Affirm Logo

Affirm

Staff CIAM Engineer, Product Security

Posted 15 Days Ago
Easy Apply
Remote
Hiring Remotely in United States
Expert/Leader
Easy Apply
Remote
Hiring Remotely in United States
Expert/Leader
Lead design and implementation of secure identity management solutions. Ensure applications are protected by best practices in authentication and authorization. Mentor teams in security standards and collaborate on enhancing identity solutions.
The summary above was generated by AI

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

Affirm values information security as a critical part of the company’s continued success. Our mission is to make information security programmatic and cultural in Affirm, enabling the company to succeed in building honest financial products. The Security team posture increases security and reduces risk while securely enabling access to information for those who need it!

As the Staff Product Security Engineer for the Consumer Identity & Access Management Program, you will be responsible for leading the design and implementation of robust, secure, and scalable identity management solutions across multiple product lines at Affirm. You will play a key role in ensuring that our applications and services are protected by implementing best practices in authentication, authorization, and user management. Your expertise will help shape our security posture, influence Affirm’s identity strategy, and guide development teams in building a modern CIAM platform.

What you’ll do

  • Own and drive the Consumer Identity & Access Management (CIAM) roadmap for all external identities which includes, consumers, merchant, partners. 

  • Performing threat modeling and security architecture reviews for identity product features. 

  • Provide technical leadership and mentorship to team members on identity standards and security best practices

  • Participating in the strategic development of methods, techniques, and evaluation criteria for identity related projects and programs

  • Partner with Affirm product teams to design authentication and authorization solutions across  multiple product lines.  

  • Collaborate with engineering teams across the organization to build, support, and enhance authentication and authorization platforms, driving engineering excellence and operational efficiency. 

  • Partner with product teams in the development of security focused test cases to enforce security requirements.

  • Perform code reviews and provide constructive feedback to peers.

What we look for

  • 10+ years of experience architecting CIAM solutions authentication or authorisation protocols (OAuth, OAuth2, OIDC, SAML, LDAP)

  • Experience designing and building distributed systems and applications, real-time, scalable web services, REST APIs, developer portals.

  • Track record of successfully launching CIAM Programs with complex use cases across multiple identity types.  

  • Experience integrating Identity COTS Products, such as Auth0, AWS Cognitos, Okta, etc. into existing web and mobile applications.

  • Experience with security architecture and design of mobile apps (IOS & Google) 

  • Hands-on development experience with Python, Swift,  and Kotlin. 

Base Pay Grade - P

Equity Grade - 13

Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.

Base pay is part of a total compensation package that may include equity rewards, monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents.)

USA base pay range (CA, WA, NY, NJ, CT) per year: $225,000 - $275,000

USA base pay range (all other U.S. states) per year: $200,000 - $250,000

Location: Remote - US

#LI-Remote

Affirm is proud to be a remote-first company! The majority of our roles are remote and you can work almost anywhere within the country of employment. Affirmers in proximal roles have the flexibility to work remotely, but will occasionally be required to work out of their assigned Affirm office. A limited number of roles remain office-based due to the nature of their job responsibilities.

We’re extremely proud to offer competitive benefits that are anchored to our core value of people come first. Some key highlights of our benefits package include: 

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents 
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

We believe It’s On Us to provide an inclusive interview experience for all, including people with disabilities. We are happy to provide reasonable accommodations to candidates in need of individualized support during the hiring process.

[For U.S. positions that could be performed in Los Angeles or San Francisco] Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles Fair Chance Initiative for Hiring Ordinance, Affirm will consider for employment qualified applicants with arrest and conviction records.

By clicking "Submit Application," you acknowledge that you have read Affirm's Global Candidate Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as described therein.

Top Skills

Auth0
Aws Cognito
Kotlin
Ldap
Oauth
Oauth2
Oidc
Okta
Python
Rest Apis
SAML
Swift

Similar Jobs at Affirm

14 Hours Ago
Easy Apply
Remote
United States
Easy Apply
Senior level
Senior level
Big Data • Fintech • Mobile • Payments • Financial Services
Lead the Incident Response function within the Security Team, managing security incidents, developing response strategies, and mentoring junior staff. Collaborate with cross-functional teams to enhance security operations across the organization.
Top Skills: AWSCrowdstrikeEdrEksElasticExpelMdrPythonRed CanarySentinel OneSIEMSplunkTerraform
12 Days Ago
Easy Apply
Remote
United States
Easy Apply
Mid level
Mid level
Big Data • Fintech • Mobile • Payments • Financial Services
As a Security Risk Management Specialist at Affirm, you will identify and mitigate security risks, manage data structures, and improve risk processes while collaborating across teams.
Top Skills: AWSCompliance Frameworks - NistData Visualization ToolsIso 27001LambdaPciPythonSQL
16 Days Ago
Easy Apply
Remote
United States
Easy Apply
Senior level
Senior level
Big Data • Fintech • Mobile • Payments • Financial Services
As a Staff Red Team Engineer, you'll identify vulnerabilities through penetration tests, lead red teaming engagements, and enhance Affirm's security posture. You'll also manage cross-team projects and support during security events.
Top Skills: Cloud-Native SecurityKotlinmacOSPython

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account