Okta is The World’s Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth. At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we’re looking for lifelong learners and people who can make us better with their unique experiences. Join our team! We’re building a world where Identity belongs to you.
Staff Software Engineer, Security Engineering
Location
United States
Posted
3 days ago
Salary
$174K - $239K / year
No structured requirement data.
Job Description
Role Description
We are looking for a Staff Software Engineer that will join the Auth0 Security Engineering organization. You’ll be responsible for designing and building the security guardrails for our multi-cloud environment, translating complex security and compliance standards into programmatic, code-driven policies.
What You Will Do
- Cloud Security Strategy: Design organization-wide controls (SCPs, Azure Policy) that provide maximum protection with minimum developer friction.
- Identity & Access Management (IAM): Architect templates and permission boundaries that govern how services and humans interact with our cloud with the principle of least privilege in mind.
- Infrastructure & Network Security: Define the security standards for VPC architecture, edge networking, and cross-account connectivity.
- Platform Security Architecture: Lead platform-related security reviews for new features and high-impact services, ensuring security is baked into the design phase.
- System Design: Design systems and processes to validate the security posture of the platform, ensuring our security policies are enforced in real-time with actionable feedback for engineering teams.
- Mentorship & Influence: You raise the bar for the entire organization by mentoring junior engineers and influencing senior leadership on critical security decisions.
Qualifications
- Cloud & Infrastructure Expertise: 8+ years of proven experience in information security, specifically within cloud-native environments, Kubernetes (EKS, AKS), and cloud security.
- Network Architecture & PKI: Deep understanding of secure networking principles, including VPC peering/transit gateways, VPN implementations, edge protection, and managing public/private PKI infrastructures.
- Policy & Automation Specialist: Strong background in building automated controls for enforcing Policy-as-Code within Terraform workflows.
- Practical Risk Assessments: Hands-on experience identifying attack vectors and conducting risk assessments for complex, distributed systems.
- Tooling & AI Proficiency: Experience working with security platforms for analyzing cloud permissions and a background or interest in applying AI to streamline security tasks and governance.
- Collaborative Influencer: Exceptional communication skills with a track record of aligning multiple teams toward shared security goals.
- Education: A Bachelor's degree in Computer Science, Information Security, Systems Engineering, or a related field.
Requirements
- Experience navigating compliance frameworks such as FedRAMP, SOC2, or HIPAA in a cloud environment.
- Proficiency in one or more languages used for automation and tooling, such as Python, Go, or JavaScript.
- Experience creating, managing, and securing containerized environments.
- Experience with service mesh (Istio) security policies and zero-trust networking.
- This position requires the ability to access federal environments and/or have access to protected federal data. As a condition of employment for this position, the successful candidate must be able to submit documentation establishing U.S. Person status (e.g. a U.S. Citizen, National, Lawful Permanent Resident, Refugee, or Asylee. 22 CFR 120.15) upon hire.
Benefits
- Annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between $174,000 — $239,000 USD.
- Equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave).
- Some roles may require travel to one of our office locations for in-person onboarding.
Job Requirements
- Cloud & Infrastructure Expertise: 8+ years of proven experience in information security, specifically within cloud-native environments, Kubernetes (EKS, AKS), and cloud security.
- Network Architecture & PKI: Deep understanding of secure networking principles, including VPC peering/transit gateways, VPN implementations, edge protection, and managing public/private PKI infrastructures.
- Policy & Automation Specialist: Strong background in building automated controls for enforcing Policy-as-Code within Terraform workflows.
- Practical Risk Assessments: Hands-on experience identifying attack vectors and conducting risk assessments for complex, distributed systems.
- Tooling & AI Proficiency: Experience working with security platforms for analyzing cloud permissions and a background or interest in applying AI to streamline security tasks and governance.
- Collaborative Influencer: Exceptional communication skills with a track record of aligning multiple teams toward shared security goals.
- Education: A Bachelor's degree in Computer Science, Information Security, Systems Engineering, or a related field.
- Experience navigating compliance frameworks such as FedRAMP, SOC2, or HIPAA in a cloud environment.
- Proficiency in one or more languages used for automation and tooling, such as Python, Go, or JavaScript.
- Experience creating, managing, and securing containerized environments.
- Experience with service mesh (Istio) security policies and zero-trust networking.
- This position requires the ability to access federal environments and/or have access to protected federal data. As a condition of employment for this position, the successful candidate must be able to submit documentation establishing U.S. Person status (e.g. a U.S. Citizen, National, Lawful Permanent Resident, Refugee, or Asylee. 22 CFR 120.15) upon hire.
Benefits
- Annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between $174,000 — $239,000 USD.
- Equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave).
- Some roles may require travel to one of our office locations for in-person onboarding.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Keeper Security is hiring a Senior Software Engineer to help build and scale the MacOS endpoint agent for our Endpoint Privilege Manager (EPM/KEPM) solution. This is a 100% remote position, with an opportunity to work a hybrid schedule for candidates based in the Chicago, IL or E...
Cyber Security Engineer - Information System Security Officer
Illumination Works LLCAt Illumination Works, we know data, and we should, we’ve been doing it since we started in 2006! We specialize in everything data from big data to data science, data engineering, software engineering, and cloud design. We are a trusted technology partner in user-centered digital transformation—delivering impactful business results to clients. We partner with customers to solve their unique technology and data challenges and stay on top of modern technologies and advancements leveraging our Innovation Lab. Illumination Works is committed to hiring and retaining the best workforce. We hire the best talent for our customer’s needs. We make our hiring decisions without regard to race, color, religion, sexual orientation, gender identity or national origin, age, veteran status, disability, or any other protected class. Acceptable candidates must successfully pass a drug test and background screen.
Provide support for implementing and enforcing information systems security policies, standards, and methodologies. Assist in the evaluation of security solutions to ensure they meet security requirements for processing multiple types of information. Analyze threats and develop a...
Cloud Security Compliance Engineer (6099)
itD TechAbout itD: We are part of a new generation of consulting and software development company that blends diversity, innovation, and integrity with real business results. Our structure rejects any strong hierarchy, empowering us to deliver excellent results. We are a woman- and minority-led firm. Every day, we challenge ourselves to be considerate, fair and to re-think what great outcomes mean for our customers. This permeates down to how we approach every interaction, on every project, for every client. You’ll thrive here if you are a dynamic self-starter, a difference-maker or someone who wants to deliver great results, without constraints. The itD Digital Experience: Joining us means you’ll be part of our global community, you have a say about your own career journey, and you’ll get a chance to give back to causes that matter. You will experience working with Fortune 500 companies and high-performance teams across numerous industries. itD offers our employees excellent benefits such as medical, dental, vision, life insurance, paid holidays, 401K + matching, networking & career learning and development programs. We are growing and we want to see you grow! Visit https://itdtech.com/careers to learn more about what working at itD can mean for you. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law. itD is committed to working with and providing reasonable accommodation to individuals with disabilities. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application process, or to perform the essential functions of a position, please contact us at recruiting@itdtech.com and let us know the nature of your request and your contact information. Dynamic environment in a culture of respect, empowerment and recognition for a job well done, apply today!
This role involves leading the design and implementation of automated processes and tools for collecting and managing evidence required for SOC 2 compliance within cloud environments. Responsibilities include establishing evidence retention policies, collaborating cross-functionally, and producing detailed compliance reports to ensure audit readiness.
Network Technology & Security Consultant
AECOMWe are the world’s trusted infrastructure consulting firm.
The consultant will perform cybersecurity assessments of OT/ICS environments, including identifying vulnerabilities, analyzing risk posture, and developing actionable remediation plans aligned with industry standards. Responsibilities also include supporting the implementation and documentation of controls under the Risk Management Framework (RMF) and developing required cybersecurity documentation for Federal clients.