AnmeldenApp laden

Jobs › Tokyo › Stellenangebot vor 2 Tagen

Security Software Engineer, IAM

Vercel · Remote (Worldwide)

Remote, weltweitEnglisch

Über die Stelle

Aus der Anzeige des Arbeitgebers · Vercel · veröffentlicht am 8. Oktober 2026

<p> <strong>Headquarters:</strong> Remote - United States </p> <div class="content-intro"><h2>About Vercel:</h2> <p><span>Vercel is the agentic infrastructure company, freeing people and agents to ship what's next. For more than a decade we've helped builders move from idea to production with speed, security, and exceptional developer experience.</span></p> <p><span>Now we're scaling our products for both agents and people to ship and run software, built in the open and trusted by OpenAI, PayPal, Ramp, Supreme, and millions of developers worldwide.</span></p></div><h2>About the Role:</h2> <p>Traditional IAM teams operate as an approval queue: a request comes in, someone reviews it, grants it, and (hopefully) remembers to revoke it. Access reviews become quarterly spreadsheet exercises, audit evidence is assembled by hand, and the central team becomes the bottleneck for every decision. That model doesn't scale past a certain point, and Vercel is past it. Adding more approvers doesn't close the gap. Building the system that makes access self-serve, time-bound, and provable does.</p> <p>This role is about building that system. Identity at Vercel should work like the rest of our infrastructure: defined as code, reviewed in pull requests, deployed through CI, and observable in production. You'll own that transformation end to end: migrating Okta and all related IAM configuration fully behind Terraform, and building the self-serve access platform (including just-in-time access) that lets team and system owners define, request, and time-bound their own access instead of routing every decision through a central team. Provisioning, deprovisioning, and access reviews become workflows the system runs, with the audit evidence for SOC 2 and similar generated as a byproduct rather than a manual scramble.</p> <p>You'll also own the harder connective work: corporate IAM (employee identity, SaaS access, devices) and production IAM (service accounts, infrastructure permissions, on-call and prod access) usually live in separate silos with separate tools and separate evidence trails. You'll build them as one identity plane.</p> <p>And identity itself is changing shape. As agents increasingly act on behalf of users and systems, the old model of "one human, one identity" doesn't hold, and there's real debate about how to solve it: carry the human's identity through every hop the agent makes, or give the agent its own scoped identity that never impersonates the user. We don't have a fixed answer yet. We want someone who wants to be in the room helping us decide and then build it.</p> <p>Because of this, we're optimizing for someone who wants to build identity infrastructure as software, not administer identity products. A software engineer who's gone deep on identity, or an IAM engineer with a strong engineeri

Genannte Fähigkeiten

DevOps

Sieh deinen Match-Score für jede Stelle

BabZituna bewertet jede Stelle nach sechs echten Kriterien gegen dein Profil und zeigt dir, WARUM sie so abschneidet, auf Fairness geprüft (das öffentliche Bias-Audit lesen).

App laden → ✓ 100 % kostenlos für Jobsuchende
Wie eine Stelle abschnitt Beispiel
Fähigkeiten96Erfahrung90Standort84Arbeitsweise74Anstellungsart61GehaltKeine Daten

Beispielwerte, kein echter Kandidat. Jedes Kriterium wird aus deinem eigenen Profil mit bis zu 100 Punkten bewertet, und eines, das wir nicht messen können, sagt das, statt zu raten.