Software Engineering SMTS, Identity and Access Management
Salesforce · India - Hyderabad
hybridfull-time3-6 years
posted 19h
To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts. Job Category Software Engineering Job Details About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce. Software Engineering SMTS, Identity & Access Management About the team The Salesforce Enterprise Security Engineering team builds and operates highly scalable, fault-tolerant, distributed systems that deliver cloud-scale Identity and Access Management (IAM) services across our Enterprise network, public cloud infrastructure, and internal data centers. We provide the core building blocks for identity lifecycle, governance, authentication, authorization and privileged access management that protect customer trust and empower every Salesforce engineer to operate securely, regardless of environment. We are seeking a full-stack software engineer with a track record of building modern, secure services and applications following the Software Development Life Cycle and best security development practices. You'll work across the IAM domain, so a solid understanding of identity concepts in the authentication, authorization, and identity governance space is important for this role. About the position This is a hands-on software engineering role with a focus on the IAM domain. You will design and build end-to-end capabilities from backend services and APIs to the user-facing experiences that power identity lifecycle (human/non-human), access requests, provisioning, entitlement/role management, access certifications, and policy-driven access decisions at enterprise scale. You will secure the emerging agentic enterprise by designing controls for AI agents and autonomous workloads, including agent identity, privilege, least privilege, just-in-time access, time-bound access, separation of duties, and continuous risk-based access decisions. You will also own features through the full development lifecycle: design, implementation, testing, deployment, and continuous improvement. You'll partner across application owners, product management, and governance to translate identity and compliance requirements into intuitive, reliable, and scalable solutions. This work is foundational to advancing Salesforce's Zero Trust architecture, enabling dynamic, real-time access decisions based on employment status, role change, and device or user trust. Responsibilities Design, build, and operate scalable IAM services and APIs spanning identity lifecycle, access requests, entitlement/role management and access certifications. Build privileged access management (PAM) capabilities — credential vaulting/rotation, session control, and secrets management and just-in-time (JIT) access flows that grant elevated, time-bound entitlements and revoke them automatically. Model and secure non-human/workload identities (NHI) — service accounts, agents, workloads, and machine credentials — including issuance, rotation, and lifecycle governance. Develop full-stack features, backend services and modern web front-ends that deliver intuitive self-service and administrative experiences for IAM. Build and manage containerized workloads with Kubernetes, Docker, and infrastructure-as-code (Terraform); operate services in a full DevOps model (monitor, troubleshoot, continuously improve). Integrate across identity sources, directories, and downstream applications using SCIM, R