Software Engineer - IAM (OIDC/OAuth)
We're looking for a Software Engineer with Identity and Access Management (IAM) domain experience to support and enhance an enterprise OpenID Connect platform used across a large application ecosystem.
This is primarily an application engineering role, not a Kubernetes, DevOps, SRE, or infrastructure engineering position. You'll work on the identity platform itself. Investigating authentication and authorization issues, onboarding applications, maintaining Node.js/TypeScript services, implementing platform enhancements, and troubleshooting complex OAuth2 and OpenID Connect workflows.
The ideal candidate has hands-on experience building, supporting, or extending identity platforms and a strong understanding of OAuth2, OpenID Connect, JWTs, claims, scopes, MFA, and identity federation. You should be comfortable reading and modifying application code, debugging production issues, and diagnosing problems across application, data, and infrastructure layers.
This role operates with core collaboration hours of 6:00 PM – 12:00 AM IST to provide overlap with global teams. Outside of core hours, work is flexible and outcome-focused.
What you'll do
- Support day-to-day operation of the OIDC platform
- Investigate authentication and authorization issues
- Assist with client registrations, configuration changes, and onboarding
- Maintain Node.js and TypeScript services
- Support MFA integrations and identity federation
- Monitor platform health and respond to incidents
- Develop automation and operational tooling
- Support Elasticsearch and Redis-based services
- Participate in on-call rotations
Requirements
Identity and security
- 2–4 years of experience working with OAuth2 and OpenID Connect
- Understanding of Authorization Code Flow, Client Credentials Flow, JWT, PKCE, Claims and Scopes, MFA concepts, and Identity Federation
Development
- Node.js and TypeScript experience
- REST API development
- Git-based workflows
Platform and infrastructure
- Kubernetes fundamentals
- Linux administration
- Monitoring and troubleshooting skills
- Basic Elasticsearch knowledge
Nice to have
- Experience with oidc-provider, Keycloak, Zitadel, or Authentik
- Active Directory or Azure AD / Entra ID
Benefits
Portainer is a leading tech company offering a broad benefits package including a highly competitive salary and the ability to work anywhere in the world while still being part of a dynamic team taking on some of the most interesting challenges in the technology/infrastructure space.
Skills
As published by workable · 4 questions · 1 written answer
Basics
First name, Last name, Email, Headline, Phone, Address, Photo, Education, Experience, Summary, Resume, Are you legally entitled to work in the country where this job is located?, What is your current work status in the country this job is located? What visa or residency status do you have?, Have you ever been convicted of a criminal offence? If yes, please provide details., Are you waiting to hear about any legal charges? If yes, please provide details., Have you ever been given a disciplinary warning or been dismissed by any of your previous employers? If yes, please provide details., Do you have any medical condition, injury or illness which may affect your ability to effectively carry out the functions and responsibilities of the position you are applying for? If yes, please provide details., I declare that to the best of my knowledge, the statements made in this application and the attached CV are true and complete, and that I am not aware of any conditions or situations which may affect my ability to carry out the functions and responsibilities of the position applied for. I understand also that if any false or deliberately misleading information has been given, or I have omitted any important information, this may lead to the termination of my employment., Upload Cover Letter, Cover letter
Pick from a list (3)
- Are you currently based in India?
- Do you have 2-4 years of experience working with OAuth2 and OpenID Connect?
- You are able to work the following hours: 6:00 PM – 12:00 AM IST?
Written answers (1)
- Can you describe your hands-on experience working with OAuth2 and OpenID Connect, including any specific projects where you implemented features like Authorization Code Flow, Client Credentials Flow, JWT, PKCE, claims, scopes, MFA, or identity federation?
