Overview
Security Software Engineer (IAM) responsible for Vercel’s Identity and Access Management strategy across corporate and production environments.
What you'll do
- Own IAM strategy end to end, including roadmap, standards, and architecture for corporate and production.
- Migrate Okta and related IAM configuration to Terraform.
- Enforce least-privilege access controls across cloud, SaaS, and production infrastructure.
- Partner with platform and engineering teams to embed IAM best practices early in design.
- Build and manage MDM/MAM tooling to secure endpoint and mobile device access.
- Drive automation across provisioning, deprovisioning, and access review workflows.
- Serve as IAM subject matter expert across Security, IT, and Engineering.
What you'll need
- 7+ years of experience in identity, access management, or platform security engineering.
- Deep expertise with Okta, including SSO, MFA, lifecycle management, and API-driven automation.
- Proficiency in Terraform and commitment to managing IAM as code.
- Experience designing IAM strategy at scale across corporate (IT/SaaS) and production (cloud infrastructure).
- Hands-on experience with AWS or GCP IAM (service accounts, roles, workload identity federation).
- Background in MDM/MAM solutions (Jamf, Intune, or equivalent).
- Ability to operate autonomously and own decisions in a fast-moving environment.
Nice to have
- Experience leading Terraform migrations for IAM or identity infrastructure at scale.
- Background in SCIM, SAML, OIDC, and directory services (e.g., Google Workspace, Azure AD).
- Contributions to internal developer platforms or security tooling.
- Experience at a developer tools, infrastructure, or SaaS company.
- Certifications such as Okta Certified Professional/Administrator, AWS Security Specialty, or CISSP.
Details
- Role is remote within the United States.
- If based within commuting distance of SF or NY offices, includes in-office anchor days on Monday, Tuesday, and Friday.
- Reports to the Head of Security.
Read the full description and apply on the company’s own careers page.