Haystack
← Back to Jobs
Technology
AT

SRE Engineer-OIDC focus

Advanced Tech PlacementRoseland, NJ🇺🇸United StatesPosted Oct 2, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Roseland, NJ, United States
Posted
21 hours ago
MFAOAuthSAMLSSOAzureBashJWTKubernetesPythonTerraform

Job Description

We are looking for a SRE Engineer-OIDC focus:

We are looking for Site Reliability Engineers to keep identity and access services secure, available, and fast. You will own the reliability of authentication and authorization flows built on OpenID Connect, from monitoring and incident response to automation and capacity planning. This is a hands-on role for an engineer who understands both how OIDC works under the hood and how to run it at enterprise scale. You will work closely with developers on the AIM team and with partner teams in India and Brazil.

Responsibilities:

  • Own the availability, latency, and error budgets of identity services, including login, SSO, and token issuance.
  • Define and track SLIs and SLOs for OIDC flows such as authorization code with PKCE, client credentials, and token refresh.
  • Build and tune monitoring, alerting, and dashboards so failures in authentication flows are caught before users notice.
  • Participate in an on-call rotation; lead incident response, root-cause analysis, and blameless postmortems.
  • Troubleshoot OIDC and OAuth 2.0 issues, including token validation, signing key (JWKS) rotation, claims mapping, redirect errors, and scope errors.
  • Automate provisioning and deployment with infrastructure as code and CI/CD pipelines.
  • Plan capacity and run load tests for peak authentication traffic.
  • Harden identity infrastructure in line with security and compliance requirements.
  • Write runbooks and share reliability practices with development teams across the US, India, and Brazil.
  • Support Mythos initiative work while protecting existing partner and client commitments.

Requirements:

  • OIDC knowledge is the one skill identified as a must-have; the remaining qualifications reflect a standard SRE baseline and should be confirmed with the hiring team.

Required Skills:

  • Hands-on production experience with OpenID Connect and OAuth 2.0, including flows, ID and access tokens, JWT validation, discovery, and JWKS.
  • 5 years of experience in SRE, DevOps, or production infrastructure roles.
  • Experience running services on a major cloud platform and working with containers and Kubernetes.
  • Experience with infrastructure as code, such as Terraform, and CI/CD pipelines.
  • Experience with observability tooling for metrics, logs, and tracing, plus practical SLO experience.
  • Scripting or programming experience in Python, Go, Bash, or similar.
  • Incident management and on-call experience in a high-availability environment.
  • Clear communication skills and experience collaborating with distributed teams across time zones.

Preferred Skills:

  • Experience operating identity providers or IAM platforms, such as Keycloak, Okta, Ping, Azure AD / Entra ID, or in-house IdPs.
  • Familiarity with SAML 2.0, SCIM provisioning, and MFA.
  • Background in enterprise SaaS, HR technology, payroll, or financial services with strict compliance requirements.
  • Experience with service meshes, API gateways, and mTLS.
  • Experience with chaos engineering or resilience testing.
  • Relevant certifications such as CKA or a cloud professional certification.

Similar jobs