> Markdown version of [/jobs/ext/3540935-software-engineer-on-iam](https://www.wearedevelopers.com/jobs/ext/3540935-software-engineer-on-iam). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Software Engineer on IAM - **Company:** Brex Inc. - **Location:** New York, NY, United States (Remote available) - **Experience:** Expert - **Salary:** $192,000.0 - $240,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Audit Trail, Software Quality, Identity and Access Management, OAuth, OpenID, Role-Based Access Control, Security Assertion Markup Language (SAML), Single Sign-On, Software Deployment, Okta, Reliability of Systems, Backend, Api Design - **Published:** October 1, 2026 - **Apply:** https://startup.jobs/senior-software-engineer-identity-access-management-brex-10246301 ## About the Role * 7+ years of professional experience designing, developing, and deploying applications. * Strong software engineering fundamentals and experience building reliable production backend systems. * Experience leading complex projects and mentoring other engineers. * Have strong API design fundamentals, rigor around testing, code quality, and documentation. * An understanding of core IAM concepts such as authentication, authorization, sessions, tokens, MFA, SSO, OAuth, SAML, OIDC, or RBAC. * Clear communication, collaborates well across teams, and are effective in cross-functional technical discussions. * Demonstrating care about operational excellence and know how to improve system reliability, reduce toil, and maintain high-quality services over time. * Having a strong product and engineering judgment and can balance security, usability, and developer experience. Bonus Points: * Experience working on identity and access management, authentication, authorization, or audit systems in a production environment. * Hands-on experience with Okta, Oso, SSO, SAML, OIDC, OAuth, passkeys, or WebAuthn. * Experience building enterprise-facing admin controls, custom roles, delegated access flows, or audit trails. * Worked on platform teams that provide shared infrastructure, paved roads, or secure-by-default frameworks for other engineering teams. ## Description This role will be based in our New York office. We are a hybrid environment that combines the energy and connections of being in the office with the benefits and flexibility of working from home. We currently require Monday, Wednesday and Thursday to be designated in office days. As a perk, we also have up to four weeks per year of fully remote work!, * Design, build, and operate backend systems and APIs for authentication, authorization, identity context, and audit-related workflows. * Lead engineers on initiatives end to end, from technical design and implementation through rollout, measurement, and operational support. * Improve login and access experiences across SSO, MFA, step-up authentication, delegated access, and enterprise identity flows. * Build and extend authorization systems that support custom roles, resource-aware access control, and secure defaults for product teams. * Help create durable, identity-aware audit trails and attribution for user, service, delegated, and agent-driven actions. * Partner closely with engineers across Brex to make IAM integrations secure by default and easier to adopt through clear patterns, tooling, and shared libraries. * Mentor engineers on the team to deliver high-quality code and produce operational improvements that raise the bar for reliability and maintainability across the team's systems.