Identity Infrastructure Engineer

Verda
Berlin, Germany
about 1 month ago
Apply on de.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence User Authentication Cloud Computing Configuration Management Linux Identity and Access Management OAuth Open Source Technology OpenID Public Key Infrastructure Ansible Saltstack
+2 more
Snowflake Infrastructure Automation Frameworks

Job description

In this role, you will become the absolute authority on how identities, credentials, certificates, and secrets are stored and distributed across our cloud infrastructure. You will also serve as the critical engineering liaison to our Security team-bridging the gap between strict security policies and highly automated, real-world infrastructure., * Own the Identity Layer: Champion and manage Kanidm as our central source of truth for authentication, account management, and authorization.

  • Secure Secrets & PKI: Take ownership of OpenBao for robust, decentralized secrets management and step-ca for automated internal certificate authority operations.
  • Automate Infrastructure Configuration: Use SaltStack and Ansible to ensure our identity and access management layers are 100% defined as code, removing manual steps and “snowflake” configurations.
  • Act as the Security Liaison: Partner directly with our Security team to translate compliance and threat-modeling requirements into production-ready engineering solutions.
  • Streamline Authentication: Architect and implement clean, secure OIDC and OAuth integrations across our expanding suite of internal tools and systems., * Cash + equity compensation along with various fringe benefits (e.g., healthcare, lunch, wellbeing, etc.).
  • Profitable operations with rapid, sustained growth.
  • 31 nationalities, with 6 different ones on the management team.
  • An opportunity to make a clear impact and work alongside world-class engineers, researchers, and partners across the global AI ecosystem.

Requirements

  • 5+ Years of Core Experience: Proven track record managing identity management (IDM/IAM) architectures and production secrets distribution networks at scale.
  • Configuration Management Expertise: Deep operational familiarity with SaltStack and Ansible for infrastructure orchestration.
  • High-Velocity Mindset: Comfort operating in a fluid, “move fast” environment where fast iterations and rapid deployment cycles are the norm.
  • Strong Communication: The ability to communicate seamlessly with both infrastructure engineers and security analysts, acting as a translator between policy and code., * Hands-on, production experience specifically deploying or migrating to Kanidm, OpenBao, or step-ca.
  • Deep familiarity with token design, troubleshooting, and edge cases in OIDC/OAuth setups.
  • A strong engineering point of view on modern open-source identity alternatives (e.g., Linux Foundation/OpenSSF ecosystems).

About the company

Imagine a future where everyone has instant, low-cost access to intelligence. We’re building a fully featured European AI cloud - with everything one needs to train, experiment with, and deploy AI models. In addition, our GPUs run on 100% renewable energy.

We’re ambitious, curious, and gutsy doers. We practice a low hierarchy across the company and high morale in our teams. We’ve already achieved a lot, yet we’re only getting started. Now it’s your chance to join the ride. We offer more than just the job - we offer a career-defining opportunity to be part of building something big!

Join Verda while it’s still being built - not once it’s finished.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on de.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all