Remote job
Lead Software Engineer - (Secrets Manager & AI Identity)
Job details
About this role
Role overview
A remote US-based security company is hiring a Lead Software Engineer for its Secrets Manager and AI Identity team, which is building a next-generation privileged access platform. The role owns critical gateway services, terminal access protocols, and auditing and enforcement at the intersection of security, scalability, and user experience. Engineers operate in a true-ownership model, taking services end-to-end from design and secure development through automated testing, deployment, and operational health in production. The team contributes actively to an open-source security ecosystem.
Responsibilities
- Design, develop, test, deploy, and operate secure gateway controls, audited terminal logins, and session recording mechanics for the PAM product line - Maintain strict service boundaries and design resilient APIs that let the PAM platform operate as an independent, decoupled tenant on shared infrastructure - Partner closely with product and design in a cross-functional trio to validate technical solutions before implementation - Build and maintain automated test suites, integration harnesses, and CI/CD pipelines to remove manual testing barriers - Own operational health, performance, and reliability telemetry; participate in sustainable on-call rotations and lead postmortem analyses - Build and maintain internal architecture specifications, API contracts, and external open-source developer documentation
Requirements
- 10–15 years of software engineering experience with team lead responsibility - Strong proficiency in C#/.NET, Rust, or TypeScript, including AI-assisted development workflows - Practical experience designing or implementing secure gateway architectures, reverse proxies, and session proxying (SSH, RDP, or HTTPS) - Understanding of identity and access management, key-rotation protocols, and real-time audit logging - Hands-on experience with Docker/Kubernetes, automated test frameworks, and SRE/observability tooling (APM, alerting, telemetry dashboards) - Familiarity with zero-trust and zero-knowledge architectures, encryption standards, and threat-modeling methodologies
Nice to have
- Enthusiasm for open source, developer advocacy, and building a more secure internet - Comfort with collaborative, outcome-driven feedback loops and clear written documentation
Benefits and work setup
- All-remote team; candidates must be located in the United States - Visa sponsorship is not available for this role - Engagement with an active open-source security community and room to grow into adjacent problem areas