Skip to content
New Job?Nejo!

The AI Job Search Engine

SIsimplesurance

Senior Software Engineer - Identity & Access Management(m/w/x)

Berlin
Full-timeOn-siteSenior

End-to-end ownership of high-throughput identity services for insurtech digital workflows. Deep knowledge of modern authentication/authorization flows and cryptographic fundamentals essential. 28 vacation days, paid time off for holidays, and 25 days working abroad.

Requirements

  • Proven experience building complex, distributed backend systems with strong production experience in Go and gRPC
  • Deep conceptual and practical knowledge of modern authentication/authorization flows, token security, session management, cryptographic fundamentals (OAuth2, OIDC, RBAC, JWT signing/verification)
  • Solid understanding of web security, federated identity, secure coding practices, common web vulnerabilities, and mitigations (OWASP Top 10)
  • Hands-on experience with cloud platforms (AWS preferred), container orchestration (Kubernetes), and Infrastructure as Code (Terraform)
  • Experience designing systems for high throughput/low latency without sacrificing security or correctness
  • Strong communication skills for explaining complex security/architectural tradeoffs and driving cross-team consensus
  • Experience with SAML, SCIM, PKI, JWKs/JWKS endpoints, key management (KMS/HSM), and token introspection
  • Working knowledge of identity platforms (commercial or open source), rate limiting, abuse mitigation, and adaptive authentication

Tasks

  • Design high-throughput identity services
  • Develop low-latency identity services
  • Operate identity services
  • Own features end-to-end from design to production
  • Provide support for features in production
  • Implement modern authentication protocols (OAuth 2.0, OpenID Connect)
  • Scale modern authentication protocols (OAuth 2.0, OpenID Connect)
  • Implement modern authorization protocols and token formats (JWTs)
  • Scale modern authorization protocols and token formats (JWTs)
  • Develop secure token issuance strategies
  • Develop secure token rotation strategies
  • Develop secure token revocation strategies
  • Write clean backend services primarily in Go
  • Write concurrent backend services primarily in Go
  • Write highly performant backend services primarily in Go
  • Design idiomatic, testable code
  • Design clear API contracts (gRPC/HTTP)
  • Deploy identity infrastructure using DevOps experience
  • Manage identity infrastructure using DevOps experience
  • Automate identity infrastructure (CI/CD, monitoring, incident response)
  • Serve as the subject matter expert on authentication
  • Serve as the subject matter expert on identity
  • Own internal security reviews
  • Conduct threat modeling for identity flows
  • Guide other teams on secure integrations with the platform
  • Integrate solutions with custom identity providers
  • Integrate solutions with standard identity providers (Keycloak, AWS Cognito)
  • Maintain solutions with custom identity providers
  • Maintain solutions with standard identity providers (Keycloak, AWS Cognito)
  • Integrate federation patterns
  • Maintain federation patterns
  • Mentor engineers
  • Conduct design reviews
  • Contribute to the team's technical roadmap
  • Contribute to the team's security posture

Work Experience

  • approx. 4 - 6 years

Education

  • Bachelor's degreeOR
  • Master's degree

Languages

  • EnglishBusiness Fluent

Tools & Technologies

  • Go
  • gRPC
  • OAuth2
  • OIDC
  • RBAC
  • JWT
  • OWASP Top 10
  • AWS
  • Kubernetes
  • Terraform
  • SAML
  • SCIM
  • PKI
  • JWKs
  • JWKS
  • KMS
  • HSM

Benefits

Flexible Working

  • Hybrid work environment
  • Flexible work

Workation & Sabbatical

  • Working-from-abroad policy (25 days/year)
  • Sabbatical leave (up to 2 months)

More Vacation Days

  • Paid time off on Christmas & New Year’s Eve

Competitive Pay

  • Allianz shares

Learning & Development

  • Learning & development opportunities

Bonuses & Incentives

  • Employee Referral Programme

Team Events

  • Regular company events

Informal Culture

  • Open, growth-oriented culture

Public Transport Subsidies

  • Free Deutschland ticket or Internet subsidy

Retirement Plans

  • Company-supported pension plan

Company Bike

  • JobRad leasing (bike leasing with insurance & checkups)

Parking & Commuter Benefits

  • Centrally located HQ with public transport access

Healthcare & Fitness

  • Health insurance support
Find the original job posting in its most current version here. Nejo automatically captured this job from the website of simplesurance and processed the information on Nejo with the help of AI for you. Despite careful analysis, some information may be incomplete or inaccurate. Please always verify all details in the original posting! Content and copyrights of the original posting belong to the advertising company.

  • SumUp

    Senior Fullstack Engineer - Identity(m/w/x)

    Full-timeOn-siteSenior
    Berlin
  • FFG FINANZCHECK Finanzportale GmbH

    Senior Full Stack Engineer(m/w/x)

    Full-timeOn-siteSenior
    Berlin
  • Babbel

    Senior Application & Product Security Engineer(m/w/x)

    Full-timeOn-siteSenior
    Berlin
  • SumUp

    Senior Backend Engineer (Golang) - Bank(m/w/x)

    Full-timeOn-siteSenior
    Berlin
  • bonify

    Staff Engineer — Backend(m/w/x)

    Full-timeOn-siteSenior
    Berlin
View all 100+ similar jobs

Nejo is an AI – results may be incomplete or contain mistakes