Principal Software Engineer - Identity & Access Management
Listed on 2026-09-16
-
Software Development
We help the world run better
At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging – but it matters. You'll find a place where you can be yourself, prioritize your wellbeing, and truly belong.
What's in it for you? Constant learning, skill growth, great benefits, and a team that wants you to grow and succeed.
This is a hybrid role based out of Palo Alto, CA. Hybrid is 3 days a week onsite, 2 days a week remote.
SAP Business Network is seeking a Principal Software Engineer to serve as a senior technical leader for the identity, authentication, and authorization engineering domain.
In this role, you will own the concept, design, and delivery of complex product features within SAP Business Network across the identity and access management domain, setting the technical direction for the team and ensuring that engineering outcomes meet both SAP's quality standards and the exacting demands of mission-critical customers. You will be recognized as a subject matter expert in enterprise identity and access management (IAM) and application security, providing definitive technical guidance and driving innovation across the program.
SAP Business Network connects buyers and suppliers globally, enabling seamless procurement, invoicing, and supply chain collaboration at enterprise scale. Requiring deep technical expertise, rigorous security compliance, and the ability to deliver reliable software in a regulated environments.
Responsibilities for this position- As a Principal Engineer, you will work at the intersection of product innovation and mission-critical reliability.
- Own the technical design and end-to-end delivery of high-complexity features across SAP Business Network’s identity and access management domain – authentication, single sign-on, identity federation, authorization, session and user lifecycle management - ensuring alignment with SAP Business Network platform standards and government security requirements
- Mentor and upskill developers on the team, establishing a culture of engineering excellence aligned with SAP's agile software engineering practices
- Design and evolve identity and access management capabilities – enterprise SSO, identity federation, and standards-based flows (SAML 2.0, OAuth 2.0, OpenID Connect) and their integration with SAP Identity Authentication Service (IAS) and SAP Authorization Management Service (AMS).
- Act as the primary technical escalation point for the engineering team; provide definitive interpretation of complex technical situations
- Provide regular project status, milestone tracking, and technical updates to program leadership and key decision-makers
- Champion continuous improvement of development methods, tooling, and quality assurance practices within the Business Network engineering organization
- Manages projects of high volume or high risk/complexity, providing regular project status and updates to stakeholders
- Builds strategic partnerships with key decision makers in customer and partner organizations
- U.S. Citizenship:Must be a U.S. Citizen due to the requirements associated with supporting U.S. public sector customers and government environments.
- 10+ years of professional software development experience with a proven track record of leading complex, enterprise-scale product delivery.
- Deep, hands-on expertise in authentication, authorization and security, including enterprise SSO and identity federation, and standards such as SAML 2.0, OAuth 2.0, and OpenID Connect.
- Deep knowledge of distributed systems architecture, microservices design, RESTful APIs, built on a…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).