Scale is building the Generative AI Data Engine, SGP, Donovan, and other products that power advanced LLMs and generative models through RLHF, human data generation, model evaluation, safety, and alignment. The Platform Engineering team needs to support the design and development of core platforms and software systems, including identity, access management, authorization, and authentication, to ensure the security and functionality of these AI-powering products.
Requirements
- Extensive experience in software development and a deep understanding of distributed systems and public cloud platforms (AWS preferred).
- Strong knowledge of authentication standards such as OAuth 2.0, OIDC, SAML, and JWT.
- Experience securing API access and implementing access control mechanisms at the application level.
- Proficiency in integrating IAM solutions with applications built using frameworks such as Java, Python, Node.js, or .NET.
- Strong understanding of Zanzibar-based ReBAC models, relationship tuples, and access control evaluation.
- Hands-on experience working with OpenFGA, Authzed, Topaz, or similar ReBAC frameworks at scale.
Responsibilities
- Drive the design, and implementation of our IAM infrastructure to ensure secure authentication and authorization across enterprise systems.
- Manage authentication mechanisms such as Single Sign-On (SSO), Multi-Factor Authentication (MFA), and federated identity solutions (SAML, OAuth, OpenID Connect).
- Work with auditors and security teams to enforce identity governance policies to ensure compliance with security policies, industry regulations (e.g., NIST, SOC2, ISO 27001), and organizational standards.
- Presenting technical information to teams and stakeholders, providing guidance and insight on IAM management and best practices.
Other
- 3+ years of full-time engineering experience, post-graduation with specialities in back-end systems.
- Show a track record of independent ownership of successful engineering projects.
- Possess excellent communication and collaboration skills, and the ability to translate complex technical concepts to non-technical stakeholders.