Senior Information Security Engineer
Match Inc
Palo Alto, CA, United States
1 day ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.jobmonkeyjobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source
Tech stack
Application Programming Interfaces (APIs)
Artificial Intelligence
Systems Engineering
User Authentication
Cloud Computing Security
Cyber Security
Identity and Access Management
Python (Programming Language)
OAuth
OpenID
PCI Data Security Standards
Role-Based Access Control
+12 more
Zero Trust Network Access
Security Assertion Markup Language (SAML)
Software Vulnerability Management
Okta
Apache Spark
Infrastructure Automation Frameworks
No-code Tools
Cloudflare
Casper Suite
Virtual Agents
SailPoint
Terraform
Job description
- Drive a comprehensive identity and access lifecycle strategy for our global portfolio, such as:
- Authentication (AuthN): Drive identity security to the next level by enforcing device trust, post-auth detection, and DPoP.
- Authorization (AuthZ): Enforce least privilege and right-size entitlement that balance security and velocity.
- Non-Human & AI Agent Identity: Lead secure management for NHIs (e.g., OAuth tokens, service accounts, and API keys) and establish security guardrails for emerging AI agents and MCP connections.
- Privileged Access Management (PAM) & Just-in-Time (JIT) Access: Modernize privileged access and implement JIT models to reduce standing privileges and secure high-risk administrative actions.
- Own and harden Cloudflare ZTNA policies and support transitioning from traditional network-based access model.
- Leverage your experience in broader enterprise security domains to ensure our identity strategy is integrated with our CorpSec efforts-device signals from endpoint posture (Fleet/EDR), SaaS security, and vulnerability management into our access controls to drive a unified security posture.
- Eliminate manual toil and accelerate delivery by engineering automated solutions-using scripting, no-code tools, or AI-to solve problems at scale rather than manually managing repetitive tasks., * Take the Lead: We don’t ghost our work or each other. Just as users don’t leave their matches hanging, we don’t let each other down.
- Move Fast: We have a bias for action and urgency. Something that could be done tomorrow would be better if done today.
- Better Together: We keep connection at the heart of dating and at the heart of how we work. Just as our users are better when they connect with others, so are we when we collaborate.
- Real Talk: We say the hard thing the human way. Just as we ask our users to behave with kindness and candor in our community, we expect all of us to do the same.
- Safety First: We act with integrity, transparency, and consistency so people feel safe-whether they’re swiping, matching, or working alongside us.
- Spark Fun: We have fun to unlock creativity, fuel innovation, and help us build better experiences for daters.
Requirements
- 7+ years in security engineering, IT engineering, or infrastructure, with meaningful depth in identity and access
- Strong hands-on experience with Okta: policy design, device assurance, FastPass, device trust, RBAC
- Experience with Cloudflare Zero Trust or a comparable platform
- Strong knowledge of SAML, OIDC, OAuth 2.0, and SCIM
- Experience with IGA solutions (e.g., Okta Identity Governance, SailPoint), including a deep understanding of identity lifecycles and compliance requirements.
- Experience securing non-human identities (service accounts, OAuth apps, tokens) and establishing guardrails for AI agents; we value your thought process and perspective on these emerging challenges.
- Experience with using Terraform or other IaC tools to manage infrastructure changes, with a strong emphasis on GitOps fluency.
- Practical view of least privilege. You can right-size access without introducing too much friction to the business.
- Experience building automated solutions (e.g., Okta Workflows, Lambda, Windmill) using Python or similar; you know when to automate for high impact and when to avoid it to prevent over-engineering.
- Practical use of AI tooling in your own workflow
- Proven ability to influence cross-functional outcomes, even without direct formal authority.
- Proactively identify, scope, and drive complex problems to completion.
Nice to have
- Endpoint management or EDR exposure (Jamf, CrowdStrike, or similar)
- Audit and compliance experience with access controls (SOX, PCI-DSS, ISO 27001)
- Experience working in global environments (EMEA/APAC)
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.jobmonkeyjobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
EM
Eli McGarvie
over 3 years ago
LM
Luis Minvielle
Why Upskilling And Reskilling is Important For Developers
over 2 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
about 1 month ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
about 2 years ago