Senior Software Engineer (Ruby), Security Platform: Authorization
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
The Senior Software Engineer (Ruby), Security Platform: Authorization is responsible for developing and maintaining critical authorization systems that control access for users, tokens, and automated agents across the platform. This role focuses on designing and implementing fine-grained permission models and transitioning authorization logic to a next-generation stack. The position directly impacts the security and scalability of access control, ensuring robust and efficient permission enforcement., * Design and implement authorization changes within a Ruby on Rails monolith handling complex permission checks.
- Own workstreams from problem definition through feature rollout and verification.
- Develop and maintain fine-grained permission catalogs and token roles.
- Extend authorization enforcement across GraphQL and REST API endpoints.
- Refactor policy code to support evaluation by both the monolith and a new authorization engine without altering current behavior.
- Enhance reliability, performance, and security of existing authorization systems.
- Collaborate with authentication, platform, AI, and modular-service teams on authorization interfaces.
- Document and communicate technical decisions through written design documents and code reviews.
Requirements
- Extensive experience with production Ruby on Rails applications.
- Knowledge of authorization systems, including role-based access control and fine-grained permissions.
- Strong security mindset with attention to permission-related risks.
- Experience working with large, long-standing codebases and performing incremental, behavior-preserving changes.
- Familiarity with GraphQL and API authorization patterns.
- Awareness of performance considerations at scale.
- Strong written communication skills for asynchronous decision-making.
- Beneficial but not required: experience with Rust, gRPC, Protocol Buffers, policy languages like Cedar, Zanzibar-style authorization systems, Go, or service-oriented architectures.
Benefits & conditions
- Pay Range and Compensation Package: * The pay range and compensation package for this role will be determined based on the candidate’s experience, skills, and other relevant factors.
About the company
The organization operates in the software development and DevSecOps space, offering an intelligent orchestration platform designed to enhance developer productivity, operational efficiency, and security compliance. It supports over 50 million registered users and serves more than half of the Fortune 100 companies. The organization integrates AI into its workflows to drive innovation and impact and emphasizes a high-performance culture focused on continuous knowledge exchange and collaboration to address complex software development challenges.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 120 - Apple and peers
The Best X (Twitter) Accounts for Developers
Dev Digest 137 - AI'm not sure about this
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again