Skip to main content
Back to jobs

Senior Software Engineer, Cloud Identity

External
$212K–$237K/yrFull-timeRemote2w ago
CachingComplianceHIPAAIAMJavaJWT
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


About the role

Temporal is an open source programming model that can simplify code, make applications more reliable, and help developers focus on the important things like delivering features faster. We are on a mission to be the reliable foundation of every developer's toolbox, and are building the team that will make that happen. Our values guide us -they are present in how we show up, make decisions, and work together to make an impact. We're curious, driven, collaborative, genuine and humble. Temporal is growing and we are looking for those who share our values, challenge 'standard' thinking, and want to influence our future. If you have a passion for improving the developer experience, building world-class open-source software and communities, and want to be a part of our amazing team, we'd love to hear from you! Temporal is hiring a Senior Software Engineer for Identity to help design, build, and operate the identity and access systems behind Temporal Cloud - a multi-tenant SaaS platform. You'll work on the systems that authenticate users and workloads, authorize access to namespaces and APIs, and integrate with customer identity providers. You'll partner with Security, Product, and infrastructure teams to deliver "secure by default" capabilities while keeping the developer and operator experience strong.

Responsibilities

  • Build and improve core parts of Temporal Cloud's identity platform - authentication (OAuth 2.0/OIDC, SAML), authorization (RBAC and policy-based access), and workload identity - so customers and workloads can authenticate securely
  • Help keep the auth path fast and reliable to meet Temporal Cloud's SLOs through caching, token handling, and revocation strategies
  • Integrate with enterprise identity providers (Okta, Entra ID, Google Workspace) and support user provisioning (SCIM), with attention to common identity threats such as token replay and privilege escalation
  • Partner with Security, Product, and platform teams to ship secure-by-default patterns and contribute to IAM lifecycle and audit practices
  • Write clear architecture and design docs, and contribute to the team's technical direction

Requirements

  • Solid hands-on experience building and operating production identity or auth systems - OAuth 2.0/OIDC, SAML, JWT, and token/key rotation
  • Good understanding of authorization models (RBAC, ABAC); familiarity with policy engines like OPA, Cedar, or OpenFGA is a plus
  • Experience operating distributed systems in production, including some on-call responsibility
  • Proficiency in Go; experience with Python, Java, or Rust is a plus
  • Strong communication skills and the ability to collaborate across security, product, and engineering teams
  • Exposure to workload identity or short-lived / federated credentials (SPIFFE/SPIRE, mTLS, WIF)
  • Experience with SCIM provisioning and enterprise SSO integrations
  • Contributions to identity OSS projects (Keycloak, Ory, Dex, OpenFGA, SPIRE)
  • Familiarity with compliance frameworks (SOC 2, ISO 27001, HIPAA) as they apply to IAM
  • Familiarity with Temporal or other durable-execution engines, especially auth implications around workers and task queues
  • Experience designing customer-facing API auth (scoped tokens, API keys, rotation)

Benefits

Base Salary Range - $212,000 to $237,000, depending on qualifications and locationEquity Options - Eligible for stock options as part of Temporal's equity planEmployee benefits and perks below are for full-time employees, part-time or temporary positions are excluded.U.S. BenefitsUnlimited PTO, 12 Holidays + 2 Floating Holidays100% Premiums Coverage for Medical, Dental, and VisionAD&D, LT & ST Disability, and Life Insurance (Standard & Supplemental Available)Empower 401K PlanAdditional Perks for Learning & Development, Lifestyle Spending, In-Home Office Setup, Professional Memberships, WFH Meals, Internet Stipend and more!International BenefitsTravelTemporal is a globally distributed, collaborative team that values opportunities for in-person connection. Occasional travel may be required for company events, team offsites, and other meaningful moments that bring us together.Additional Perks$3,600 / Year Work from Home Meals$1,800 / Year Professional Enrichment (CarDental insuranceVision insurance401(k)Paid time offRemote work optionsEquity / stock options

Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at temporaltechnologies? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect