onsite
Senior Security & Authorization Engineer - Bayer
Software Engineer
Lead the design and implementation of secure identity and access controls for cloud-native microservices, driving IAM strategy, OAuth/OpenID Connect integration, and continuous security improvement across the organization.
About the role
Key Responsibilities
- Architect and implement robust IAM solutions for cloud-native applications, ensuring secure authentication and authorization flows.
- Design and enforce OAuth 2.0, OpenID Connect, and SAML integrations across microservices and third‑party services.
- Collaborate with DevOps to embed security controls into CI/CD pipelines and infrastructure-as-code.
- Conduct threat modeling, security reviews, and penetration testing to identify and remediate vulnerabilities.
- Develop and maintain security documentation, best‑practice guidelines, and incident response playbooks.
Requirements
- 5+ years of experience in security engineering with a focus on identity and access management.
- Hands‑on expertise with OAuth 2.0, OpenID Connect, SAML, and related protocols.
- Strong knowledge of cloud security (AWS, Azure, or GCP) and container orchestration (Kubernetes).
- Proficiency in scripting (Python, Bash) and automation tools (Terraform, Ansible).
- Excellent communication skills and ability to translate complex security concepts to technical and non‑technical stakeholders.