This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
You'll own Gamma's identity and authentication infrastructure as we scale beyond 100 million users. This means architecting the systems that enable secure authentication for every user interaction, building OAuth flows that power integrations with platforms like ChatGPT and Claude, and leading our migration to a modern identity platform. Your work will touch every user and enable critical partnerships that define how Gamma fits into the broader ecosystem. As a Staff Engineer focused on identity, you'll balance hands-on engineering with strategic technical leadership. You'll design authentication systems that balance security, usability, and performance, partner with security and compliance teams to meet SOC 2 and GDPR requirements, and establish best practices for authentication across Gamma's engineering organization.
Job Responsibility:
Own Gamma's end-to-end authentication and authorization systems, ensuring security, reliability, and excellent user experience
Lead the technical strategy and execution for migrating 100M+ users from AWS Cognito to a modern identity platform
Design and implement OAuth 2.0 and OpenID Connect flows that enable Gamma to act as an identity provider for third-party integrations
Build and maintain SSO integrations (SAML, OIDC) for enterprise customers
Partner with security and compliance teams to ensure identity systems meet SOC 2, GDPR, and regulatory requirements
Collaborate with product and engineering teams to implement authentication features like MFA, passkeys, and session management
Requirements:
8+ years of software engineering experience with at least 3 years focused on identity, authentication, or security systems
Deep expertise with OAuth 2.0, OpenID Connect, SAML, and modern authentication protocols
Hands-on experience acting as an OAuth provider and implementing authorization servers
Proven track record executing large-scale identity migrations (millions of users) with zero downtime
Strong understanding of identity providers (Cognito, Auth0, WorkOS, Okta) and their tradeoffs
Expert knowledge of authentication security best practices: password hashing, token management, credential storage, session security
Nice to have:
Experience with WorkOS, AWS Cognito, or Auth0 in production environments
Knowledge of WebAuthn, FIDO2, and passwordless authentication
Experience building developer-facing authentication SDKs or APIs
Experience working at a high-growth SaaS company with enterprise customers