Senior Security Software Engineer, Identity and Access Management

Posted 11 Days Ago
San Mateo, CA
208K-259K Annually
3-5 Years Experience
Computer Vision • Gaming • Software • Virtual Reality • Web3 • Metaverse
The Role
Refine and implement automation around identity lifecycle and access management, tackle complex access management challenges at scale, lead access rightsizing initiatives, implement scalable identity lifecycle management, develop security services within the Roblox infrastructure ecosystem.
Summary Generated by Built In

Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. 

At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. 

A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone.

As a Senior Security Software Engineer on the Identity and Access Management (IAM) team at Roblox, your primary responsibility will be to design and implement robust IAM solutions that safeguard our critical production infrastructure. You'll engineer scalable systems for workload authentication and authorization, manage privileged access, and establish a secure "golden path" for developers. Your work will directly impact the security posture of our entire production environment, ensuring that only authorized workloads and individuals have access to sensitive resources. This role is essential for mitigating security risks, maintaining compliance, and fostering a culture of security throughout Roblox's engineering organization.

You Will:

  • Engineer Hybrid Production IAM at Scale: You will design and implement scalable IAM solutions specifically tailored for Roblox's hybrid production environment, encompassing both on-premises and cloud infrastructure, ensuring secure and efficient access for workloads and services across the entire ecosystem.
  • Develop and Manage Workload Authentication & Authorization: You will develop and manage robust authentication and authorization mechanisms specifically for workloads and services accessing Roblox's production environments, ensuring least privilege and adherence to secure access controls.
  • Establish the Secure Golden Path for Development: You will develop and maintain a streamlined, secure "golden path" framework that empowers Roblox developers to easily build tools and services with appropriate IAM controls baked in by default, ensuring security is seamlessly integrated into the development lifecycle.
  • Have the independence, opportunity and the end-to-end responsibility to develop security services within the Roblox infrastructure ecosystem.

You Have:

  • Familiarity with OPA, Topaz, SPIFFE/SPIRE: You are familiar with open policy agent (OPA), Topaz, and the SPIFFE/SPIRE framework and similar technologies used for policy enforcement, workload attestation, and identity federation in cloud-native environments.
  • Experience with Public Key Infrastructure (PKI): You have hands-on experience with the design, implementation, and maintenance of PKI solutions.
  • Experience with Privileged Access Management (PAM): You have hands-on experience implementing and maintaining PAM solutions to control, monitor, and audit privileged access within production environments, demonstrating your ability to mitigate the risk of unauthorized access or misuse.
  • Proficiency in diverse access control models, including Role-Based (RBAC), Attribute-Based (ABAC), and Risk-Based Access Control systems!
  • 4+ years of relevant professional experience in building scalable, available, distributed backend applications!
  • Proficiency with at least one object oriented programming language (Python, Java, Go C++, C# .NET).
  • Knowledge of REST API, design patterns, and scalable containerized systems and microservices.
  • Experience mentoring as well as leading the work of junior engineers.

You Are:

  • A great technical leader: You have experience with leading the technical work to deliver automation.
  • Team-oriented: a collaborative team player who enjoys working with others.
  • Passionate about security: You have experience with security, or you are curious about it and you are willing to learn and grow.

For roles that are based at our headquarters in San Mateo, CA: The starting base pay for this position is as shown below. The actual base pay is dependent upon a variety of job-related factors such as professional background, training, work experience, location, business needs and market demand. Therefore, in some circumstances, the actual salary could fall outside of this expected range. This pay range is subject to change and may be modified in the future. All full-time employees are also eligible for equity compensation and for benefits.

Annual Salary Range

$208,260$258,720 USD

Roles that are based in our San Mateo, CA Headquarters are in-office Tuesday, Wednesday, and Thursday, with optional in-office on Monday and Friday (unless otherwise noted).

You’ll Love: 

  • Industry-leading compensation package
  • Excellent medical, dental, and vision coverage
  • A rewarding 401k program
  • Flexible vacation policy
  • Roflex - Flexible and supportive work policy 
  • Roblox Admin badge for your avatar
  • At Roblox HQ: 
    • Free catered lunches five times a week and several fully stocked kitchens with unlimited snacks
    • Onsite fitness center and fitness program credit
    • Annual CalTrain Go Pass

Roblox provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Roblox also provides reasonable accommodations for all candidates during the interview process.

Top Skills

C#
C++
Go
Java
Python

What the Team is Saying

Claus
Ying
Denise
Daniel
Andrea
The Company
HQ: San Mateo, CA
2,500 Employees
Hybrid Workplace
Year Founded: 2004

What We Do

Roblox is reimagining the way people come together by enabling them to create, connect, and express themselves in immersive 3D experiences built by a global community. Our mission is to connect billions of users with optimism and civility, which starts by fostering a safe and inclusive environment—one that inspires creativity and empowers positive relationships between people around the world.

Why Work With Us

Every day, Roblox employees tackle complex questions and drive incredible innovation. Join us in building the future of human connection and communication.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Roblox Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

We are requiring employees to be in the office three days a week – with core days being Tuesday, Wednesday, and Thursday. On Mondays and Fridays, employees may choose to work remotely, although the office will still be open.

Typical time on-site: 3 days a week
Company Office Image
HQSan Mateo, CA
London, GB
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account