Solution Architect

The Lever Group LLC
United States
about 2 months ago
Apply on indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English
Job source

Tech stack

PHP (Programming Language) Software as a Service Identity and Access Management Python (Programming Language) OAuth OpenID Role-Based Access Control Openid Connect Azure Active Directory Security Assertion Markup Language (SAML) Single Sign-On Pulumi
+4 more
Okta Infrastructure Automation Frameworks Information Technology Terraform

Job description

This is a high-visibility, strategic role at a US-based SaaS product company in the data collection and analytics space. The engineer will have genuine ownership over the Identity layer across a multi-product ecosystem - not just execution.

The tech stack is modern (Auth0, OAuth2/OIDC), the client team is senior and technically strong, and the engagement has a long-term outlook with potential to grow into broader platform architecture ownership. The project operates in the Central US time zone with daily sync calls with the client team., * Own and evolve the Identity layer that connects multiple products within a large-scale SaaS platform.

  • Define and enforce architectural standards and best practices across engineering teams for authentication and authorization.
  • Drive cross-team alignment on identity-related design decisions, acting as the primary technical authority on the topic.
  • Design and oversee the implementation of SSO, RBAC, and authentication/authorization flows for new and existing integrations.
  • Lead design reviews, contribute to RFC processes, and participate in architectural governance.
  • Collaborate with product managers, engineering leads, and client stakeholders to translate business requirements into scalable identity solutions.
  • Monitor and continuously improve the security posture of the identity infrastructure.

Requirements

Do you have experience in SSO?, * 10+ years of overall IT experience.

  • 5+ years of experience as a Solution or Enterprise Architect with a focus on identity and access management.
  • Strong hands-on knowledge of IAM protocols: OAuth2, OpenID Connect, SSO, RBAC.
  • Proven experience with Auth0 or a comparable Identity Provider (Okta, Azure AD B2C, Keycloak, etc.).
  • Solid background in PHP and/or Python ecosystems.
  • Experience designing and enforcing architectural standards across multiple engineering teams and products.
  • Strong communication skills: ability to drive alignment, facilitate technical decisions, and present to mixed technical/non-technical audiences.
  • Upper-Intermediate English (B2+) - working language with the client.
  • US-based project with daily communication; availability during the Central US time zone (CST/CDT) is required.

nice-to-have skills:

  • Experience with SAML 2.0 and federation protocols.
  • Familiarity with SOC 2 / ISO 27001 compliance requirements.
  • Background in SaaS multi-tenant architecture.
  • Knowledge of IaC tools (Terraform, Pulumi) for identity infrastructure provisioning.
  • Experience in US-based product companies or client-facing delivery roles.

About the company

At LeverX, we have had the privilege of delivering over 1,500+ projects for various clients. With 20+ years in the market, our team of 2,200+ is strong, reliable, and always evolving: learning, growing, and striving for excellence., We are proud to be an SAP Gold Partner - a global company with 20 years of experience and a track record of successful international projects. But we’re also all about our people. We believe in sustainable growth, community support, and continuous learning. We believe in you.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:48 min

Daily responsibilities and alignment practices for technical engineering leadership

Edoardo Dusi · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all