The AI Job Search Engine
Senior Software Engineer - Identity & Access Management(m/w/x)
End-to-end ownership of high-throughput identity services for insurtech digital workflows. Deep knowledge of modern authentication/authorization flows and cryptographic fundamentals essential. 28 vacation days, paid time off for holidays, and 25 days working abroad.
Requirements
- Proven experience building complex, distributed backend systems with strong production experience in Go and gRPC
- Deep conceptual and practical knowledge of modern authentication/authorization flows, token security, session management, cryptographic fundamentals (OAuth2, OIDC, RBAC, JWT signing/verification)
- Solid understanding of web security, federated identity, secure coding practices, common web vulnerabilities, and mitigations (OWASP Top 10)
- Hands-on experience with cloud platforms (AWS preferred), container orchestration (Kubernetes), and Infrastructure as Code (Terraform)
- Experience designing systems for high throughput/low latency without sacrificing security or correctness
- Strong communication skills for explaining complex security/architectural tradeoffs and driving cross-team consensus
- Experience with SAML, SCIM, PKI, JWKs/JWKS endpoints, key management (KMS/HSM), and token introspection
- Working knowledge of identity platforms (commercial or open source), rate limiting, abuse mitigation, and adaptive authentication
Tasks
- Design high-throughput identity services
- Develop low-latency identity services
- Operate identity services
- Own features end-to-end from design to production
- Provide support for features in production
- Implement modern authentication protocols (OAuth 2.0, OpenID Connect)
- Scale modern authentication protocols (OAuth 2.0, OpenID Connect)
- Implement modern authorization protocols and token formats (JWTs)
- Scale modern authorization protocols and token formats (JWTs)
- Develop secure token issuance strategies
- Develop secure token rotation strategies
- Develop secure token revocation strategies
- Write clean backend services primarily in Go
- Write concurrent backend services primarily in Go
- Write highly performant backend services primarily in Go
- Design idiomatic, testable code
- Design clear API contracts (gRPC/HTTP)
- Deploy identity infrastructure using DevOps experience
- Manage identity infrastructure using DevOps experience
- Automate identity infrastructure (CI/CD, monitoring, incident response)
- Serve as the subject matter expert on authentication
- Serve as the subject matter expert on identity
- Own internal security reviews
- Conduct threat modeling for identity flows
- Guide other teams on secure integrations with the platform
- Integrate solutions with custom identity providers
- Integrate solutions with standard identity providers (Keycloak, AWS Cognito)
- Maintain solutions with custom identity providers
- Maintain solutions with standard identity providers (Keycloak, AWS Cognito)
- Integrate federation patterns
- Maintain federation patterns
- Mentor engineers
- Conduct design reviews
- Contribute to the team's technical roadmap
- Contribute to the team's security posture
Work Experience
- approx. 4 - 6 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- Go
- gRPC
- OAuth2
- OIDC
- RBAC
- JWT
- OWASP Top 10
- AWS
- Kubernetes
- Terraform
- SAML
- SCIM
- PKI
- JWKs
- JWKS
- KMS
- HSM
Benefits
Flexible Working
- Hybrid work environment
- Flexible work
Workation & Sabbatical
- Working-from-abroad policy (25 days/year)
- Sabbatical leave (up to 2 months)
More Vacation Days
- Paid time off on Christmas & New Year’s Eve
Competitive Pay
- Allianz shares
Learning & Development
- Learning & development opportunities
Bonuses & Incentives
- Employee Referral Programme
Team Events
- Regular company events
Informal Culture
- Open, growth-oriented culture
Public Transport Subsidies
- Free Deutschland ticket or Internet subsidy
Retirement Plans
- Company-supported pension plan
Company Bike
- JobRad leasing (bike leasing with insurance & checkups)
Parking & Commuter Benefits
- Centrally located HQ with public transport access
Healthcare & Fitness
- Health insurance support
Not a perfect match?
- SumUpFull-timeOn-siteSeniorBerlin
- FFG FINANZCHECK Finanzportale GmbH
Senior Full Stack Engineer(m/w/x)
Full-timeOn-siteSeniorBerlin - Babbel
Senior Application & Product Security Engineer(m/w/x)
Full-timeOn-siteSeniorBerlin - SumUp
Senior Backend Engineer (Golang) - Bank(m/w/x)
Full-timeOn-siteSeniorBerlin - bonify
Staff Engineer — Backend(m/w/x)
Full-timeOn-siteSeniorBerlin
Senior Software Engineer - Identity & Access Management(m/w/x)
End-to-end ownership of high-throughput identity services for insurtech digital workflows. Deep knowledge of modern authentication/authorization flows and cryptographic fundamentals essential. 28 vacation days, paid time off for holidays, and 25 days working abroad.
Requirements
- Proven experience building complex, distributed backend systems with strong production experience in Go and gRPC
- Deep conceptual and practical knowledge of modern authentication/authorization flows, token security, session management, cryptographic fundamentals (OAuth2, OIDC, RBAC, JWT signing/verification)
- Solid understanding of web security, federated identity, secure coding practices, common web vulnerabilities, and mitigations (OWASP Top 10)
- Hands-on experience with cloud platforms (AWS preferred), container orchestration (Kubernetes), and Infrastructure as Code (Terraform)
- Experience designing systems for high throughput/low latency without sacrificing security or correctness
- Strong communication skills for explaining complex security/architectural tradeoffs and driving cross-team consensus
- Experience with SAML, SCIM, PKI, JWKs/JWKS endpoints, key management (KMS/HSM), and token introspection
- Working knowledge of identity platforms (commercial or open source), rate limiting, abuse mitigation, and adaptive authentication
Tasks
- Design high-throughput identity services
- Develop low-latency identity services
- Operate identity services
- Own features end-to-end from design to production
- Provide support for features in production
- Implement modern authentication protocols (OAuth 2.0, OpenID Connect)
- Scale modern authentication protocols (OAuth 2.0, OpenID Connect)
- Implement modern authorization protocols and token formats (JWTs)
- Scale modern authorization protocols and token formats (JWTs)
- Develop secure token issuance strategies
- Develop secure token rotation strategies
- Develop secure token revocation strategies
- Write clean backend services primarily in Go
- Write concurrent backend services primarily in Go
- Write highly performant backend services primarily in Go
- Design idiomatic, testable code
- Design clear API contracts (gRPC/HTTP)
- Deploy identity infrastructure using DevOps experience
- Manage identity infrastructure using DevOps experience
- Automate identity infrastructure (CI/CD, monitoring, incident response)
- Serve as the subject matter expert on authentication
- Serve as the subject matter expert on identity
- Own internal security reviews
- Conduct threat modeling for identity flows
- Guide other teams on secure integrations with the platform
- Integrate solutions with custom identity providers
- Integrate solutions with standard identity providers (Keycloak, AWS Cognito)
- Maintain solutions with custom identity providers
- Maintain solutions with standard identity providers (Keycloak, AWS Cognito)
- Integrate federation patterns
- Maintain federation patterns
- Mentor engineers
- Conduct design reviews
- Contribute to the team's technical roadmap
- Contribute to the team's security posture
Work Experience
- approx. 4 - 6 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- Go
- gRPC
- OAuth2
- OIDC
- RBAC
- JWT
- OWASP Top 10
- AWS
- Kubernetes
- Terraform
- SAML
- SCIM
- PKI
- JWKs
- JWKS
- KMS
- HSM
Benefits
Flexible Working
- Hybrid work environment
- Flexible work
Workation & Sabbatical
- Working-from-abroad policy (25 days/year)
- Sabbatical leave (up to 2 months)
More Vacation Days
- Paid time off on Christmas & New Year’s Eve
Competitive Pay
- Allianz shares
Learning & Development
- Learning & development opportunities
Bonuses & Incentives
- Employee Referral Programme
Team Events
- Regular company events
Informal Culture
- Open, growth-oriented culture
Public Transport Subsidies
- Free Deutschland ticket or Internet subsidy
Retirement Plans
- Company-supported pension plan
Company Bike
- JobRad leasing (bike leasing with insurance & checkups)
Parking & Commuter Benefits
- Centrally located HQ with public transport access
Healthcare & Fitness
- Health insurance support
About the Company
simplesurance
Industry
Insurance
Description
The company is a leading insurtech specializing in innovative insurance technology integration into digital workflows.
Not a perfect match?
- SumUp
Senior Fullstack Engineer - Identity(m/w/x)
Full-timeOn-siteSeniorBerlin - FFG FINANZCHECK Finanzportale GmbH
Senior Full Stack Engineer(m/w/x)
Full-timeOn-siteSeniorBerlin - Babbel
Senior Application & Product Security Engineer(m/w/x)
Full-timeOn-siteSeniorBerlin - SumUp
Senior Backend Engineer (Golang) - Bank(m/w/x)
Full-timeOn-siteSeniorBerlin - bonify
Staff Engineer — Backend(m/w/x)
Full-timeOn-siteSeniorBerlin