PhysicsX - Senior Software Engineer - Core Services
Upload My Resume
Drop here or click to browse · PDF, DOCX, DOC, RTF, TXT
Requirements
• A passion for the craft, you're driven by engineering excellence and committed to fostering that culture across the team. • A passion for the craft, • Strong software engineering foundations, solid grasp of algorithms, data structures, and system design. You write clean, maintainable, testable code and have strong command of Golang and Python. • Strong software engineering foundations, • Golang • Python • Authentication and identity expertise, hands-on experience building or integrating identity and access management systems (e.g., Keycloak, Auth0, Okta). Deep understanding of OAuth 2.0, OIDC, SAML, and token-based authentication flows. Ability to effectively leverage cloud provider IAM systems (e.g., AWS IAM, GCP IAM, Azure AD). • Authentication and identity expertise, • Authorisation and permissions design, proven experience implementing RBAC, ABAC, or policy-as-code frameworks (e.g., OPA/Rego, Cedar) in production multi-tenant systems. • Authorisation and permissions design, • Telemetry and observability, experience designing and operating metrics, tracing, and logging pipelines (e.g., OpenTelemetry, Prometheus, Grafana, Jaeger). You understand what it takes to make distributed systems genuinely observable. • Telemetry and observability, • Kubernetes and GitOps, strong working knowledge of Kubernetes and ArgoCD, including deploying, managing, and troubleshooting services in production clusters. • Kubernetes and GitOps, • Kubernetes • ArgoCD • API and service design maturity, experience designing multi-service systems with attention to schema governance, forward compatibility, and secure data access patterns. Proven ability to develop schema drift mitigation strategies with minimal impact to dependent clients (e.g., forward-compatible schemas, ACLs, ambassador sidecars). • API and service design maturity, • Agent governance awareness, understanding of how identity and permissions extend to agentic systems, including MCP auth, impersonation, system accounts, and scoped token delegation. • Agent governance awareness, • Security awareness, familiarity with threat modelling, secure coding practices, and participating in security testing and compliance workflows. • Security awareness, • CI/CD and deployment expertise, hands-on experience building and optimising CI/CD pipelines, including multi-service and zero-downtime deployments across numerous customer environments. • CI/CD and deployment expertise, • Communication and collaboration, excellent communication skills to work across teams, understand requirements from research scientists and product stakeholders, and translate them into technical specifications. • Communication and collaboration, • AI-native mindset, you follow the frontier of agentic systems and AI tooling. You naturally think about how infrastructure needs to evolve when agents, not just humans, are the consumers of your APIs and services. You actively use AI coding tools (e.g., Copilot, Cursor, Claude Code) in your daily workflow and see them as a force multiplier, not a novelty. • AI-native mindset, • Incremental mindset, you work in small steps toward larger goals, driving change through continuous improvement rather than massive redesigns. You can zoom in on details and zoom out to see the big picture. • Incremental mindset, • Ideally • Polyglot programming, deep expertise in Python and Golang, with exposure to other languages such as Rust or C++. • Polyglot programming, • Advanced Kubernetes, ability to leverage resources that extend the Kubernetes API (e.g., CRDs, Operators) and infrastructure configuration tools (Crossplane, Helm charts). • Advanced Kubernetes, • Infrastructure flexibility, understanding of what it takes to build software that runs in cloud, on-premises, and air-gapped environments. • Infrastructure flexibility, • Advanced testing, experience with fuzzing, deterministic simulation testing, or fault injection in production systems. • Advanced testing,
Responsibilities
• Design and implement authentication and authorisation systems, including identity provider integrations, token management, session handling, and SSO flows. • Architect and build fine-grained role-based and attribute-based access control (RBAC/ABAC) models that scale across multi-tenant environments. • Own the platform's permissions layer end-to-end: from policy definition and enforcement through auditing and compliance reporting. • Build and maintain telemetry infrastructure distributed tracing, structured logging, metrics collection, and alerting, to provide deep observability across services and environments. • Define and enforce security standards across APIs and services, including schema governance, data segregation, and least-privilege access patterns. • Design and implement identity and access patterns for AI agents, including MCP authentication, agent impersonation flows, and system account models that allow agents to act securely on behalf of users in a regulated, multi-tenant environment. • Contribute to the design of multi-service architectures, ensuring authentication and authorisation concerns are cleanly integrated and consistently enforced across both human and agentic workflows. • Drive best practices in CI/CD, automated testing, observability, and infrastructure-as-code. Build and maintain deployment pipelines, including zero-downtime and multi-service deployments. • Author and review Technical Decision Records. Participate in technology reviews to evaluate and adopt new tools and approaches. • Mentor junior and mid-level engineers, facilitate technical discussions, and build consensus around architectural decisions.
Benefits
• Equity options – share in our success and growth. • 10% employer pension contribution – invest in your future. • Free office lunches – great food to fuel your workdays. • Flexible working – balance your work and life in a way that works for you. • Hybrid setup – enjoy our new Shoreditch office while keeping remote flexibility. • Enhanced parental leave – support for life's biggest milestones. • Private healthcare – comprehensive coverage • Personal development – access learning and training to help you grow. • Work from anywhere – extend your remote setup to enjoy the sun or reconnect with loved ones. • We value diversity and are committed to equal employment opportunity regardless of sex, race, religion, ethnicity, nationality, disability, age, sexual orientation or gender identity. We strongly encourage individuals from groups traditionally underrepresented in tech to apply. To help make a change, we sponsor bright women from disadvantaged backgrounds through their university degrees in science and mathematics. • We collect diversity and inclusion data solely for the purpose of monitoring the effectiveness of our equal opportunities policies and ensuring compliance with UK employment and equality legislation. This information is confidential, used only in aggregate form, and will not influence the outcome of your application.
Similar Jobs
No credit card. Takes 10 seconds.