Skip to content

Staff Software Engineer I - Internal Access Management

Leads architecture and execution of Internal Access Management, enforcing least privilege, zero-trust, and secure authorization across Kubernetes and multi-cloud environments. Requires 10+ years experience with deep expertise in IAM, cloud security, and distributed systems.

225k – 265kUnited StatesSecurity EngineeringRemote10+ YOE

About the role

What You Will Do

  • Define and drive the long-term architecture and roadmap for Internal Access Management across Kubernetes and multi-cloud environments.
  • Architect and implement least privilege, just-in-time access, and zero-trust models across Confluent services.
  • Build and evolve scalable access-authorization workflows and lifecycle management systems using technologies such as OPA, cloud IAM policies, workload identity, and internal enforcement engines.
  • Strengthen security boundaries through threat modeling, defense-in-depth practices, and comprehensive access-auditing capabilities.
  • Partner with cross-functional teams—including Platform, Kafka, Observability, Developer Productivity, Release Engineering, and SRE—to drive adoption of secure identity and access patterns.
  • Mentor senior engineers, elevate engineering standards, and influence architectural decisions across the organization.
  • Communicate complex technical decisions clearly and align stakeholders across engineering and security.

What You Will Bring

  • 10+ years of engineering experience, with 4+ years in security, IAM, or distributed systems.
  • Deep expertise in Kubernetes, workload identity, cloud IAM (AWS, GCP, Azure), and zero-trust architectures.
  • Strong understanding of authentication technologies: IAM, OAuth2, OIDC, policy engines, and modern zero-trust principles.
  • Proven track record leading multi-team technical initiatives at a Staff or Senior Staff level.
  • Strong knowledge of distributed systems, cloud infrastructure, container orchestration, and service mesh.
  • Excellent communication and stakeholder-influence skills across engineering and security domains.

What Gives You an Edge

  • Experience leading cross-org security platform architecture initiatives.
  • Background in building developer-focused authentication and authorization platforms.

Skills

KubernetesOpaIAMOauth2OIDCAWSGCPAzureZero-TrustWorkload Identity

Staff Cloud Security Engineer

As a Staff Cloud Security Engineer, you will collaborate with product and engineering teams to integrate security principles into the design and architecture of cloud infrastructure. You will secure core platform components, conduct threat modeling, and manage cloud security posture.

225k – 275kUnited StatesSecurity EngineeringRemote5+ YOEGoAWS

Staff Application Security Engineer

Lead application security initiatives as a technical leader on a new security team. Drive threat modeling, secure SDLC, code reviews, vulnerability management, and AI security for a healthcare AI platform.

228k – 290kSan Francisco, CASecurity EngineeringHybrid10+ YOEGCPIAM

Senior Staff Software Engineer - Security Infrastructure

Leads security infrastructure engineering at Databricks, plugging gaps in services, building large-scale distributed systems, and defining data security strategy. Requires 9+ years in security, 15+ in distributed systems, MS/PhD, and expertise in areas like Kubernetes security and cryptography.

228k – 304kMountain View, CASecurity EngineeringOn-site9+ YOEPrivacyKubernetes

Staff Software Engineer - Security Infrastructure

Leads security infrastructure engineering at Databricks, enhancing platform security, building scalable systems, and driving strategy. Requires 7+ years in data security, 10+ years in distributed systems, and MS/PhD.

221k – 241kBellevue, WASecurity EngineeringOn-site7+ YOEGovernanceCryptography

Senior Staff Software Engineer - IAM

Leads IAM and security engineering to secure Databricks' data platform, plugging infrastructure gaps and building scalable systems. Requires 9+ years in data security, 15+ years in distributed systems, and MS/PhD.

220k – 297kSeattle, WASecurity EngineeringOn-site9+ YOEKubernetesGovernance