Staff Software Engineer – Platform, Access & Authorization
Job Description:
- Own end-to-end design, implementation, and operation of capabilities across authentication, OAuth, sessions, tokens, 2FA, account recovery, and edge authorization.
- Build secure, low-latency Go and gRPC services for Coinbase web, mobile, API, and partner experiences, with observability, failure testing, and measurable SLOs.
- Lead technical designs for signed authorization tokens, passkeys, biometric recovery, device-aware authentication, and mobile OAuth.
- Partner with product, security, fraud, and infrastructure teams to balance customer conversion, account protection, regulatory requirements, and engineering constraints.
- Simplify integration patterns and build self-service tooling for safe, scalable adoption of access and authorization capabilities.
- Mentor engineers and raise technical standards through design reviews, pairing, code reviews, and on-call participation.
Requirements:
- 8+ years of backend software engineering experience.
- Strong proficiency in Go or a comparable systems-oriented language.
- Experience building and operating reliable, high-throughput distributed production services.
- Experience designing secure APIs and reasoning about authentication, authorization, session management, trust boundaries, and token handling.
- Knowledge of OAuth 2.0, OpenID Connect, JWTs, PKCE, or related standards.
- Proficiency with gRPC and Protocol Buffers.
- Experience with Redis or DynamoDB.
- Strong operational skills using metrics, logs, traces, alerts, and SLOs.
- Track record delivering complex cross-functional projects from technical design through production rollout.
- Clear written and verbal communication.
- Responsible use of generative AI with human oversight and measurable workflow improvements.
Benefits:
- Equity eligibility
- Bonus eligibility
- Medical insurance
- Dental insurance
- Vision insurance
- 401(k)
- Quarterly in-person working sessions called “surges”