Senior Software Engineer - Identity, Data Security and Trust

Snowflake Inc.
Menlo Park, CA, United States
28 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$200,000.0 - $287,500.0
Working hours
Regular working hours

Tech stack

Java (Programming Language) Adobe InDesign Artificial Intelligence Amazon Web Services User Authentication Authentication Protocols Microsoft Azure C++ (Programming Language) Cloud Computing Software Quality Code Review Cyber Security
+25 more
Databases Computer Engineering Data Infrastructure Data Security Data Structures Distributed Systems Multi-Factor Authentication Identity and Access Management Python (Programming Language) Key Management Network Security Machine Learning OAuth OpenID Role-Based Access Control Standard Sql Security Assertion Markup Language (SAML) Systems Integration Cloud Platform System Snowflake Multi-Cloud Kubernetes Information Technology Data Analytics Golang

Job description

We are hiring a Senior Software Engineer across our Identity, Data Security and Trust organization. These teams builds the security backbone of Snowflake - enabling customers to confidently bring their most sensitive data and workloads to the Data Cloud, empowering every Snowflake engineer to deliver the most secure platform at scale, and giving customers the tools to monitor, achieve, and maintain a strong security, governance, privacy, and compliance posture. As the agentic era accelerates, these teams are at the forefront of building AI-native security capabilities that protect the world’s data. AS A SENIOR SOFTWARE ENGINEER AT SNOWFLAKE, YOU WILL:

  • Design and implement critical AI security capabilities - including controlled, audited agent workflows, MCP server and client security, agent identity frameworks, and admin guardrails - that form the foundation for secure agentic enterprise adoption
  • Build and evolve foundational identity and access management systems, including authentication protocols, SSO integrations, multi-factor authentication, OAuth/OIDC, SAML, SCIM, and fine-grained RBAC that scales to millions of objects and users
  • Design and develop core security infrastructure spanning secret management, key management, service identity, and end-to-end encryption across a natively multi-cloud environment
  • Build and maintain security tooling to define, monitor, enforce, and detect policy violations across the platform; implement automation and self-service processes that increase developer autonomy and promote secure-by-default engineering
  • Design and implement extensible, plug-and-play platform components that enable first-, second-, and third-party security detectors, responders, and visualizations to be built on top of Snowflake’s Trust Center
  • Leverage industry-accredited benchmarks (e.g., CIS) to develop standards-based security posture assessments; contribute to behavioral analytics pipelines and PII attribution capabilities that help detect, prevent, and respond to threats and abuse vectors
  • Partner with engineering teams across the company to understand security pain points and deliver solutions that reduce friction without compromising safety
  • Lead the design and enforcement of secure network architectures to actively defend against ransomware attacks and detect sophisticated data exfiltration attempts.
  • Participate in design reviews, code reviews, and on-call rotations; hold a high bar for code quality, reliability, and sound technical decisions

Requirements

  • 5+ years of industry experience designing, building, and operating large-scale distributed systems in production cloud environments
  • Strong foundational computer science skills - data structures, algorithms, systems design, and distributed computing
  • Proficiency in one or more of Java, C++, Python, Golang, or Rust, with solid SQL skills for data-driven features
  • Experience shipping and on-calling production services with a focus on availability, reliability, and observability
  • A collaborative, low-ego approach to engineering - comfortable iterating quickly and working across PM, design, and peer engineering teams
  • BS in Computer Science, Computer Engineering, or a related technical discipline, or equivalent practical experience, * Knowledge of identity and access management concepts and protocols - SAML, SCIM, OAuth, OIDC, Federation, MFA, or RBAC
  • Familiarity with security infrastructure domains such as secret management, key management, service identity, authentication, or authorization
  • Experience with database internals, query engines, or data platform systems
  • Exposure to machine learning or AI systems, particularly applied to anomaly detection, behavioral analytics, or risk classification
  • Contributions to developer platforms, SDKs, or multi-tenant extensibility frameworks
  • Experience deploying and operating services on Kubernetes or production cloud platforms (AWS, Azure, or GCP), The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location. This role is also eligible for a competitive benefits package that includes: medical, dental, vision, life, and disability insurance; 401(k) retirement plan; flexible spending & health savings account; at least 12 paid holidays; paid time off; parental leave; employee assistance program; and other company benefits.

Benefits & conditions

$200,000 - $287,500 parental leave, paid time off, paid holidays, 401(k), retirement plan United States, California, Menlo Park Jul 15, 2026

At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset - who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn’t just to execute a function, but to help redefine the future of how work gets done.

About the company

WHY JOIN OUR IDENTITY, DATA SECURITY AND TRUST TEAM AT SNOWFLAKE?

These teams sit at a rare intersection: the security, identity, infrastructure, and customer trust layers of one of the fastest-growing data platforms in the world. You won’t be maintaining someone else’s security layer; you’ll be defining it. These are teams that value craft, curiosity, and collaboration, and that take pride in making complex security invisible to the developers and customers who depend on it. If you want a role where your technical decisions matter and your growth is tied directly to the scale of the platform you’re protecting - and you’re energized by the challenge of securing the agentic era before it fully arrives - this is it.

Snowflake is growing fast, and we’re scaling our team to help enable and accelerate our growth. We are looking for people who share our values, challenge ordinary thinking, and push the pace of innovation while building a future for themselves and Snowflake.

How do you want to make your impact?

For jobs located in the United States, please visit the job posting on the Snowflake Careers Site for salary and benefits information: careers.snowflake.com

The following represents the expected range of compensation for this role:

  • The estimated base salary range for this role is $200,000 - $287,500.
  • Additionally, this role is eligible to participate in Snowflake’s bonus and equity plan.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:14 min

Solving complex platform architecture challenges at an enterprise scale

Maria Apazoglou · Coffee With Developers

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all