Responsibility
Position: IAM / Authentication Engineer – Golang
Location: Hyderabad – Hybrid
Employment Type: C2H (Contract-to-Hire)
Experience: 4+ Years
Domain: IAM / Cybersecurity / Authentication
Role Summary
We are looking for an IAM / Authentication Engineer with strong experience in Golang backend development and identity/authentication systems. The ideal candidate should have solid IAM fundamentals, hands-on Go development experience, and the ability to design, troubleshoot, and secure authentication workflows across enterprise environments.
Key Responsibilities
- Design, develop, and maintain secure identity and authentication services using Golang.
- Work with IAM and authentication technologies such as OAuth 2.0, OpenID Connect, SAML, LDAP/Active Directory, Kerberos, X.509, and FIDO2/WebAuthn.
- Build integrations with enterprise identity providers and directory services.
- Develop and troubleshoot authentication flows across Windows and Linux environments.
- Work with certificate-based authentication, public-key authentication, and PKI concepts.
- Develop secure REST/gRPC APIs and backend components for identity and authentication workflows.
- Troubleshoot authentication scenarios involving Windows Logon, RDP, smart cards, and certificates.
- Apply secure coding practices and cryptographic concepts including TLS, digital signatures, key pairs, and certificate chains.
- Investigate authentication failures across application, client, network, and server layers and perform root-cause analysis.
- Write maintainable Go code with appropriate unit, integration, and security testing.
- Collaborate with backend, client, platform, and security engineering teams on architecture and implementation.
Required Skills & Experience
IAM / Authentication
- 4+ years of software engineering experience, preferably in IAM, cybersecurity, authentication, or security products.
- Strong understanding of authentication, authorization, federation, SSO, and MFA.
- Hands-on experience with one or more enterprise IAM/authentication technologies such as OAuth 2.0/OIDC, SAML, LDAP/Active Directory, Kerberos, PKI/X.509, or FIDO2/WebAuthn.
- Good understanding of access tokens, refresh tokens, public-key authentication, and certificate-based authentication.
- Ability to understand and troubleshoot authentication flows end-to-end.
Golang
- Strong hands-on experience with Go/Golang.
- Experience developing backend services and APIs using Go.
- Good understanding of goroutines, channels, context, error handling, and concurrency.
- Experience with REST and/or gRPC, API design, logging, testing, and service integration.
Security
- Good understanding of TLS, certificates, public/private-key cryptography, and digital signatures.
- Awareness of secure software development practices and common application security risks.
- Strong debugging, problem-solving, and analytical skills.
Good to Have
- Hands-on experience with FIDO2, WebAuthn, or passkeys.
- Experience with Microsoft Active Directory and/or AD CS.
- Knowledge of Windows authentication architecture, Credential Providers, SSPI/CredSSP, or RDP authentication.
- Experience with smart cards, PKCS#11, Windows CNG/CryptoAPI, or enterprise PKI.
- Experience with Linux PAM/NSS or system-level authentication.
- Experience with identity providers such as Microsoft Entra ID, Okta, Keycloak, Ping Identity, or similar.
- Experience with security keys, hardware authenticators, HSMs, or key-management systems.
- Working knowledge of C/C++ or Windows system programming.
- Experience with Docker, Kubernetes, and CI/CD environments.
Ideal Candidate
The ideal candidate should have a strong understanding of authentication and identity concepts, rather than experience limited to a specific IAM product.
Candidates do not need experience with every technology listed in the description. Strong IAM fundamentals, solid Golang development skills, security-focused engineering experience, and the ability to learn new authentication technologies are the key requirements.