Senior Staff Software Engineer, Platform - IAM

Coinbase, Inc.
Washington, DC, United States
11 days ago
Apply on www.dcjobsite.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$253,895.0 - $298,700.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Distributed Systems Identity and Access Management OAuth OpenID Security Assertion Markup Language (SAML) Software Engineering Virtual Agents

Job description

  • Own the multi-year technical strategy for IAM end to end, including the architecture that unifies workforce, AI agent, and service/workload identity under a common model with shared primitives for authentication, authorization, provisioning, and governance.
  • Drive architecture decisions across multiple pods and teams you don’t manage - establishing the standards, review bars, and integration contracts the rest of engineering builds against.
  • Build the adoption strategy for 700+ systems, including sequencing, migration paths, and build-vs-buy decisions that determine what we own versus integrate.
  • Partner with Security, Compliance, IT, Infrastructure, and product engineering leadership to translate audit and regulatory requirements (UAR, SOX, SOC 2) into automated controls and self-generating evidence.
  • Lead the data model and tooling that answer “who has access to what, and why” across a heterogeneous estate, reducing standing privilege while making the secure path the fast path.
  • Grow the technical bench by mentoring staff and senior engineers and raising the org’s depth in identity as a domain.

Requirements

  • 12+ years of software engineering experience, including a track record as the most senior technical leader on a platform spanning multiple teams with multi-year architecture driven to adoption across dozens of consuming teams.
  • Deep IAM expertise across more than one domain (workforce identity, authorization, access lifecycle, or non-human identity) with substantive experience in service or workload identity - service-to-service auth, workload identity federation, or machine credential management at scale.
  • Production Go experience and distributed systems design on AWS, with fluency in identity protocols and standards (OAuth 2.0, OIDC, SAML, SCIM, and workload identity patterns).
  • Proven influence without authority at senior levels - you’ve changed the technical direction of teams and orgs outside your own and secured leadership alignment on ambiguous, org-wide access-risk problems.
  • Ability to translate audit and regulatory requirements into automated technical controls, with clear written and verbal communication that frames complex identity problems for executive audiences.
  • Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality.

Benefits & conditions

Pay Transparency Notice:* *Base salary varies by location (see range below). Total compensation may also include equity and bonus eligibility, and benefits (medical, dental, vision, 401(k)).

About the company

We’re hiring a Senior Staff Software Engineer (Uber Tech Lead) for Identity & Access Management withinhttps://www.coinbase.com/careers/product-groups and own the technical strategy that unifies human, AI agent, service, and workload identity into one coherent platform. IAM is a distributed problem across 700+ internal systems that no central team can implement alone, so this platform must make access consistent, visible, provable, and efficient across every identity type. You’ll set architecture across multiple pods, drive adoption with hundreds of engineering teams, and act as one of the most senior technical voices for identity and access management at Coinbase.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dcjobsite.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

3:21 min

Navigating the ethical integration of virtual colleagues

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

4:18 min

Prioritizing communication and structural awareness over strict tool mastery

Liam Hurrel +1 · World Congress 2021

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all