Senior Software Engineer - Identity & Access Management

Brex · Seattle, Washington, United States · Engineering · listed September 30, 2026

The shape of it

Seniority
Senior
Experience asked
7+ years
Where
Hybrid
Stated pay
$192,000 – $240,000
Requirements listed
8
Length
848 words

In the posting’s own words

As a Senior Software Engineer on IAM, you will lead projects and initiatives to improve the security, reliability, and developer experience of our authentication, authorization, and identity platforms for customers, partners, and internal systems. You will scope and drive projects with clear impact, work cross-functionally with the broader engineering organization, help define the team’s technical quality, and help evolve the identity platform as Brex invests in signed identity propagation, delegated and agent identity, fine-grained authorization, stronger auditability, and enterprise-ready customer authentication experiences.

What it asks for · 8

  • 7+ years of professional experience designing, developing, and deploying applications.
  • Strong software engineering fundamentals and experience building reliable production backend systems.
  • Experience leading complex projects and mentoring other engineers.
  • Have strong API design fundamentals, rigor around testing, code quality, and documentation.
  • An understanding of core IAM concepts such as authentication, authorization, sessions, tokens, MFA, SSO, OAuth, SAML, OIDC, or RBAC.
  • Clear communication, collaborates well across teams, and are effective in cross-functional technical discussions.
  • Demonstrating care about operational excellence and know how to improve system reliability, reduce toil, and maintain high-quality services over time.
  • Having a strong product and engineering judgment and can balance security, usability, and developer experience.

Also a plus

  • Experience working on identity and access management, authentication, authorization, or audit systems in a production environment.
  • Hands-on experience with Okta, Oso, SSO, SAML, OIDC, OAuth, passkeys, or WebAuthn.
  • Experience building enterprise-facing admin controls, custom roles, delegated access flows, or audit trails.
  • Worked on platform teams that provide shared infrastructure, paved roads, or secure-by-default frameworks for other engineering teams.

What the job covers

  • Design, build, and operate backend systems and APIs for authentication, authorization, identity context, and audit-related workflows.
  • Lead engineers on initiatives end to end, from technical design and implementation through rollout, measurement, and operational support.
  • Improve login and access experiences across SSO, MFA, step-up authentication, delegated access, and enterprise identity flows.
  • Build and extend authorization systems that support custom roles, resource-aware access control, and secure defaults for product teams.
  • Help create durable, identity-aware audit trails and attribution for user, service, delegated, and agent-driven actions.
  • Partner closely with engineers across Brex to make IAM integrations secure by default and easier to adopt through clear patterns, tooling, and shared libraries.
  • Mentor engineers on the team to deliver high-quality code and produce operational improvements that raise the bar for reliability and maintainability across the team’s systems.

Tools and skills named

Security & compliance
  • IAM5×
  • Audit4×
  • Security2×
Ways of working
  • Cross-functional
  • Mentorship
  • Technical writing
  • Testing
Go to market
  • Partnerships

Words the posting leans on

  • experience11×
  • authentication9×
  • systems9×
  • access8×
  • authorization8×
  • identity8×
  • engineering7×
  • engineers5×
  • platform5×
  • authentication authorization4×
  • delegated4×
  • end4×
  • technical4×
  • build3×
  • clear3×
  • custom3×

Counted from the posting after the mission statement and the legal notices are set aside. The ones near the top are the ones a screener is looking for.

The posting, your resume, and the gaps between them. One click loads all three.

More open at Brex

every open role at Brex →

How this page was made

An automated read of a public job posting, fetched October 1, 2026 and last changed by Brex on September 30, 2026. Every list above is pulled from the posting’s own sentences — nothing rewritten, nothing added, no judgment about the role or the company. Counts and seniority are read off the text by rule, so they can be wrong where the posting is unusual. The original is the only thing that binds. Openings close without warning; check the source before spending an evening on it.