The role involves designing and maintaining secure, high-availability backend services for authentication and access management in a cloud environment, focusing on security, reliability, automation, and collaboration within a global team.
Key Responsibilities
Architect and operate high-availability backend services for authentication, authorization, and certificate management.
Lead the full service lifecycle from design and threat modeling to deployment, observability, and cost optimization.
Collaborate with security and product teams to streamline remote access workflows and automate security processes.
Participate in on-call rotations to maintain system resilience, perform root-cause analysis, and harden infrastructure against threats.
Develop and evolve Infrastructure as Code (IaC) patterns to enhance security and deployment efficiency.
Requirements
Proficiency in building and scaling production-grade backend services ideally in Go or Python within AWS or similar major cloud environments, with a focus on API design and system reliability.
A deep understanding of modern security fundamentals, including PKI certificates, TLS mTLS, OAuth OIDC, and IAM concepts, with the ability to apply defense in depth to distributed systems.
Hands-on experience with the modern SDLC, including CI/CD pipelines, Terraform or equivalent Infrastructure as Code (IaC), and comprehensive observability metrics, logging, and alerting for mission-critical services.
Experience in designing and operating high-availability backend services that manage authentication, authorization, and certificate lifecycles to ensure secure access across cloud and appliance environments.
Experience in leading the full service lifecycle from initial architectural design and threat modeling (STRIDE) to deployment, observability, and long-term cost efficiency.
Ability to partner with Security Governance and product teams to streamline remote-access flows, translating complex security requirements into automated workflows for engineering teams.
Participation in a global follow-the-sun on-call rotation, performing root-cause analysis, and hardening infrastructure against emerging threats to maintain system resilience.
Ability to evolve Infrastructure as Code (IaC) patterns to enforce least-privilege principles, improving security posture and deployment velocity of the ecosystem.
Strong communication skills to articulate security trade-offs to diverse stakeholders and a willingness to share operational responsibilities within a global, collaborative team.
Willingness to work primarily from the Prague office in compliance with company policies, unless on PTO, work travel, or other approved leave.
Benefits & Perks
Flexible time off
Wellness resources
Company-sponsored team events
Ready to Apply?
Join Pure Storage and make an impact in renewable energy