SlipstreamJobsFresh Startup & VC-Backed Jobs

Software Engineer - Infrastructure Security

WorkOS - San Francisco, CA, United States - Hybrid - posted 2026-09-23

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

WorkOS is a $2B Series C-funded developer platform that provides enterprise-ready authentication, SSO, directory sync, and identity infrastructure. The company powers critical authentication and authorization systems for leading AI companies including OpenAI, Cursor, and Perplexity. The Infrastructure Security team is responsible for building and maintaining the security primitives that enable engineering teams to securely build applications while meeting compliance obligations. The team focuses on workload identity and authorization—how internal applications authenticate to each other and to external services, and how access is granted and enforced. As a Software Engineer on this team, you will: - Build workload identity infrastructure that makes short-lived identity credentials a default part of every application's runtime environment, working in partnership with application platform owners. - Bring identity-based authentication to internal services by working with owners of major internal dependencies to support identity certificates, establish them as the golden path for new applications, and drive migration of existing systems. - Eliminate static secrets by replacing all static passwords and service tokens with short-lived identity credentials, and build identity-authenticated egress proxies and API abstractions that inject and automatically rotate managed secrets for external dependencies. - Unify authorization by building a single interface and framework through which authorization policies are centrally managed and enforced across the organization. You will be a platform builder who loves creating infrastructure that other engineers rely on daily, with deep expertise in service-to-service authentication and authorization. You think systematically about bootstrapping, circular dependencies, availability, and failure modes. You are pragmatic about adoption—understanding that shipping the primitive is half the job—and can drive adoption across teams while retiring legacy systems. You build trust with engineers by understanding their priorities and making security frictionless. You are excited about using AI and automation to scale platform work and reduce toil. QUALIFICATIONS: - 5+ years of software engineering experience with a focus on security-related platform, infrastructure, or distributed systems - Strong working knowledge of secrets management, fine-grained authorization, and workload identity systems - Familiarity with the Kubernetes ecosystem and authentication/authorization technologies including JWTs, X.509 certificates, PKI, cert-manager, SPIFFE/SPIRE, and OPA - Experience building and operating production infrastructure that other teams depend on, with attention to availability and failure modes - Proven ability to drive cross-team adoption of platform capabilities or lead large-scale migrations

About WorkOS

SaaS / Enterprise Software — developer platform for enterprise-ready authentication, SSO, and directory sync.

Similar roles