Senior Software Engineer (SMTS), Identity & Access Management - Device Trust
$148,500–$223,900 year
On-siteBellevue, Washington, United States
Job Summary
Design and build scalable authentication and authorization services for distributed environments, developing system software across Linux, macOS, and Windows using Golang or Python. Integrate secure device attestation mechanisms including TPM-based hardware trust, and manage containerized workloads with Kubernetes and Docker. Operate large-scale security services in a full DevOps model, monitoring, troubleshooting, and continuously improving platform integrity. Partner with cross-functional teams to deliver iteratively on the unified, policy-driven containment infrastructure underpinning Salesforce's Zero Trust architecture.
Required Qualifications
- 7+ years of industry experience
- at least 5+ years building distributed systems in Software as a Service (SaaS), Platform as a Service (PaaS), or Infrastructure as a Service (IaaS) environments
- 5+ years operating in high-availability, mission-critical environments (99.999% uptime)
- strong experience designing and operating distributed systems on public cloud platforms (Amazon Web Services (AWS), Google Cloud Platform (GCP), or Microsoft Azure)
- proficiency in Golang and/or Python
- expertise in security protocols and identity frameworks: Transport Layer Security (TLS), OAuth, Security Assertion Markup Language (SAML), PKI, and certificates
- familiarity with system patterns and Application Programming Interface (API) standards including REST and OpenAPI/Swagger
- solid understanding of DevOps practices, continuous integration and delivery (CI/CD), monitoring, and full ownership of production systems
- experience building software for Linux and/or Windows environments
- experience with CI/CD tools such as Jenkins, AWS CodePipeline, or AWS CodeBuild
- a working understanding of large-scale infrastructure-as-a-service platforms (e.g., Amazon AWS, Microsoft Azure, OpenStack)
- familiarity with source code management and version control systems (e.g., git, Perforce)
- hands-on experience with container technologies such as Docker and Kubernetes
- strong communication skills and a collaborative mindset that prioritizes team success
- A related technical degree
Desired Qualifications
- prior experience developing system-level features related to platform security or device attestation
- experience working with hardware-backed security mechanisms such as TPM, Hardware Security Module (HSM), or Secure Boot
- familiarity with security compliance frameworks such as NIST, ISO, or SOC 2
- experience securing products and infrastructure against the OWASP Top 10 and/or CWE Top 25
- broad exposure to security disciplines and a deep understanding of models behind core security concepts such as Multi-Factor Authentication (MFA), Zero Trust, and securely managing secrets or tokens
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.