> Markdown version of [/jobs/ext/268256-software-engineer-identity](https://www.wearedevelopers.com/jobs/ext/268256-software-engineer-identity). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Software Engineer, Identity - **Company:** Keycard Labs Inc. - **Location:** United States (Remote available) - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Audit Trail, User Authentication, Data Systems, Cursor (Graphical User Interface Elements), Distributed Systems, OAuth, Open Source Technology, OpenID, Build Management - **Published:** May 22, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=f304cbfeb7610c4f ## About the Role Do you have experience in System design?, * You have deep experience building and operating identity, authentication, and authorization systems. You understand OAuth, SCIM, OIDC, mTLS, and related primitives - and you treat them as products, not just infrastructure. * Strong distributed systems instincts. You design for security, multi-tenancy, and reliability, with clear thinking about consensus, transactionality, and extensible data models. * You're a programmer first - fluent in Go, Rust, or similar languages, comfortable moving across the stack from core systems and infrastructure to SDKs and APIs. * You thrive in 0 1 environments. You make hard trade-offs to ship today while laying groundwork for the long-term system, and you use iteration to accelerate the learning loop. * You lead by example - raising the bar for technical excellence while helping those around you grow. You communicate clearly through written plans and async updates, and know when to jump on a call. Strong Candidates May Also Have * Active experimentation with agents in your own workflows (Claude Code, Cursor, MCP) and strong opinions on how engineering organizations should adopt them. * Experience designing extensible systems - WASM, plugin frameworks, dynamic policy engines - so developers and organizations can tailor platforms to their needs. * A track record of designing APIs, SDKs, or libraries with great ergonomics that other developers depend on. * Contributions to open source identity, security, or CNCF projects, or experience building and shaping developer ecosystems. ## Description We're hiring a Staff Identity Engineer to design and build the core identity, authentication, authorization, and data systems at the heart of Keycard - the infrastructure that lets agents prove trust, enforce policy, and operate autonomously at global scale. Keycard is a control plane for agents: identity propagation, policy enforcement, audit logging, and runtime governance. The systems you build need to be dynamic, multi-tenant, and fast - delivering auth decisions in under 10ms across cloud, edge, and hybrid deployments. Your work will span from core distributed services to the SDKs and APIs that developers use, ensuring a seamless, trusted experience end to end. You'll work directly with founders, product, design, and the engineers building our SDKs and platform services. You'll also help shape how we use agents internally - contributing to how Keycard becomes an agent-native engineering organization, not just a company that builds for one. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [How One Developer Built the Back Office for 10 Million Companies](https://www.wearedevelopers.com/videos/100082-how-one-developer-built-the-back-office-for-10-million-companies) - [No Keys for the Robot: GitOps as the Control Plane for Autonomous Agents](https://www.wearedevelopers.com/videos/100095-no-keys-for-the-robot-gitops-as-the-control-plane-for-autonomous-agents) ## Related Articles - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)