Handshake logo

Senior Security Engineer, IAM

HandshakeSan Francisco, California

$60,000,000+ / month

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Remote
Hybrid remote
Compensation
$60,000,000+/month
Benefits
Health Insurance
Dental Insurance
Vision Insurance

Job Description

About Handshake

Handshake was founded on a simple belief that everyone deserves a path to a great career, regardless of where they went to school or who they know. Today, we power 25 million job seekers, 1 million+ employers, and 1,600 educational institutions.

In 2025, we started Handshake AI and built the fastest-growing AI data business in history. We work directly with frontier AI lab researchers to create evaluations, publish benchmarks, and push the boundary of data. We’ve grown from $0 to ~$1B run rate and pay ~$60M to over 30K individuals every month.

Why join Handshake now:

  • Shape how every career evolves in the AI economy, at global scale, with impact your friends, family and peers can see and feel

  • Partner hand-in-hand with world-class AI labs, Fortune 500 partners and the world’s top educational institutions

  • Work together with engineers, scientists, operators, and more from Palantir, Meta, Scale AI, and former YC founders

  • Build a massive, fast-growing business with billions in revenue

About the Role

Handshake is seeking a Senior Security Engineer to own the architecture, design, and implementation of our enterprise identity automation and governance ecosystem. You’ll define the long-term IAM automation strategy, build resilient and scalable lifecycle workflows, and enable secure-by-default identity operations across SaaS, cloud, and internal platforms.You’ll partner closely with Security, IT Engineering, People Operations, and Product/Platform Engineering to deliver highly automated, auditable, and reliable identity solutions.

In this role, you will:

  • Architect, build, and own automated onboarding, offboarding, and access-change workflows across Okta, Workday, SCIM, and event-driven systems.

  • Engineer integration layers between identity platforms and internal applications using Python, REST APIs, Webhooks, and Terraform.

  • Implement error-handling, reconciliation logic, telemetry, and monitoring to ensure reliability and determinism in identity lifecycle events.

  • Modernize existing provisioning logic and replace manual processes with scalable automation frameworks.

  • Develop tooling and pipelines enabling version-controlled, testable, observable IAM automation.

  • Act as a technical owner for Handshake’s IAM ecosystem, including Okta, Google Workspace, GCP, AWS IAM, and internal access systems.

  • Engineer and optimize authentication & authorization protocols (OIDC, OAuth2, SAML, JWT), fine-grained access policies, and scalable RBAC/ABAC models.

  • Build custom automation using Okta Workflows or API-driven orchestration.

  • Design SOC2-compliant access controls, approvals, attestations, and auditability mechanisms.

  • Build automated access certification systems with full data lineage.

  • Conduct identity-related incident forensics and implement preventative automation.

  • Provide cross-functional leadership, setting standards, best practices, and reference architectures for identity automation.

  • Serve as service owner for IAM automation platforms with accountability for uptime, consistency, and continuous improvement.

Desired Capabilities

  • 4–7+ years of hands-on IAM engineering, identity automation, or identity governance experience.

  • Strong scripting/automation skills in Python, Node.js, and REST-based integrations.

  • Experience with IAM platforms such as Okta, Google Workspace/GCP, Azure AD, or similar.

  • Deep understanding of identity protocols, token flows, SCIM, and distributed lifecycle orchestration.

  • Experience with Terraform or other infrastructure-as-code frameworks.

  • Ability to diagnose complex identity issues across SaaS, cloud, and distributed systems.

  • Strong understanding of DevOps practices, observability, and secure engineering principles.

  • Demonstrated ownership mindset across architecture, implementation, monitoring, and iterative improvement.

Extra Credit

  • Advanced experience with GCP IAM, Google Workspace IAM, AWS IAM, cross-account access patterns, and policy automation.

  • Experience with Okta Workflows, SailPoint/IGA, or Privileged Access Management (PAM) solutions.

  • Experience designing scalable authorization models for high-growth or distributed organizations.

  • Certifications such as Okta Architect, Azure Identity Engineer, CISSP.

  • Prior experience in SaaS, high-growth, or distributed engineering environments.

Perks

Handshake delivers benefits that help you feel supported—and thrive at work and in life.The below benefits are for full-time US employees.

🎯 Ownership: Equity in a fast-growing company💰 Financial Wellness: 401(k) match, competitive compensation, financial coaching🍼 Family Support: Paid parental leave, fertility benefits, parental coaching💝 Wellbeing: Medical, dental, and vision, mental health support, wellness stipend📚 Growth: Learning stipend, ongoing development💻 Remote & Office: Internet, commuting, and free lunch/gym in our SF office🏝 Time Off: Flexible PTO, 15 holidays + 2 flex days🤝 Connection: Team outings & referral bonuses

Explore our mission, values, and comprehensive US benefits at joinhandshake.com/careers.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Senior Security Engineer, IAM Jobs at Handshake

What is the work location for this position at Handshake?
This job at Handshake is located in San Francisco, California, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Handshake?
Candidates can expect a pay range of $60,000,000 (per month).
What employment applies to this position at Handshake?
Handshake lists this role as a Full-time position.
What experience level is required for this role at Handshake?
Handshake is looking for a candidate with "Senior-level" experience level.
What benefits are offered by Handshake for this role?
Handshake offers following benefits: Health Insurance, Dental Insurance, Vision Insurance, Paid Holidays, Parental and Family Leave, Flexible/Unlimited PTO, Career Development, 401k Matching/Retirement Savings, Health & Wellness Programs, and Home Office Reimbursement/Stipend for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at Handshake?
You can apply for this role at Handshake either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.