SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Platform Security Engineer

Discord - San Francisco, CA, USA - In-office - posted 2026-09-08

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Discord is seeking a Senior Platform Security Engineer to advance its mission of keeping user communications safe through security expertise, software development, and operational excellence. The role focuses on identity and access management—determining who and what can access Discord's systems, how they authenticate, and ensuring access remains appropriately scoped. You will own software engineering projects end-to-end on a highly autonomous, horizontally integrated team. This is a code-forward role with significant leverage across the organization. Key responsibilities include: - Define identity models for autonomous agents and non-human actors at Discord, including provisioning, scoping, authentication, authorization, and auditing. - Build and evolve Access, Discord's employee authorization platform, to make permissions discoverable, role-based, least-privilege, and self-serve. - Design and harden Zero Trust architecture spanning human and service-to-service authentication for Discord's internal tooling. - Automate continuous permission right-sizing aligned with least-privilege principles. - Develop and apply secure baselines for cloud identity and help secure the software supply chain from development through CI/CD to production. - Consult on risk assessments, architectural designs, threat models, and code reviews, pragmatically balancing security with business needs. Example projects include integrating service-to-service and agent-to-service authentication into Discord's internal developer platform, building service identity provisioning using PKI and mTLS, evaluating infrastructure access tooling like Teleport, and improving secrets issuance, rotation, and scoping. Required qualifications: 5+ years building and operating production systems or infrastructure; 3+ years writing software in general-purpose languages (Python, TypeScript, Rust); 3+ years securing systems with millions of users; experience building or operating identity and access management systems at scale; understanding of modern authentication/authorization concepts (RBAC, OAuth, OIDC, SSO, Zero Trust, mTLS, cloud IAM); experience in multi-cloud environments (GCP, Cloudflare, AWS); and experience designing software for customers beyond your immediate team. Bonus experience includes container orchestration (Kubernetes, Docker), CI/CD technologies (Terraform, Bazel, Buildkite), PKI and mTLS provisioning, Zero Trust platforms (Cloudflare Access, Teleport), secrets management systems (Vault, cloud KMS), distributed systems development, complex migrations, and service mesh operation.

Similar roles