience, deep IAM and workload identity expertise, production Go, and distributed-systems experience on AWS.

About the job

Responsibilities

  • Own the multi-year IAM technical strategy, unifying workforce, AI agent, service, and workload identity through shared authentication, authorization, provisioning, and governance primitives.
  • Drive architecture decisions across multiple pods and teams, establishing standards, review criteria, and integration contracts.
  • Develop adoption strategies for 700+ systems, including sequencing, migration paths, and build-versus-buy decisions.
  • Partner with Security, Compliance, IT, Infrastructure, and product engineering leadership to automate controls and evidence for UAR, SOX, and SOC 2 requirements.
  • Lead data models and tooling that show who has access to what and why, reduce standing privilege, and improve secure access workflows.
  • Mentor staff and senior engineers and strengthen organizational IAM expertise.

Requirements

  • 12+ years of software engineering experience, including senior technical leadership of multi-team platforms adopted across dozens of consuming teams.
  • Deep IAM expertise spanning multiple domains, such as workforce identity, authorization, access lifecycle, or non-human identity.
  • Substantive experience with service or workload identity, including service-to-service authentication, workload identity federation, or machine credential management at scale.
  • Production Go experience and distributed-systems design on AWS.
  • Fluency with OAuth 2.0, OIDC, SAML, SCIM, and workload identity patterns.
  • Demonstrated ability to influence teams and organizations without direct authority and secure leadership alignment on ambiguous, organization-wide access-risk problems.
  • Ability to translate audit and regulatory requirements into automated technical controls and communicate complex identity topics to executive audiences.
  • Responsible use of generative AI with human oversight to improve workflow efficiency, cost, and quality.

Compensation

  • Annual base salary: $253,895–$298,700 USD.
  • Additional compensation may include equity, bonus eligibility, and benefits such as medical, dental, vision, and 401(k).

Skills

Go, AWS, Distributed Systems, IAM, Oauth 2.0, OIDC, SAML, SCIM, Workload Identity, Access Management, Generative AI, Machine Credentials

Anthropic

Anthropic

San Francisco, CA
Customer Trust Specialist
$255k+/yrHybrid10+ YOESecurity Engineering

Handles complex customer-facing security engagements for regulated enterprises, including audits, questionnaires, contract terms, executive briefings, and trust documentation. Requires broad security expertise, strong writing, independent judgment, and 10+ years of security experience, including leadership experience preferred.

Gusto

Gusto

San Francisco, CA

Senior Staff IT Controls, Enterprise Applications
$245k+/yrHybrid10+ YOESecurity Engineering

Own and scale IT general controls, access governance, segregation of duties, and audit readiness across enterprise applications. The role combines SOX expertise with AI-enabled continuous controls monitoring and requires 10+ years of controls, audit, or enterprise governance experience.

Harvey

Harvey

San Francisco, CA

Staff Security Software Engineer, IAM
$231k+/yrHybrid10+ YOESecurity Engineering

Staff Security Software Engineer leading identity and access strategy, architecture, and hands-on platform development across customer, employee, contractor, and agentic identities. Requires 10+ years of production software experience and deep expertise in identity and authorization systems.

Reddit

Reddit

United States

Staff Software Engineer - Site Defense
$217k+/yrRemote7+ YOESecurity Engineering

Design and operate distributed, low-latency infrastructure that protects Reddit from DDoS attacks, bots, scraping, and other network threats. The role requires 7+ years of distributed-systems experience plus expertise in security, networking, and production operations.

Upside

Upside

Washington, DC
Staff Application Security Engineer
$210k+/yrRemote6+ YOESecurity Engineering

Staff-level AppSec engineer building secure coding practices and vulnerability management for a commerce platform. Requires 6+ years in application security with deep AWS and Python experience.