PB✓
PBridge

Full-time jobsthe United States

Senior Platform Security Engineer

discord · San Francisco Bay Area · Full-time

About this role

Discord has a highly engaged community of millions of daily active users who use the platform for many different reasons, but there’s one thing that nearly everyone does: play video games. Discord plays a uniquely important role in the future of gaming, and we are focused on making it easier and more fun for people to hang out before, during, and after playing games.

More broadly, Discord is about empowering people to find belonging in all kinds of communities, and those people trust us to keep their communications safe. Our Platform Security Engineering team protects the systems we use to create Discord, making the "secure way" the "easy way."

We're looking for a Senior Engineer to advance this mission through security expertise, software development, and operational excellence, with a particular focus on identity and access management: who and what can access Discord's systems, how they authenticate, and how access stays scoped to what's actually needed. You'll help identify leveraged opportunities to reduce security risk across Engineering, then design and deliver technical solutions: lovable "paved paths" for managing identities and access, shipping code, configuring cloud infrastructure, and operating services.

If you're a security engineer with a deep interest in identity and access management, who's eager to own technically and socially complex projects, and excited to improve security and privacy at Discord, read on!

What you'll do

• Own software engineering projects end-to-end on a highly autonomous, horizontally integrated team with a lot of leverage. This is a code-forward role!

• Define what identity means for autonomous agents and other non-human actors at Discord (how they're provisioned, scoped, authenticated, authorized, and audited). As the role of these actors grows, and create primitives to implement that vision.

• Build and evolve Access , Discord's employee authorization platform, to make permissions discoverable, role-based, least privilege, and self-serve; check out our blog post to learn more!

• Design and harden our Zero Trust architecture, spanning human and service-to-service auth*n for Discord’s internal tooling.

• Automate continuous permission right-sizing in the spirit of least privilege.

• Develop and apply secure baselines for cloud identity, and help secure our software supply chain from the dev environment through CI/CD and into production.

• Consult on risk assessments, architectural designs, threat models, code reviews, and more, pragmatically balancing security with other business considerations.

Example projects

• Integrate service-to-service and agent-to-service authentication and authorization as out-of-the-box features in Discord's internal developer platform.

• Build out service identity provisioning using PKI and mTLS, so services can authenticate each other without shared secrets.

• Evaluate or extend infrastructure access tooling such as Teleport for short-lived, auditable access to

Tired of applying one by one?

Our Career Success Team finds roles in the United States that fit you, tailors your CV to each, and submits the applications — tracked end to end. You just show up to interviews.

We apply, you interview →