
Vercel · Remote - United States
ABOUT VERCEL: Vercel is the agentic infrastructure company. We free people and agents to ship what’s next. For more than a decade, Vercel has shaped how the w...
Vercel is the agentic infrastructure company. We free people and agents to ship what’s next.
For more than a decade, Vercel has shaped how the web is built. As the team behind Next.js, v0, and AI SDK, we create products
that help builders move from idea to production with speed, security, and exceptional developer experience.
Now, software is entering a new era, and the next generation of products will not just be used by people. They will be built,
extended, and operated by agents.
We are building the platform for that future, trusted by companies like OpenAI, PayPal, Ramp, Supreme, and millions of developers
worldwide. Whether you’re building our products, supporting our customers, growing our community, or shaping our story, you’ll
help define what comes next.
As a Software Engineer on our Trust & Safety team at Vercel, you’ll build and operate systems that protect millions of developers
and projects from abuse at internet scale. You’ll analyze real-world threat actor behavior, detect emerging abuse patterns across
large datasets, and design production-ready mitigations to keep the platform safe without slowing developers. This role blends
security engineering, data analysis, and applied LLM techniques, working closely with product, infrastructure, and security teams
to turn evolving threats into scalable defenses.
If you’re based within a pre-determined commuting distance of one of our offices (SF, NY, London, or Berlin), the role includes
in-office anchor days on Monday, Tuesday, and Friday. If you're located beyond that distance, the role is fully remote. For
location-specific details, please connect with our recruiting team.
policy decisions, and scalable mitigations.
systems.
systems.
The San Francisco, CA base pay range for this role is $208,000 - $312,000. Actual salary will be based on job-related skills,
experience, and location. Compensation outside of San Francisco may be adjusted based on employee location. The total compensation
package may include benefits, equity-based compensation, and eligibility for a company bonus or variable pay program depending on
the role. Your recruiter can share more details during the hiring process.
Vercel is committed to fostering and empowering an inclusive community within our organization. We do not discriminate on the
basis of race, religion, color, gender expression or identity, sexual orientation, national origin, citizenship, age, marital
status, veteran status, disability status, or any other characteristic protected by law. Vercel encourages everyone to apply for
our available positions, even if they don't necessarily check every box on the job description.
Reddit is a community of communities. It’s built on shared interests, passion, and trust, and is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. With 100,000+ active communities and approximately 126 million daily active unique visitors, Reddit is one of the internet’s largest sources of information. For more information, visit www.redditinc.com. Our mission is to bring community and belonging to everyone in the world. Reddit is a community of communities where people can dive into anything through experiences built around their interests, hobbies, and passions. With more than 50 million people visiting 100,000+ communities daily, it is home to the most open and authentic conversations on the internet. From pets to parenting, skincare to stocks, there’s a community for everybody on Reddit. For more information, visit redditinc.com. As a Staff Software Engineer within our SPACE org (Security, Privacy, Assurance, and Corporate Engineering), you will play a critical role on the Identity & Access Management (IAM) team. In this role, you will design, deliver, and support the lifecycle of digital identities, authentication, and access across Reddit. You will partner closely with cross-functional teams to build creative, scalable solutions that align with business priorities and strict regulatory standards. We operate in a dynamic, ambiguous problem space—meaning you’ll work across multiple domains and technology stacks to keep Reddit secure. Some of our present and future challenges include: * Modernizing our identity infrastructure by replacing legacy systems with a tailored governance platform. * Provide self-service identity management lifecycle and natural language explanation of existing systems in order to improve employee experience with security systems. * Integrate Reddit’s corporate identity stack across a variety of protocols like SCIM and SAML, and across a variety of use cases (MCP and Agentic, resource automation that includes identity requirements) and increase Reddit’s maturity with “just-in-time” access and advanced identity constructs. WHAT YOU'LL DO: * Engineering & Integration: Develop, scale and maintain Reddit’s core IAM internal identity capabilities, platforms and infrastructure. Design and deploy high-quality API integrations and custom enterprise IGA connectivity solutions. * Observability & Data Analytics: Build proactive monitoring frameworks, executive-friendly dashboards, and advanced alerting. Use synthetic transactions and anomaly detection to measure system availability (aiming for multiple 9s). Utilize identity data to track license utilization, aid in fiscal planning, and drive platform adoption. * Process & Compliance: Create and maintain documentation, audit logs, and reports to continuously improve business processes and ensure seamless compliance execution. * Operations & Support: Troubleshoot complex production incidents, analyze failure conditions, and perform root-cause analysis to support a 24x7 operation. * Collaboration & Mentorship: Guide global, cross-functional partners on IAM best practices while raising the engineering bar through code reviews, technical standards, and optimized workflows. TECHNOLOGIES WE USE Our teams leverage a diverse and modern technology stack. While specific technologies may vary by team, we generally work with: * Languages: Go, Python, Java, TypeScript, SQL * Datastores: Postgres, Directory architectures (e.g., LDAP) * Tools: Docker, Kubernetes, AWS, SailPoint, Okta WHAT WE ARE LOOKING FOR: Experience and Core Capabilities: * 10+ years of backend development experience across multiple layers of the stack—from databases and networking to efficient computing. * In-depth knowledge of corporate IAM experience covering the full workforce identity lifecycle (Joiner, Mover, Leaver, Access Requests, and Certifications). * Ability to design and implement complex distributed systems operating under high load. * Proficiency in our core stack: Go, Python, Java, or TypeScript, with a strong DevOps mindset and end-to-end code ownership (testing, monitoring, deploying, and maintaining). * Deep understanding of modern authentication protocols (OAuth, OIDC, SAML) and secure-by-design principles. * Hands-on familiarity with enterprise identity solutions including IGA, MFA, PAM / PIM, JIT and Directory architectures (e.g., Okta, LDAP, SailPoint). Governance and Compliance: * Familiarity with governance and compliance frameworks (SOC2, SOX, PCI), including driving audit-related access certification reviews. Collaboration skills: * Strong collaborative communicator thriving in Agile environments, with a continuous learning mindset and a resourceful, "can-do" approach to complex problem-solving. * You embody our company value of Evolve: you view challenges as learning opportunities and continuously seek to improve. Benefits: * Comprehensive Healthcare Benefits and Income Replacement Programs * 401k with Employer Match * Global Benefit programs that fit your lifestyle, from workspace to professional development to caregiving support * Family Planning Support * Gender-Affirming Care * Mental Health & Coaching Benefits * Flexible Vacation & Paid Volunteer Time Off * Generous Paid Parental Leave Pay Transparency: This job posting may span more than one career level. In addition to base salary, this job is eligible to receive equity in the form of restricted stock units, and depending on the position offered, it may also be eligible to receive a commission. Additionally, Reddit offers a wide range of benefits to U.S.-based employees, including medical, dental, and vision insurance, 401(k) program with employer match, generous time off for vacation, and parental leave. To learn more, please visit https://www.redditinc.com/careers/. To provide greater transparency to candidates, we share base salary ranges for all US-based job postings regardless of state. We set standard base pay ranges for all roles based on function, level, and country location, benchmarked against similar stage growth companies. Final offer amounts are determined by multiple factors including, skills, depth of work experience and relevant licenses/credentials, and may vary from the amounts listed below. The base salary range for this position is: $217,000—$303,900 USD In select roles and locations, the interviews will be recorded, transcribed and summarized by artificial intelligence (AI). You will have the opportunity to opt out of recording, transcription and summarization prior to any scheduled interviews. During the interview, we will collect the following categories of personal information: Identifiers, Professional and Employment-Related Information, Sensory Information (audio/video recording), and any other categories of personal information you choose to share with us. We will use this information to evaluate your application for employment or an independent contractor role, as applicable. We will not sell your personal information or disclose it to any third party for their marketing purposes. We will delete any recording of your interview promptly after making a hiring decision. For more information about how we will handle your personal information, including our retention of it, please refer to our Candidate Privacy Policy for Potential Employees and Contractors. Reddit is proud to be an equal opportunity employer, and is committed to building a workforce representative of the diverse communities we serve. Reddit is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If, due to a disability, you need an accommodation during the interview process, please let your recruiter know.
ABOUT VERCEL: Vercel is the agentic infrastructure company. We free people and agents to ship what’s next. For more than a decade, Vercel has shaped how the web is built. As the team behind Next.js, v0, and AI SDK, we create products that help builders move from idea to production with speed, security, and exceptional developer experience. Now, software is entering a new era, and the next generation of products will not just be used by people. They will be built, extended, and operated by agents. We are building the platform for that future, trusted by companies like OpenAI, PayPal, Ramp, Supreme, and millions of developers worldwide. Whether you’re building our products, supporting our customers, growing our community, or shaping our story, you’ll help define what comes next. ABOUT THE ROLE: We're looking for a Security Software Engineer to join our Security team and own Vercel's Identity and Access Management strategy - across both corporate and production environments. This is a high-impact, ownership-heavy role: you'll define IAM architecture from the ground up, migrate Okta fully behind Terraform, and serve as the subject matter expert who levels up the entire organization on IAM best practices. You will report to the Head of Security and be located remotely within the United States. If you're based within commuting distance of our SF or NY offices, the role includes in-office anchor days on Monday, Tuesday, and Friday. WHAT YOU WILL DO: * Own the full IAM strategy for both corporate and production environments - defining the roadmap, standards, and architecture end to end * Migrate Okta and all related IAM configuration to Terraform, driving infrastructure-as-code adoption and leveling up engineering teams in its use * Lead Vercel-on-Vercel and Vercel infrastructure cleanup initiatives, ensuring our internal systems reflect the same standards we sell to customers * Design and enforce least-privilege access controls across cloud, SaaS, and production infrastructure * Partner with platform and engineering teams to embed IAM best practices early in the design process * Build and manage MDM/MAM tooling to secure endpoint and mobile device access across the organization * Drive automation across provisioning, deprovisioning, and access review workflows * Serve as the IAM subject matter expert across Security, IT, and Engineering ABOUT YOU: * 7+ years of experience in identity, access management, or platform security engineering * Deep expertise with Okta - including SSO, MFA, lifecycle management, and API-driven automation * Proficient in Terraform and committed to managing IAM infrastructure as code * Experience designing IAM strategy at scale - across both corporate (IT/SaaS) and production (cloud infrastructure) environments * Hands-on experience with AWS or GCP IAM - service accounts, roles, workload identity federation * Background in MDM/MAM solutions (Jamf, Intune, or equivalent) * Strong collaborator who can drive alignment across Engineering, IT, Compliance, and Security teams * Comfortable operating with autonomy and owning decisions in a fast-moving environment BONUS IF YOU: * Experience leading Terraform migrations for IAM or identity infrastructure at scale * Background in SCIM, SAML, OIDC, and directory services (e.g., Google Workspace, Azure AD) * Contributions to internal developer platforms or security tooling * Experience at a developer tools, infrastructure, or SaaS company * Certifications such as Okta Certified Professional/Administrator, AWS Security Specialty, or CISSP BENEFITS: * Competitive compensation package, including equity. * Inclusive Healthcare Package. * Learn and Grow - we provide mentorship and send you to events that help you build your network and skills. * Flexible Time Off. * We will provide you the gear you need to do your role, and a WFH budget for you to outfit your space as needed. The San Francisco, CA base pay range for this role is $208,000 - $312,000. Actual salary will be based on job-related skills, experience, and location. Compensation outside of San Francisco may be adjusted based on employee location. The total compensation package may include benefits, equity-based compensation, and eligibility for a company bonus or variable pay program depending on the role. Your recruiter can share more details during the hiring process. Vercel is committed to fostering and empowering an inclusive community within our organization. We do not discriminate on the basis of race, religion, color, gender expression or identity, sexual orientation, national origin, citizenship, age, marital status, veteran status, disability status, or any other characteristic protected by law. Vercel encourages everyone to apply for our available positions, even if they don't necessarily check every box on the job description.
ABOUT VERCEL: Vercel is the agentic infrastructure company. We free people and agents to ship what’s next. For more than a decade, Vercel has shaped how the web is built. As the team behind Next.js, v0, and AI SDK, we create products that help builders move from idea to production with speed, security, and exceptional developer experience. Now, software is entering a new era, and the next generation of products will not just be used by people. They will be built, extended, and operated by agents. We are building the platform for that future, trusted by companies like OpenAI, PayPal, Ramp, Supreme, and millions of developers worldwide. Whether you’re building our products, supporting our customers, growing our community, or shaping our story, you’ll help define what comes next. ABOUT THE ROLE: We're looking for a Security Engineer to join our Cloud Security Engineering team. In this role, you'll help strengthen the security of our platform by building and improving the controls that protect our infrastructure. You'll play a key role in making security a core part of how we build, deploy, and scale our systems, while helping the company grow securely and confidently. You'll report to the Security Operations Manager, and this is a hybrid or fully remote within the United States. If you're based within commuting distance of our SF or NY offices, the role includes in-office anchor days on Monday, Tuesday, and Friday. WHAT YOU WILL DO: * Design and implement scalable security controls across our cloud-native platform. * Harden infrastructure components using infrastructure-as-code, policy enforcement, and service isolation. * Build secure by default infrastructure and code CI/CD pipelines. * Collaborate with platform and infrastructure teams to integrate security best practices into architecture and workflows. * Stay ahead of cloud security trends and adopt cutting-edge technologies to enhance platform resilience. * Conduct threat modeling, risk analysis, and mitigation planning for critical systems. * Drive improvements in monitoring, detection, and incident response at the platform level. * Build, deploy and maintain relevant tooling. ABOUT YOU: * 8+ years of experience in infrastructure or platform security roles. * Deep understanding of secure cloud infrastructure (AWS/GCP), identity and access management, and system hardening. * Proficient with tools like Terraform, CDK, Kubernetes, and CI/CD security. * Skilled at balancing engineering realities with principled security practices. * Proven track record of shipping secure, resilient systems at scale. BONUS IF YOU: * Have built or scaled security automation pipelines. * Contributed to open-source security projects or tools. * Hold certifications such as GCP Security Engineer, AWS certifications, CISSP, or OSCP. * Hold a bachelors or masters degree in Cybersecurity or similar disciplines. BENEFITS: * Competitive compensation package, including equity. * Inclusive Healthcare Package. * Learn and Grow - we provide mentorship and send you to events that help you build your network and skills. * Flexible Time Off. * We will provide you the gear you need to do your role, and a WFH budget for you to outfit your space as needed. The San Francisco, CA base pay range for this role is $208,000.00 - $312,000.00. This salary range is an estimate. Actual salary will be based on job related skills, experience and location. Pay ranges outside San Francisco may be adjusted based on employee location. The total compensation package also includes benefits and equity-based compensation. Your recruiter can share more about the specific pay range for your location during the hiring process.