Senior Platform Security EngineerNew$196K–$245K

The opportunity

Discord has a highly engaged community of millions of daily active users who use the platform for many different reasons, but there’s one thing that nearly everyone does: play video games. Discord plays a uniquely important role in the future of gaming, and we are focused on…

What you'll do

  • Own software engineering projects end-to-end on a highly autonomous,: horizontally integrated team with a lot of leverage. This is a code-forward role!

  • Define what identity means for autonomous agents and other non-human actors: at Discord (how they're provisioned, scoped, authenticated, authorized, and audited). As the role of these actors grows, and create primitives to implement that vision.

  • Build and evolve Access , Discord's employee authorization platform, to make: permissions discoverable, role-based, least privilege, and self-serve; check out our blog post to learn more!

  • Design and harden our Zero Trust architecture, spanning human and: service-to-service auth*n for Discord’s internal tooling.

  • Automate continuous permission right-sizing in the spirit of least privilege.

  • Develop and apply secure baselines for cloud identity, and help secure our: software supply chain from the dev environment through CI/CD and into production.

What they're looking for

  • Consult on risk assessments, architectural designs, threat models, code: reviews, and more, pragmatically balancing security with other business considerations.
  • Integrate service-to-service and agent-to-service authentication and: authorization as out-of-the-box features in Discord's internal developer platform.
  • Build out service identity provisioning using PKI and mTLS, so services can: authenticate each other without shared secrets.
  • Evaluate or extend infrastructure access tooling such as Teleport for: short-lived, auditable access to hosts, databases, and internal systems.