API & Canonical Model Engineer (Senior / Mid)

FANISKO LLC
United States
about 2 months ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Application Programming Interfaces (APIs) Artificial Intelligence Encodings Command-Query Responsibility Segregation (Software Development) PostgreSQL OAuth OpenID Redis Ui Patterns Zero Trust Network Access Openapi
+15 more
Modern Ui Spring Cloud ReactJS Amazon ElastiCache Spring-boot Core Api AngularJS Apache Kafka Data Management Api Design Api Gateway Restful APIs Crosswalk Legacy Systems Microservices

Job description

You will design the canonical data model that all source data maps into, and build the serving layer that exposes it: CQRS read APIs over the golden record, a BFF and API gateway composing ~60 modern UI screens, a mediated write path back to legacy systems of record, an eligibility/personalization rules layer, and the internal console practitioners use to govern mappings and steward merge decisions., * Define and evolve the canonical data model (Person, Employment, benefit domains), the Global ID scheme, and the custom-attribute extensibility model

  • Design the canonical Core API resource catalogue - contract-first OpenAPI v3, shaped by the canonical model rather than a 1:1 port of 300+ legacy APIs - plus BFF screen-composition conventions
  • Build the serving layer: BFF, API gateway, and process services as the sole consumer boundary, with CQRS read APIs and a bounded consistency window
  • Build the mediated write path (UI ODL system of record): sync-confirm by default, async-accept writeback via saga, transactional outbox, and compensation, with read-your-writes and pending-write handling
  • Build the eligibility/personalization rules layer: precompute parameters and evaluate expressions against stored data, reusing an existing evaluation library
  • Build the practitioner console: crosswalk editor, reference-data management, survivorship and match-threshold editors, and a daily-use steward queue - with roles, permissions, and audit
  • Implement service-to-service zero-trust security: workload identity, per-call authorization, gateway edge auth, and row-/column-level security, * Enterprise/canonical data-model delivery at scale (expected at senior level)
  • BFF and screen-composition API design
  • Rules or expression-engine work (relevant to eligibility/personalization)
  • ElastiCache/Redis and low-latency read tuning
  • Admin-console or data-stewardship tooling; embedding AI copilots into user workflows
  • Benefits administration or healthcare domain knowledge

Requirements

  • 5+ years of Java / Spring Boot building production microservices
  • REST API design with contract-first OpenAPI v3; API gateway experience (Spring Cloud Gateway or similar)
  • Distributed-systems patterns in production: CQRS, saga, transactional outbox, idempotency,compensation/rollback
  • Data-modeling fundamentals: logical/physical modeling, identifier design, PostgreSQL (including JSONB trade-offs)
  • Kafka-based integration
  • Security: OAuth2/OIDC, workload identity, zero-trust patterns, row-/column-level security
  • For the console track: React or Angular with data-dense UI patterns - editable grids, workflow/approval queues, audit trails

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

3:55 min

Demonstrating semantic routing thresholds with the Redis vector library

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:59 min

Identifying users and common architectural use cases for APIs

Alexis Yushin Alexis Yushin · World Congress 2024

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all