Senior API Platform Engineer (.NET, API Management & Auth0)

Sorry, this job was removed at 08:23 a.m. (CST) on Thursday, Jul 03, 2025
Easy Apply
Xenia, OH
In-Office
Artificial Intelligence • Cloud • Information Technology • Software • Consulting • Data Privacy
The Role
About Xebia

Xebia is a trusted advisor in the modern era of digital transformation, serving hundreds of leading brands worldwide with end-to-end IT solutions. The company has experts specializing in technology consulting, software engineering, AI, digital products and platforms, data, cloud, intelligent automation, agile transformation, and industry digitization. In addition to providing high-quality digital consulting and state-of-the-art software development, Xebia has a host of standardized solutions that substantially reduce the time-to-market for businesses.

Xebia also offers a diverse portfolio of training courses to help support forward-thinking organizations as they look to upskill and educate their workforce to capitalize on the latest digital capabilities. The company has a strong presence across 16 countries with development centres across the US, Latin America, Western Europe, Poland, the Nordics, the Middle East, and Asia Pacific.


Job Description: Senior API Platform Engineer (.NET, API Management & Auth0)
Position Title: Senior Engineer
Location: Gurugram
Job Type: Contract


Overview:

We are seeking a Senior API Platform Engineer with expertise in .NET, API Management, and Auth0 to design and implement secure, scalable, and high-performance API ecosystems across GCP, Azure, and Kubernetes clusters.

This role will focus on API Gateway implementation, authentication & authorization strategies, and API security best practices while ensuring seamless integration with multi-cloud and identity management solutions.

The ideal candidate has experience with multiple API gateways (e.g., Kong, Apigee, Tyk, Istio) and secure authentication flows using Auth0. Additionally, they should be comfortable working in a multi-cloud environment, implementing observability, caching, and traffic management strategies.


Key Responsibilities:

API Gateway Implementation & Management:

  • Architect, implement, and manage API Gateway solutions such as Kong, Apigee, Tyk, or Istio across GCP and Azure Kubernetes clusters.
  • Configure authentication and authorization mechanisms, integrating Auth0 for token-based security (JWT, OAuth2, OpenID Connect).
  • Define fine-grained routing rules using Virtual Services, handle ingress routing and path mapping.
  • Implement rate limiting and throttling using Redis or custom rate-limiting services.
  • Set up API quotas for user/client/tenant-based restrictions.
  • Optimize traffic management strategies to enhance API performance and availability.

Authentication & Authorization Management:

  • Implement secure authentication flows using Auth0, including SSO, MFA, and user role-based access control.
  • Integrate Auth0 with .NET-based applications and API gateways for centralized authentication.
  • Enforce JWT validation at the gateway for authentication.
  • Enable mTLS across all inter-service communications within the service mesh.
  • Set up policy evaluation & authorization mechanisms at the API Gateway level.
  • Configure TLS termination and client certificate management.
  • Manage CORS policies using VirtualService or EnvoyFilter for advanced control over allowed origins, methods, and headers.

Observability & Monitoring (New Relic):

  • Implement API monitoring and performance tracking using New Relic.
  • Set up real-time visibility into API traffic patterns, latency, error rates, and dependencies.
  • Enable end-to-end request tracing to facilitate debugging and troubleshooting.
  • Configure alerts and dashboards in New Relic for API health and security monitoring.

Caching & Performance Optimization:

  • Implement response caching at the API Gateway level for static or infrequently changing data.
  • Define cache policies based on API endpoints and response types using cache-control headers.
  • Improve API resilience by configuring retry policies, request timeouts, and circuit breakers to prevent cascading failures.

API Management & Developer Portal:

  • Expose APIs to external users via a developer portal, enabling API discovery and self-service onboarding.
  • Establish API governance policies, including versioning strategies and deprecation policies.
  • Ensure consistent API security, traffic control, and quota enforcement across services.
  • Provide self-service capabilities for teams to register and manage their API integrations.

Security & Compliance:

  • Implement and maintain best practices for securing APIs, including OAuth2, OpenID Connect, two-factor authentication (2FA), and SAML.
  • Ensure compliance with industry security standards (e.g., GDPR, SOC2, and enterprise security policies).
  • Protect API traffic using mTLS encryption, request validation, and access control mechanisms.

Collaboration & Documentation:

  • Work closely with developers, DevOps, security, and product teams to align API architecture with business goals.
  • Document API configurations, authentication flows, and security policies for internal teams.
  • Provide technical guidance and training to teams on best practices for API management, authentication, and security.

Skills & Qualifications:

Technical Skills:

  • Proficiency in C# and .NET technologies (ASP.NET Core, Web API).
  • Strong experience with Auth0, including user management, MFA, and social login integrations.
  • Expertise in API gateways (Kong, Apigee, Tyk, or Istio) and API security mechanisms.
  • Experience with OAuth2, OpenID Connect, JWT authentication, and claims-based authorization.
  • Familiarity with RESTful API design, microservices, and cloud-native architectures.
  • Strong knowledge of New Relic for API observability and performance monitoring.
  • Hands-on experience with GCP, Azure, and Kubernetes-based API deployments.

Experience:

  • 6+ years of experience in API management, identity management, and security.
  • Proven experience integrating Auth0 with .NET applications and API Gateways.
  • Strong background in multi-tenant API architectures and developer portal management.

Desired Qualifications:

  • Experience with Azure Active Directory or other IAM solutions.
  • Familiarity with CI/CD processes for API deployments.
  • Experience in Agile development environments.

Some useful links:

Xebia | Creating Digital Leaders.

https://www.linkedin.com/company/xebia/mycompany/

http://twitter.com/xebiaindia

https://www.instagram.com/life_at_xebia/

http://www.youtube.com/XebiaIndia


Similar Jobs

CrowdStrike Logo CrowdStrike

Senior Back-end Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
24 Locations
10000 Employees
140K-215K Annually

CrowdStrike Logo CrowdStrike

Back-end Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
22 Locations
10000 Employees
120K-180K Annually

CrowdStrike Logo CrowdStrike

Engineer II - Sensor (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
35 Locations
10000 Employees
100K-145K Annually

CNA Logo CNA

Senior Client Services Manager

Cloud • Insurance • Professional Services • Analytics • Cybersecurity
Hybrid
3 Locations
7000 Employees
72K-141K Annually
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Atlanta, GA
3,254 Employees
Year Founded: 2001

What We Do

We are a pioneering IT consultancy company, following 1 mission, 4 values, and 4 business principles.

WHO WE ARE
With over 20 years of experience, our global network of passionate technologists and pioneering craftsmen deliver cutting-edge technology and game-changing consulting to companies on the brink of transformation.

Founded in 2001, Xebia was the first Dutch organization to embrace the Agile way of working, with gurus like Jeff Sutherland. Since then, we have grown from a Java company into a full-service digital consulting company with 4500+ professionals working on a worldwide ambition.

We are organized in complementary chapters – teams with a tremendous amount of knowledge and experience within a particular field, such as Agile, DevOps, Data and AI, Cloud, Software Technology, Low Code, and Microsoft.

We help the world’s top 250 companies and category leaders overcome digital challenges, embrace innovation, adopt new technology, and implement new business models. In addition to high-quality consulting, we also provide offshoring and nearshoring services.

WHAT WE DO
★ Digital Strategy
★ DevOps and SRE
★ Agile
★ Data and AI
★ Cloud
★ Microsoft Solutions
★ Software Technology
★ Security
★ Low Code
★ Xebia Academy

HOW WE ARE ORGANIZED
Xebia has launched specific labels, like GoDataDriven, Binx, Xpirit, Qxperts, Stackstate, Instruqt, Xccelerated, and Xebia Academy Complementing our organic growth, other specialized companies join our successful journey and also operate within the Xebia network under their own brand name, like Appcino, coMakeIt, g-company, Oblivion, PGS Software, and SwissQ. Together we are Xebia.

With 17 offices in Atlanta, San Francisco, UK, Vietnam, Canada, Amsterdam, and Hilversum (the Netherlands), Belgium, Germany, Gurgaon, Jaipur, Hyderabad, Pune, Bangalore, Poland, Melbourne, Mexico, and Dubai.

✉️ [email protected]

Similar Companies Hiring

PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Scotch Thumbnail
Software • Retail • Payments • Fintech • eCommerce • Artificial Intelligence • Analytics
US
25 Employees
Idler Thumbnail
Artificial Intelligence
San Francisco, California
6 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account