Principal Software Engineer (Identity)
About the role
We are seeking a Principal Software Engineer – Identity & Authentication to serve as a technical authority and strategic leader responsible for the design, reliability, scalability, and security of ShareFile’s identity and authentication platform. You will lead the evolution of our authentication architecture, ensuring secure, seamless access for millions of users across enterprise SaaS environments. This is a hybrid role, splitting your time between your home office and our Raleigh, NC office. Candidates must already reside in the area to be considered, as relocation assistance is not available at this time.
Responsibilities
- Own and architect ShareFile’s identity, authentication, and authorization systems
- Design and evolve secure, scalable solutions supporting SAML, OAuth 2.0, OpenID Connect, JWT, MFA, and social login
- Lead and support enterprise SSO integrations with major identity providers (Okta, Azure AD / Entra ID, Ping, Google, etc.)
- Ensure high availability, performance, and operational resilience of identity services in a large-scale SaaS environment
- Drive security best practices, including token lifecycle management, key rotation, secrets handling, and compliance alignment (SOC 2, ISO, etc.)
- Partner with product, platform, and security teams to deliver robust identity solutions aligned with business and compliance needs
- Resolve complex production issues and participate in escalation and on-call rotations
- Define and promote standards, patterns, and reference architectures for authentication and authorization
- Mentor senior and mid-level engineers and contribute to architectural reviews and platform roadmaps
- Champion automation, observability, and operational excellence for identity services
Requirements
- 5+ years of professional software engineering experience with a strong focus on identity and authentication
- Deep hands-on experience with SAML 2.0, OAuth 2.0, OpenID Connect, JWT, and modern authentication flows
- Proven experience building and operating SSO and identity platforms at scale in SaaS environments
- Strong backend development experience (e.g., C#, Java, Go, or Node.js) and API design
- Solid understanding of authentication security principles, threat models, and mitigations
- Experience integrating with enterprise identity providers
- Experience with cloud platforms (AWS, Azure, or GCP) and cloud-native architectures
- Familiarity with CI/CD pipelines and infrastructure-as-code practices
Skills
- Experience with IAM platforms such as Auth0, Okta, Azure AD B2C, or Amazon Cognito
- Familiarity with zero-trust architectures and modern authorization models
- Experience supporting compliance-driven environments (SOC 2, ISO 27001, GDPR)
- Experience troubleshooting distributed systems
- Experience building modern web applications using React
- Strong communication skills and the ability to influence across teams
- Customer-focused mindset with a passion for secure, intuitive user experiences
Pay
Base Salary Range: $153,000 – $189,000. This position is also eligible to participate in our performance-based annual corporate bonus plan. Final base compensation is determined by job-related skills, education, demonstrable experience, and allowance for future and continued salary growth.
Benefits
- Medical, dental, vision, life, and disability insurance
- 401(k) retirement savings plan
- Tuition Reimbursement program
- Additional voluntary benefits including critical illness/hospital indemnity, identity theft protection, auto & home insurance, legal, and pet insurance
- Competitive salary, bonus, and best-in-class Employee Stock Purchase Program (ESPP) with a 27-month lookback
- Flexible paid vacation time, paid day off for your birthday, and company holidays
- A variety of leave plans, including Parental Leave
- Employee Assistance Program (EAP) and an employee well-being program focusing on physical, mental, and financial health