Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Engineer - Auth

Datum
CompanyDatum
CategoryEngineering
LocationRemote (US)
RemoteRemote
EmploymentNot stated
LevelSenior
SalaryNot stated by the employer
Posted6 Feb 2026
Last verified30 Jul 2026
SourceEmployer career page (ashby)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Datum’s mission is to help 1k clouds thrive https://www.datum.net/blog/helping-1k-clouds-thrive/ in the AI era by unlocking internet superpowers for every builder https://www.datum.net/blog/internet-superpowers-for-every-builder/. We’re working in the open to bring the foundational capabilities that all the big guys use (private networking, peering, direct interconnection, etc) into the hands of builders and modern “alt clouds” — no network team required. One of Datum’s core values is to be connectors: of applications, services, networks, and people. As such, this role (just like all roles at Datum) will work directly with users, customers, partners, and the broader community. Another key value is to be open by default, from how we license our code https://github.com/datum-cloud/datum (AGPLv3) to how we communicate, engage with, and document our work. We believe this engenders trust from our customers and community, but also because open is the best way to build. It's more secure, more operable, and even more enjoyable. Still interested? Read on! THE ROLE We're seeking a senior/principal/staff level engineer focused on securely connecting 1k clouds together. Practically speaking, it means someone who wakes up every day thinking about federated authentication and authorization. Whether that's OAuth, SPIFFE, Authzed, Zitadel, k8s RBAC, or everything in between, the right candidate for this role can likely rattle off a few RFCs and has been dreaming of working on a system like this already. You'll work extensively with distributed systems, vendor APIs, networking protocols, software-defined networking, and cloud-native infrastructure while solving complex orchestration challenges across multiple cloud providers and edge locations. This role combines a passion for security, open-source development, and building systems that other engineers love to use. If you're intrigued by what 1 billion networks would look like, talk to us! WHAT YOU'LL DO Control Plane Infrastructure & Architecture - Design, implement, and run Datum's core authentication and authorization stack - Build customer-facing solutions to help our alt-cloud ecosystem thrive - Scale the management, monitoring, and metering of every actor in our system, human or not - Partner with leadership to advance projects with key customers, partners, and suppliers Distributed Systems & Performance - Design distributed solutions that scale from startup to hyperscale usage patterns - Implement intelligent traffic routing, load balancing, and failover - Build observability, monitoring, and diagnostic tools for complex environments - Optimize control plane performance for AI workloads and high-bandwidth applications with our network team Open Source Leadership - Drive technical networking decisions in collaboration with our open-source community - Review and mentor contributions from external developers on networking components - Maintain high code quality standards and documentation for network APIs - Represent Datum at conferences and in technical working groups Cloud-Native & AI Integration - Design networking solutions that integrate seamlessly with Kubernetes and AI patterns - Build network policies and security frameworks for multi-tenant cloud environments - Implement service mesh integration and east-west traffic optimization - Ensure compatibility with major cloud provider networking services (AWS, GCP, Azure) ABOUT YOU Authentication & Authorization - Strong working knowledge of OAuth in complex production environments with multiple IdPs, including social and commercial (AWS IAM, Azure Entra, GCP, Auth0, Okta, etc.) - Strong working knowledge of authorization (ABAC, RBAC, PBAC) and its ecosystem (Zanzibar, SpiceDB, OpenFGA, Cedar) - Experience with Workload Identity Federation and/or SPIFFE and opinions about where the puck is going Distributed Systems & Infrastructure - 5+ years of running large-scale pr
HOUSE AD982,094 openings. Erioun finds yours.Scored against your own profile, every hour.Try the radar →