Sr. Systems Engineer - IAM
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Systems Engineer, IT Consultant, Cloud Computing
Location
Foster City, CA (Hybrid) In office M,W,F
Employment TypeFull time
Location TypeHybrid
DepartmentEngineering IT
Compensation- Compensation is determined based on career level, with the base salary for this role ranging from $95K – $135K
• Offers Equity
Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide and over 500,000 business users, Replit is democratizing software development by removing traditional barriers to application creation.
About the roleWe are looking for a Senior/Staff Systems Engineer - IAM to secure identities including end user accounts, service accounts, application identities, APIs, AI agents, and automated workloads across Replit’s IT environment. The successful candidate will assess our current state of IAM and design a modern and scalable access strategy across our cloud-first infrastructure. The ideal candidate combines deep technical expertise, operational rigor, and a customer first mindset.
WhatYou'll Do
- Serve as the technical owner of Replit’s corporate IT identity architecture
- Design and implement scalable authentication and authorization solutions (SSO, phishing resistant MFA, passwordless, tokens, device trust, zero trust).
- Architect lifecycle management workflows to support a rapid growth corporate IT environment
- Evaluate technologies to protect against current and emerging threats
- Partner with internal teams to implement and maintain provisioning/deprovisioning workflows via SCIM, APIs, and custom automations
- Support SOC 2, ISO 27001 and SOX controls related to identity governance.
- Serve as the enterprise wide subject matter expert and escalation point for complex authentication and authorization inquiries and issues.
- Mentor IT and security engineers on identity best practices
- Additional duties as assigned
- 8+ years experience in identity and access management tools and platforms with at least 5 years of hands on Okta experience
- Expert in authentication and federation technologies (SSO, SAML, OAuth/OIDC, SCIM)
- Deep knowledge of identity lifecycle management and access governance within HRIS and SaaS platforms
- Proficient in one or more workflow automation platforms such as Workato, Zapier, Okta Workflows, or equivalent
- Experience deploying Infrastructure as Code with tools such as Terraform, Google Cloud Deployment Manager, AWS Cloud Formation
- Strong communications skills with the ability to convey IAM concepts to a non-technical audience
Demonstrated experience serving as a technical advisor for cross functional teams to ensure IAM integrates into a wider security strategy
Bonus Qualifications- Active Replit user and passionate about making software creation more accessible
- Strong understanding of networking and networking concepts
- Been part of a rapid growth SaaS startup
Full-Time Employee Benefits Include:
- 💰 Competitive Salary & Equity
- 💹 401(k) Program with a 4% match
- ⚕️ Health, Dental, Vision and Life Insurance
- 🩼 Short Term and Long Term Disability
- 🚼 Paid Parental, Medical, Caregiver Leave
- 🚗 Commuter Benefits
- 📱 Monthly Wellness Stipend
- 🧑💻 Autonomous Work Environment
- 🖥 In Office Set-Up Reimbursement
- 🏝 Flexible Time Off (FTO) + Holidays
- 🚀 Quarterly Team Gatherings
- ☕ In Office Amenities
Want to learn more about what we are up to?
- Meet the Replit Agent
- Replit:
Make an app for that - Replit Blog
- Amjad TED Talk
Interviewing + Culture at Replit
- Operating Principles
- Reasons not to work at Replit
To achieve our mission of making programming more accessible around the world, we need our team to be representative of the world. We welcome your unique perspective and experiences in shaping this product. We encourage people from all kinds of backgrounds to apply, including and especially candidates from underrepresented and non-traditional backgrounds.
Compensation Range: $95K - $135K
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).