368,634open jobs
9,437companies
50,578added this week
Browse all
Location
In office
Seniority
Senior
Employment
Full-Time
Overview
Company
Impact
Profile match
Quickly set up an OAuth 2.0 and OpenID Connect (OIDC) server using Authlete's APIs. Leave cumbersome protocol operations and token management to the experts.

We’re a ~40 person company building the OAuth/OpenID Connect platform that large digital banks and regulated industries run their identity on. Our stack is Java on Google Cloud, delivered as a shared multi-tenant service, dedicated single-tenant clusters, and a self-managed product customers run themselves.

This is a hands-on builder role, not a management or pure-compliance role. You’ll build our security program from the ground up: writing the policies, shipping code fixes, wiring detection into GCP, and setting the practices the rest of engineering follows. You’ll lean on AI to move fast, researching how the best companies do this, drafting policies, reviewing code, and hunting vulnerabilities at a scale a lean team otherwise couldn’t reach.

What you'll do

  • Stand up our vulnerability management program end to end: intake, triage, severity, remediation targets, security advisories, and coordinated disclosure, across both our managed and self-managed deployment models.
  • Build our product security incident response (PSIRT): on-call, playbooks, and AI-assisted triage that turns High/Critical CVEs into paged incidents automatically.
  • Work hands-on in the codebase, contributing security fixes to our Java platform and raising the bar on secure coding, secrets and key management, and hardening.
  • Build proactive detection and response in GCP: alerts, monitoring, and automation where it pays off.
  • Integrate security into CI/CD and IaC: dependency and container scanning, Terraform checks.
  • Own our external security posture: security.txt, a security contact, a public trust page, and a security white paper.
  • Get ahead of frontier-AI offensive tooling (the Mythos class of AI-discovered zero-days) by pointing AI agents at our own code before someone else does.
  • Partner with platform engineers on security-relevant architecture and lead its security dimension.
  • Support ISO 27001 and SOC 2 controls pragmatically alongside engineering, without the role becoming audit admin.

What we're looking for

  • A hands-on security engineer who codes. You’re comfortable reading and writing code (Java, Go a strong plus), Terraform, and GCP configs, not just reviewing others’ work.
  • Strong application security foundation: secure coding, vulnerability management, security in CI/CD.
  • Cloud security depth on GCP, IAM, Kubernetes, infrastructure hardening.
  • Incident response experience: investigations, detection tooling, and clear communication with customers or regulators.
  • You’re energized by owning the whole spectrum at a small company rather than going narrow at a large one.
  • Bonus: OAuth/OIDC, FAPI, or identity-security background; ISO 27001 or SOC 2 exposure.

Why Join Us

  • Own security for a platform used by large financial and regulated customers
  • Work closely with founders, engineering, and customers
  • Modern, cloud-native environment without unnecessary overhead
  • Competitive pay and flexibility
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$35k per year • In office • Internship • Bachelor's Degree • Freiburg im Breisgau
C++
Java
Node JS
Python
C#
JavaScript
C#
.NET
AI/ML
AI Agents
DevOps
CI/CD
GitLab
Apply
$72k – $119k per year • In office • Full-Time • Bachelor's Degree • Boca Raton • Alpharetta • Dayton
Java
DevOps
CI/CD
Git
Apply
$220k – $350k per year • Remote/Hybrid • Full-Time • 15+ years exp • New York • Princeton
AI/ML
AI Agents
LLM Guardrails
Model Context Protocol
DevOps
Azure
Azure DevOps
CI/CD
GitHub
Platform Engineering
Design
Figma
Management
Jira
QA
Playwright
Apply
$187k – $378k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp
Python
AI/ML
AI Agents
Edge AI
Embeddings
LLM
NumPy
Pandas
Spark
Analytics
A/B Testing
Apply
$118k – $162k per year • Remote • Full-Time • 10+ years exp • Bachelor's Degree • Louisville • Fort Lauderdale • Washington • Chicago • Tampa
DevOps
Azure
GCP
Cybersecurity
HIPAA
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.