Software Engineer II, End User Protection
Job description
About the role
Build Identity Protection That Keeps Pace With Evolving Threats
This role centers on the End User Protection team, where you will design and deliver the features that shield users from automated login abuse. Your work will ensure that legitimate access remains seamless while malicious activity is identified and stopped. You will operate at the intersection of security, machine learning, and distributed systems, translating evolving attack patterns into robust production defenses. The position is based in Toronto, Ontario, Canada. You will collaborate daily with security analysts, product strategists, and infrastructure engineers on high-impact identity protection initiatives. Compensation for this role is structured at multiple levels, including $158,800 USD base, $167,200 USD base, $175,600 USD base, and $184,000 USD base annually.
Architect And Deliver Detection Capabilities
You will architect scalable services that analyze login behavior and coordinate responses across distributed systems. This involves implementing modern detection workflows that identify anomalies such as credential stuffing and password spraying. Your designs will integrate protocols like OAuth, OpenID Connect, and SAML to strengthen identity protection without degrading user experience. Using technologies such as Node.js, Kubernetes, MongoDB, PostgreSQL, DynamoDB, and cloud services, you will implement features that support global authentication at scale. You will champion reliability and operational excellence by monitoring, testing, and maintaining Auth0 services in production environments. Collaboration with machine learning teams will turn emerging attack patterns into actionable detection rules and model features.
Shape Engineering Strategy And Execution
You will guide product decisions by articulating trade-offs, timelines, and risks to engineering and product leadership during planning sessions. This includes breaking down complex requirements into clear, modular, and actionable engineering tasks with strict clarity. You will streamline the intake of new security requirements, converting ambiguous needs into well-defined implementation plans. On-call responsibilities include coordinating responses to live incidents, investigating root causes, and documenting fixes to reduce future risk. You will ship improvements iteratively, validating protections with security experts while ensuring the login experience remains frictionless for users. Your influence will extend across organizational boundaries, driving multi-quarter initiatives to successful completion despite geographic and team separation.
Qualifications And Expectations
Successful candidates bring practical experience with Node.js or a similar language, building systems that are reliable, maintainable, and scalable. A deep understanding of application security and cloud security best practices is essential, particularly as they apply to identity and access management. You can design, analyze, and troubleshoot large-scale distributed systems while meeting strict reliability goals. Clear communication is critical, as you will work effectively in remote settings with cross-functional stakeholders. A systematic problem-solving approach, combined with strong ownership and drive, will define your impact. Experience using cloud environments such as AWS and Azure for identity and security services is required. You will also work with identity protocols including OAuth, OpenID Connect, and SAML.
Additional Considerations
Experience contributing to Auth0 Attack Protection or similar security platforms is valued. Familiarity with detection models, metrics, and monitoring tools will help you integrate security insights into engineering workflows. Knowledge of identity standards and emerging protocols is considered an asset. Skills and tools central to this role include Node.js, JavaScript, TypeScript, AWS, Azure, MongoDB, PostgreSQL, DynamoDB, Kubernetes, OpenID Connect, OAuth, and SAML. Please , as roles and requirements are subject to change.
About the company
The Okta and Auth0 Platforms enable secure access, authentication, and automation - putting identity at the heart of business security and growth.
Requirements
Practical Experience With Node.js And Distributed Systems
You will demonstrate hands-on experience using Node.js or a similar language to build reliable, maintainable, and scalable systems. Your background will include designing and troubleshooting large-scale distributed systems that meet strict reliability goals. You have a practical track record of operating cloud-based identity and security services that support global authentication at scale.
Deep Application Security And Cloud Security Knowledge
A deep understanding of application security and cloud security best practices is essential for this role, particularly as they apply to identity and access management. You are familiar with security controls, threat modeling, and secure architecture patterns relevant to distributed systems. Your expertise helps ensure that security is built into services from the ground up rather than added as an afterthought.
Communication And Cross-Functional Collaboration
Clear communication is critical, as you will work effectively in remote settings with cross-functional stakeholders including security analysts, product strategists, and infrastructure engineers. You can articulate trade-offs, timelines, and risks during planning sessions and translate technical concepts into actionable decisions. Your influence helps align security objectives with product delivery across geographic and team boundaries.
Systematic Problem-Solving And Ownership
A systematic problem-solving approach, combined with strong ownership and drive, will define your impact. You will coordinate responses to live incidents on-call, investigate root causes, and document fixes to reduce future risk. You validate protections with security experts and iterate based on feedback while ensuring the login experience remains frictionless for users.
Cloud And Identity Protocol Proficiency
Experience using cloud environments such as AWS and Azure for identity and security services is required. You are proficient with identity protocols including OAuth, OpenID Connect, and SAML. Your work ensures these protocols are implemented securely and perform at scale across global deployments.
Additional Valued Experience And Skills
Experience contributing to Auth0 Attack Protection or similar security platforms is valued. Familiarity with detection models, metrics, and monitoring tools will help you integrate security insights into engineering workflows. Knowledge of identity standards and emerging protocols is considered an asset. Skills and tools central to this role include Node.js, JavaScript, TypeScript, AWS, Azure, MongoDB, PostgreSQL, DynamoDB, Kubernetes, OpenID Connect, OAuth, and SAML.