Senior Software Engineer - IAM (OIDC / OAuth)

Senior Software Engineer - IAM (OIDC / OAuth)

Vollzeit 60000 - 80000 € / Jahr (geschätzt) Kein Homeoffice möglich
P

Auf einen Blick

  • Aufgaben: Entwickle und betreibe eine großangelegte OIDC-Plattform für Identitäts- und Zugriffsmanagement.
  • Unternehmen: Führendes Tech-Unternehmen mit dynamischem Team und spannenden Herausforderungen.
  • Vorteile: Wettbewerbsfähiges Gehalt, flexible Arbeitszeiten und die Möglichkeit, weltweit zu arbeiten.
  • Weitere Informationen: Exzellente Karrierechancen in einem innovativen Umfeld.
  • Warum dieser Job: Werde technische Autorität und gestalte moderne Identitätslösungen mit neuesten Technologien.
  • Qualifikationen: Mindestens 5 Jahre Erfahrung mit OAuth2, OpenID Connect und Node.js.

Das prognostizierte Gehalt liegt zwischen 60000 - 80000 € pro Jahr.

We’re looking for a Senior Software Engineer with deep Identity and Access Management (IAM) domain expertise to take ownership of a large-scale enterprise OIDC platform supporting thousands of users, hundreds of applications, and mission‑critical authentication services.

This is not a Kubernetes, Dev Ops, SRE, or infrastructure engineering role.

It is a senior application engineering and identity architecture position focused on the design, operation, troubleshooting, and evolution of a custom‑built authorization platform.

You’ll become the technical authority for the platform, leading complex investigations, guiding architectural decisions, mentoring other engineers, and driving the roadmap toward a modern, standards‑based identity solution.

The ideal candidate has hands‑on experience building, operating, or extending identity platforms and authorization servers, with deep fluency in OAuth2, Open ID Connect, JWTs, claims, scopes, federation, MFA, token lifecycle management, and authentication architecture.

You should be comfortable working in Node. js and Type Script codebases, diagnosing production issues across application and data layers, and translating identity and security requirements into robust engineering solutions.

This role operates with core collaboration hours of

6:00 PM – 12:00 AM IST to provide overlap with global teams. Outside of core hours, work is flexible and outcome‑focused.

  • What you’ll do
  • Platform operations
  • Own the operational health, reliability, and availability of the OIDC platform
  • Lead incident investigation and root cause analysis
  • Diagnose authentication, authorization, MFA, federation, and token‑related failures
  • Develop operational runbooks and platform documentation
  • Identity engineering
  • Design and implement enhancements to authentication and authorization workflows
  • Maintain OAuth2 and OIDC integrations
  • Support MFA technologies including TOTP, SMS, Email, Web Authn, and passwordless authentication
  • Support federation with Active Directory and Azure Active Directory
  • Maintain token issuance, claims mapping, scopes, audiences, and client registrations
  • Application development
  • Develop and maintain Node. js and Type Script services
  • Troubleshoot production issues through code analysis and debugging
  • Perform dependency upgrades and security remediation
  • Build automation and operational tooling
  • Platform modernisation
  • Assess migration paths toward modern identity platforms
  • Lead technical evaluations of platforms such as Zitadel, Keycloak, Authentik, or similar
  • Define migration strategies for applications, clients, claims, and identity data
  • Drive platform simplification and reduction of technical debt
  • Data and infrastructure
  • Support Elasticsearch‑backed identity data stores
  • Troubleshoot token, session, account, permission, and client data issues
  • Work with Kubernetes‑based deployments and Git Ops workflows
  • Support Redis, background processing, and synchronisation services
  • Operational Support & On‑Call
  • Participate in a shared on‑call rotation.
  • Assist with incident response, troubleshooting, root cause analysis, and continuous service improvements.

Requirements

  • Identity and security
  • 5+ years working with OAuth2 and Open ID Connect in production environments
  • Deep understanding of Authorization Code Flow, Client Credentials Flow, Device Authorization Flow, Token Exchange, JWT, JWK/JWKS, PKCE, Refresh Tokens, Federation, and Claims and Scopes
  • Development
  • 5+ years of Node. js development
  • Strong Type Script experience
  • Experience supporting and debugging production systems
  • Platform and infrastructure
  • Kubernetes experience
  • Elasticsearch and Redis experience
  • CI/CD and Git Ops exposure
  • Production incident response experience
  • Nice to have
  • Experience with panva/oidc-provider, Zitadel, Keycloak, or Authentik
  • LDAP, Active Directory, or Azure AD / Entra ID
  • Web Authn / FIDO2

Benefits

Portainer is a leading tech company offering a broad benefits package including a highly competitive salary and the ability to work anywhere in the world while still being part of a dynamic team taking on some of the most interesting challenges in the technology/infrastructure space.

#J-18808-Ljbffr

Senior Software Engineer - IAM (OIDC / OAuth) Arbeitgeber: Portainer.io

Portainer ist ein hervorragender Arbeitgeber, der seinen Mitarbeitern die Möglichkeit bietet, in einem dynamischen Team an spannenden Herausforderungen im Bereich Technologie und Infrastruktur zu arbeiten. Mit einem wettbewerbsfähigen Gehalt und der Flexibilität, von überall auf der Welt zu arbeiten, fördert das Unternehmen eine Kultur des Wachstums und der Zusammenarbeit, während es gleichzeitig wertvolle Weiterbildungsmöglichkeiten und Unterstützung für die persönliche Entwicklung bietet.

P

Kontaktdaten:

Portainer.io Recruiting-Team

Wir glauben, dass du diese Fähigkeiten brauchst, um Senior Software Engineer - IAM (OIDC / OAuth) mit Bravour zu bestehen

Identity and Access Management (IAM)
OIDC
OAuth2
JWTs
MFA
Token Lifecycle Management
Node.js