Staff+ Software Engineer, Auth & Identity
Anthropic · San Francisco, CA | New York City, NY
About this role
**Staff Software Engineer, Auth & Identity — Anthropic** ## About Anthropic Anthropic’s mission is to create reliable, interpretable, and steerable AI systems—safe and beneficial for users and society. ## About the role The Auth & Identity team builds the authentication, authorization, and identity platform that underpins every Anthropic product (API, Claude Code, Claude.ai, and Enterprise offerings). Every login, API key, OAuth token, access decision, and organization record flows through systems the team owns. As Claude moves toward an agentic platform, the team is defining what identity and access look like for humans, service accounts, and autonomous agents acting on someone’s behalf. **Platform scope** - **Horizontal services:** credential minting/exchange, authorization controls, and canonical identity records. - **Admin experience:** SSO/SCIM setup, roles/permissions, IP allowlisting, and API key policies. **Four pillars** - **Authentication:** credential lifecycle, sessions, workload identity federation, auth for async/agentic workloads - **Authorization:** policy framework for model, membership, role, and resource access - **Identity:** tenant/org model and first-class identity for humans, service accounts, and agents - **Enterprise:** SSO, SCIM, login policies, and admin controls for provisioning/governance ## What you’ll do - Own critical, high-traffic systems end to end (design → rollout → operations → iteration) - Help shape the technical strategy for identity and access across Anthropic - Work on problems including: - Designing credentials for agents and long-running autonomous workloads - Routing every access decision through a unified authorization system (low latency, security guarantees, multi-region resilience) - Building a first-class identity model for service accounts and agents and linking to other identity/auth systems - Global distribution and multi-region failover for mission-critical services - Deepening enterprise integration (login policies/recovery, self-service allowlisting, tighter provider integrations) You’ll collaborate closely with product, security, infrastructure, and consuming product teams, and you’ll be expected to set technical direction—not just execute. ## You might be a good fit if you - Have **8+ years** building and operating backend/platform systems at scale (ideally identity/auth/authz/security-adjacent infrastructure) - Have worked with one or more of: - OAuth 2.0 / OIDC, SAML, SCIM - JWTs and token exchange, workload identity federation - Policy engines (e.g., Cedar, OPA) - RBAC and resource-level access control models - Deeply care about **reliability and security** (on-call, failure modes, revocation, and availability) - Are comfortable owning **large migrations** in live, high-traffic systems (shadow modes, incremental rollouts, retiring legacy paths) - Take a **product-focused** approach to platform work (primitives that others can adopt correctly, with documentation/self-service) - Can navigate ambiguity, make sound decisions independently, and communicate clearly cross-functionally - Are familiar using **AI tools** in your software development workflow ### Strong candidates may also have - Experience with globally distributed databases and multi-region service architecture - Experience with **Go, Python, Rust, or TypeScript** across a rapidly changing codebase - Prior work on enterprise identity integrations with major identity providers and cloud IAM sy
Listing freshness
CronJobs last confirmed this listing 4h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.