Staff Software Engineer, Identity & Access Management
Reddit•4h ago
United StatesRemoteFull-timeStaff Level10+ yrs exp
H-1B sponsor
Top focus
Software EngineerIdentity EngineerSoftware Engineer IiStaff Engineer
- Reddit is a community of communities. It’s built on shared interests, passion
- is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote
- comment on the topics they care most about. With 100,000+ active communities and approximately 126 million daily active unique visitors, Reddit is one of the internet’s largest sources of information. For more information, visit www.redditinc.com .
- Our mission is to bring community and belonging to everyone in the world. Reddit is a community of communities where people can dive into anything through experiences built around their interests, hobbies
- passions. With more than 50 million people visiting 100,000+ communities daily, it is home to the most open and authentic conversations on the internet. From pets to parenting, skincare to stocks, there’s a community for everybody on Reddit. For more information, visit redditinc.com .
- As a Staff Software Engineer within our SPACE org (Security, Privacy, Assurance, and Corporate Engineering), you will play a critical role on the Identity & Access Management (IAM) team.
- In this role, you will design, deliver
- support the lifecycle of digital identities, authentication
- access across Reddit. You will partner closely with cross-functional teams to build creative, scalable solutions that align with business priorities and strict regulatory standards. We operate in a dynamic, ambiguous problem space—meaning you’ll work across multiple domains and technology stacks to keep Reddit secure.
- Some of our present and future challenges include:
- Modernizing our identity infrastructure by replacing legacy systems with a tailored governance platform.
- Provide self-service identity management lifecycle and natural language explanation of existing systems in order to improve employee experience with security systems.
- Integrate Reddit’s corporate identity stack across a variety of protocols like SCIM and SAML
- across a variety of use cases (MCP and Agentic, resource automation that includes identity requirements) and increase Reddit’s maturity with “just-in-time” access and advanced identity constructs
What You'll Do
- Engineering & Integration: Develop, scale and maintain Reddit’s core IAM internal identity capabilities, platforms and infrastructure. Design and deploy high-quality API integrations and custom enterprise IGA connectivity solutions.
- Observability & Data Analytics: Build proactive monitoring frameworks, executive-friendly dashboards
- advanced alerting. Use synthetic transactions and anomaly detection to measure system availability (aiming for multiple 9s). Utilize identity data to track license utilization, aid in fiscal planning
- drive platform adoption.
- Process & Compliance: Create and maintain documentation, audit logs, and reports to continuously improve business processes and ensure seamless compliance execution.
- Operations & Support: Troubleshoot complex production incidents, analyze failure conditions, and perform root-cause analysis to support a 24x7 operation.
- Collaboration & Mentorship: Guide global, cross-functional partners on IAM best practices while raising the engineering bar through code reviews, technical standards, and optimized workflows.
- Technologies we use
- Our teams leverage a diverse and modern technology stack. While specific technologies may vary by team, we generally work with:
- Languages: Go, Python, Java, TypeScript, SQL
- Datastores: Postgres, Directory architectures (e.g., LDAP)
- Tools: Docker, Kubernetes, AWS, SailPoint, Okta
- What We are Looking For:
- Experience and Core Capabilities:
- 10+ years of backend development experience across multiple layers of the stack—from databases and networking to efficient computing.
- In-depth knowledge of corporate IAM experience covering the full workforce identity lifecycle (Joiner, Mover, Leaver, Access Requests, and Certifications).
- Ability to design and implement complex distributed systems operating under high load.
- Proficiency in our core stack: Go, Python, Java, or TypeScript, with a strong DevOps mindset and end-to-end code ownership (testing, monitoring, deploying, and maintaining).
- Deep understanding of modern authentication protocols (OAuth, OIDC, SAML) and secure-by-design principles.
- Hands-on familiarity with enterprise identity solutions including IGA, MFA, PAM / PIM, JIT and Directory architectures (e.g., Okta, LDAP, SailPoint).
- Governance and Compliance:
- Familiarity with governance and compliance frameworks (SOC2, SOX, PCI), including driving audit-related access certification reviews.
- Collaboration skills:
- Strong collaborative communicator thriving in Agile environments, with a continuous learning mindset and a resourceful, "can-do" approach to complex problem-solving.
- You embody our company value of Evolve: you view challenges as learning opportunities and continuously seek to improve
Benefits
- Comprehensive Healthcare Benefits and Income Replacement Programs
- 401k with Employer Match
- Global Benefit programs that fit your lifestyle, from workspace to professional development to caregiving support
- Family Planning Support
- Gender-Affirming Care
- Mental Health & Coaching Benefits
- Flexible Vacation & Paid Volunteer Time Off
- Generous Paid Parental Leave
- Pay Transparency:
- This job posting may span more than one career level.
- In addition to base salary, this job is eligible to receive equity in the form of restricted stock units
- depending on the position offered, it may also be eligible to receive a commission. Additionally, Reddit offers a wide range of benefits to U.S.-based employees, including medical, dental
- vision insurance, 401(k) program with employer match, generous time off for vacation
- parental leave. To learn more, please visit https://www.redditinc.com/careers/ .
- To provide greater transparency to candidates, we share base salary ranges for all US-based job postings regardless of state. We set standard base pay ranges for all roles based on function, level
- country location, benchmarked against similar stage growth companies. Final offer amounts are determined by multiple factors including, skills, depth of work experience and relevant licenses/credentials
- may vary from the amounts listed below.
- The base salary range for this position is:
- $217,000 — $303,900 USD
- In select roles and locations, the interviews will be recorded, transcribed and summarized by artificial intelligence (AI). You will have the opportunity to opt out of recording, transcription and summarization prior to any scheduled interviews.
- During the interview, we will collect the following categories of personal information: Identifiers, Professional and Employment-Related Information, Sensory Information (audio/video recording)
- any other categories of personal information you choose to share with us. We will use this information to evaluate your application for employment or an independent contractor role, as applicable. We will not sell your personal information or disclose it to any third party for their marketing purposes. We will delete any recording of your interview promptly after making a hiring decision. For more information about how we will handle your personal information, including our retention of it, please refer to our Candidate Privacy Policy for Potential Employees and Contractors .
- Reddit is proud to be an equal opportunity employer
- is committed to building a workforce representative of the diverse communities we serve. Reddit is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If, due to a disability, you need an accommodation during the interview process, please let your recruiter know.
Required skills
GoPythonJavaTypeScriptSQLPostgresDockerKubernetesAWSSailPointOkta