Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
WorkOS

Software Engineer – Infrastructure Security

WorkOS

. Build workload identity infrastructure that makes short-lived identity credentials a default part of every application's runtime environment.

Posted 9/23/2026full-timeRemote • United States, CanadaMid-LevelSenior💰 $175,000 - $275,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in building and managing workload identity infrastructure, focusing on security-related platforms and distributed systems. Proficient in driving cross-team adoption of identity-based authentication and authorization technologies.

Highest-signal resume keywords
Workload Identity SystemsSecrets ManagementKubernetes EcosystemAuthentication/Authorization TechnologiesCross-Team Adoption

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Software EngineeringSecurity-Related PlatformsDistributed SystemsFine-Grained AuthorizationJWTsX.509 CertificatesPKICert-ManagerSPIFFE/SPIREProduction Infrastructure
Soft Skills
CollaborationLeadership
Industry Keywords
Identity-Based AuthenticationAuthorization PoliciesLegacy AuthenticationManaged SecretsEgress Proxies

Tech Stack

Tools & technologies
Distributed SystemsKubernetes

About the role

Key responsibilities & impact
  • Build workload identity infrastructure that makes short-lived identity credentials a default part of every application's runtime environment.
  • Bring identity-based authentication to internal services using identity certificates and establish them as the golden path for new applications.
  • Drive migration of existing internal services from legacy authentication approaches.
  • Replace static passwords and service tokens with short-lived identity credentials.
  • Build identity-authenticated egress proxies and API abstractions that inject and automatically rotate managed secrets for external dependencies.
  • Build a unified interface and framework for centrally managing and enforcing authorization policies.
  • Partner with application platform owners and internal dependency owners.
  • Drive adoption across engineering teams while making security frictionless.

Requirements

What you’ll need
  • 5+ years of experience in software engineering, with a focus on security-related platform, infrastructure, or distributed systems.
  • Strong working knowledge of secrets management, fine-grained authorization, and workload identity systems.
  • Familiarity with the Kubernetes ecosystem and authentication/authorization technologies such as JWTs, X.509 certificates, PKI, cert-manager, SPIFFE/SPIRE, and OPA.
  • Experience building and operating production infrastructure that other teams depend on, with attention to availability and failure modes.
  • Proven ability to drive cross-team adoption of platform capabilities or lead large-scale migrations.
  • Deep knowledge of authentication and authorization, including JWTs and X.509 certificates.
  • Ability to work legally in the United States; sponsorship question is included in the application.

Benefits

Comp & perks
  • 401k matching
  • Competitive Equity
  • Healthcare, dental and vision coverage
  • FSA, ST/LT Disability, Voluntary Life
  • Carrot fertility benefits
  • 20 days paid vacation + 10 holidays + unlimited sick leave
  • 12 weeks fully paid parental leave
  • Monthly stipend for gyms, yoga classes, race registrations or whatever keeps you active
  • Monthly stipend for a massage, meditations class, therapy, or activities that enhance your well-being
  • Commuter benefits for hybrid employees in SF/NYC
  • Unlimited token usage!
  • Fully remote working arrangements