Staff Security Engineer

Brak informacji o wynagrodzeniu
MidFull-time
#330460·Dodano 12 dni temu·20
Źródło: Veeam Software
Aplikuj teraz

Tech Stack / Keywords

SecurityAIGoArchitectureCloudAPIAWSAzure

Firma i stanowisko

Veeam is the Data and AI Trust Company, specializing in data resilience and data security posture management. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide. The role focuses on defining and driving authentication and authorization architecture for Veeam Data Cloud (VDC), a cloud-native SaaS platform providing secure data protection services on AWS, Azure, and GCP, integrating with platforms like Microsoft 365 and Salesforce for customers in regulated industries.


Wymagania

  • Proven background as a Security Architect / Senior Security Engineer / Software Engineer for cloud-native, multitenant SaaS
  • Strong, hands-on expertise integrating and operating Okta, Auth0, and/or Keycloak from a software engineering perspective (SDKs/APIs, OIDC/OAuth flows, token handling, automation)
  • Proficiency in one or more of C#/.NET, Go, Java, Python, or TypeScript
  • Deep knowledge of authorization concepts and implementation: RBAC, permission modeling, policy enforcement, OAuth2/OIDC, JWT, mTLS, workload identities, tenant isolation, and secure API design
  • Strong Azure security architecture knowledge (Entra ID, AKS, networking, monitoring, hardening)
  • Experience turning vulnerability patterns for AAA into scalable platform solutions
  • Strong communication skills in English; comfortable in distributed teams

Bonus Skills:

  • Building shared authn/authz libraries, policy engines, or security control plane services
  • Secure logging/telemetry design and data sanitization
  • Multicloud/hybrid identity experience

Obowiązki

  • Define end-to-end security architecture for identity and authorization across VDC (control plane and data plane)
  • Evaluate and define authorization standards for multi-tenant SaaS, including RBAC/ABAC patterns, API authorization, and consistent permission modeling across services
  • Define role/permission models for customer users, customer admins, internal support/admin access, and service-to-service authorization
  • Design and standardize identity and authorization for agents and connectors running in customer environments (token/scopes, least privilege, rotation)
  • Define shared security capabilities like tenant isolation, policy enforcement, and rate limiting
  • Set standards for secure logging and telemetry for authentication and authorization
  • Turn repeat security issues into reusable guardrails and shared services
  • Support compliance work (e.g., SOC 2, FedRAMP-style, IRAP) through lasting design improvements
  • Write code, perform code reviews, and submit PRs to VDC repositories; embed with product teams to deliver authorization changes end-to-end
  • Join design reviews and help teams adopt standard security patterns

Oferta

  • 26 paid days off annually, plus 4 extra global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Paid parental, maternity, and paternity leave
  • Fully covered family medical plan, dental, rehab, and vaccinations
  • Life, critical illness, and disability insurance
  • Employer pension contribution via PPK
  • Monthly Edenred allowance of 450 PLN for meals
  • MultiSport card fully covered by Veeam, giving access to sports facilities nationwide
  • Up to 12 free therapy sessions annually, plus legal and financial advice
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops and learning events like the annual Global Day of Learning
Płatny urlop
Płatne święta
Opieka zdrowotna
Ubezpieczenie
Karta sportowa
Bonusy
Dofinansowanie szkoleń

Inne informacje

If the applicant is permanently present outside of Poland, Veeam reserves the right to refuse to consider the application for a job. Remote work is only possible if the employee is located in Poland.

Veeam Software is an equal opportunity employer and does not tolerate discrimination in any form on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state or local law. All information will be kept confidential.

Personal data collected during recruitment will be processed in accordance with Veeam's Recruiting Privacy Notice. By applying, candidates consent to this processing. Misrepresentation or falsification of information may result in disqualification or termination of employment.

Veeam Software

Veeam Software

26 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz