Senior Software Engineer, Authorization (Remote)
Remote, US | $180K-$230K base + equity About the Company Our client is a well-funded, stealth-stage enterprise identity startup founded by a proven team that has already built and exited a successful enterprise software company to a major technology company. The company is building a next-generation identity platform for modern businesses, with a focus on secure-by-design architecture, excellent user experience, and deep technical craft. The team is small, highly experienced, and fully remote across the US and Canada. About the Role This is a rare opportunity to design and build a greenfield authorization layer from the ground up. You will own the core authorization domain across the platform, including access-control models, schemas, policy enforcement, and authorization services. The current engineering team is made up of strong generalists, so this hire will be the dedicated authorization expert who helps set the technical direction and levels up the rest of the team. What You'll DoDesign and implement the authorization layer for a new enterprise identity platformBuild models, schemas, and policy enforcement systems for fine-grained access controlDevelop authorization services and proxies that evaluate permissions across service boundariesBuild customer-facing policy management APIsWork with authentication and identity protocols such as OAuth 2.0, SAML, OIDC, and WebAuthnWrite production Go and contribute across the backend platformPartner closely with product, design, and engineering leadership on architecture decisions What We're Looking For4+ years of experience in authorization, IAM, backend security, or infrastructure softwareProduction experience building or operating authorization systemsProduction proficiency in GoDeep understanding of RBAC, ABAC, or ReBAC modelsExperience with OAuth 2.0, SAML, OIDC, or WebAuthnStrong backend engineering fundamentalsPostgreSQL / SQL schema design experienceLow-ego, collaborative approach in a small-team environment Nice to HaveExperience at an identity, authentication, authorization, cloud, or infrastructure companyExperience with Kubernetes, PKI, compliance frameworks, or cloud infrastructureEarly-stage or greenfield product development experienceExperience building enterprise SaaS or security products