Full-Time

Senior Software Engineer

Frontend, Access Management

Updated on 8/26/2026

Cerby

Cerby

51-200 employees

Automates app onboarding/offboarding across IdPs

No salary listed

Remote in USA

Remote

Category
Software Engineering (1)
Required Skills
Datadog
Agile
Distributed Systems
React.js
Software Testing
OpenTelemetry
TypeScript
Cybersecurity
SOC 2
AWS
Cryptography
Next.js
Observability
SCRUM
REST APIs
DevOps
HIPAA

Get referred to Cerby

See people who can refer or advise you

Requirements
  • At least 5 years of professional software engineering experience focused on building and scaling SaaS applications.
  • Experience developing and maintaining distributed applications.
  • Experience mentoring junior developers and conducting security-first code reviews.
  • Experience with core frontend technologies, including browser APIs, client-side storage mechanisms such as localStorage and IndexedDB, networking APIs such as fetch and XMLHttpRequest, and frontend performance optimization.
  • Experience building scalable, high-performance React applications with Next.js for single-page applications.
  • Experience designing, consuming, and optimizing REST APIs with efficient data-fetching strategies.
  • Experience working with design systems to ensure UI consistency, reusability, and scalability.
  • Expertise with React, Next.js, TypeScript, and utility-first frameworks such as TailwindCSS.
  • Experience with cloud platforms, ideally AWS.
  • Knowledge of frontend security best practices, including identifying and mitigating XSS, CSRF, and CORS vulnerabilities and implementing protections such as Content Security Policy.
  • Ability to design responsive, maintainable, and accessible UI components.
  • Experience writing unit, integration, and component tests.
  • Experience building and maintaining component libraries aligned with brand guidelines and accessibility standards.
  • Knowledge of Agile, Scrum, continuous integration and continuous delivery, and collective code ownership practices.
  • Experience architecting and designing distributed, fault-tolerant, highly available, and resilient systems.
  • Ability to instrument distributed systems with telemetry and observability code, including metrics, traces, and log management.
  • Ability to own software development from design through development, testing, delivery, and production release.
  • Ability to implement inclusive and compliant user experiences using WCAG guidelines, ARIA roles, and screen-reader optimizations.
Responsibilities
  • Design and develop scalable, high-performance software solutions aligned with business goals and user needs, using AI-assisted tools and techniques where appropriate.
  • Collaborate with product managers, engineering managers, UX designers, and other engineers to deliver high-quality features and functionality.
  • Write clean, maintainable, efficient, scalable, and secure code and promote engineering best practices across the organization.
  • Participate in code reviews, share knowledge, and improve development processes.
  • Evaluate and champion technologies, frameworks, methodologies, and responsible AI practices that improve product evolution and engineering efficiency.
  • Own frontend dependency security by governing PNPM workspaces, auditing packages for CVEs, enforcing patching service-level agreements, and managing transitive-dependency supply-chain risk.
  • Identify vulnerabilities and implement robust security solutions as part of the security-first engineering approach.
  • Collaborate effectively in a remote-first environment across time zones.
  • Mentor engineers, share knowledge across the organization, and use AI to accelerate technical documentation such as runbooks, architecture decision records, onboarding guides, and post-mortems.
  • Drive software development through design, implementation, testing, delivery, and production release.
  • Contribute to accessible user experiences and maintain component libraries that support accessibility standards.
Desired Qualifications
  • Familiarity with alternative frontend frameworks and their tradeoffs.
  • Prior experience with OpenTelemetry and Datadog.
  • Experience with security compliance frameworks such as SOC 2, GDPR, and HIPAA.
  • Familiarity with encryption processes and key management.
  • Prior experience in cybersecurity and/or identity and access management.
  • Prior experience in a venture-funded, high-growth SaaS startup.
  • Strong understanding of customer value and ability to translate customer needs into software products.
  • Self-motivated, proactive, adaptable, resourceful, and comfortable navigating ambiguity.
  • Curiosity about emerging technologies and industry trends.

Cerby connects disparate business applications to enterprise identity providers (IdPs) to simplify secure access for employees. It automates onboarding and offboarding for apps that don’t natively integrate with IdPs, saving time and reducing security risk. The platform interoperates with major IdPs such as Okta, Azure AD, Ping, and Sailpoint, and lets apps register with Cerby without custom development work. Once configured, users get seamless, one-click access to all registered apps as long as they are signed in to their corporate IdP. Cerby's goal is to improve security and user experience by centralizing identity management and automating app provisioning across a broad range of tools.

Company Size

51-200

Company Stage

Series B

Total Funding

$86.5M

Headquarters

San Francisco, California

Founded

2020

Get referred to Cerby

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Cerby reported 130% ARR growth and 130% net revenue retention in June 2026.
  • The company added Ernie Tkac, Manny Ataebi, and launched Vanguard Partner Program in 2026.
  • 2025 product releases expanded from SaaS into on-premises apps, widening the addressable market.

What critics are saying

  • Okta and SailPoint can bundle similar connectors, compressing Cerby's pricing by 2026.
  • Cerby's value depends on maintaining fragile app-specific automation across constantly changing enterprise software.
  • If disconnected-app coverage stalls, Cerby becomes a niche add-on instead of identity infrastructure.

What makes Cerby unique

  • Cerby extends Okta Universal Logout to disconnected apps, including non-federated mobile apps.
  • Its 2025 IdLCM and On-Premises Agent automate lifecycle actions across SaaS and firewall-protected apps.
  • Cerby integrates with Okta, Entra ID, Ping, SailPoint, and Saviynt without rip-and-replace.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Hybrid Work Options

Flexible Work Hours

Training Programs

Growth & Insights and Company News

Headcount

6 month growth

-2%

1 year growth

5%

2 year growth

1%
SSOJet
Jul 1st, 2026
Cerby raises $54M to secure enterprise apps lacking SSO support

Cerby has raised $54 million in Series B funding from investors including Deloitte Ventures, Engage Fund, Squarepoint and Valor to address enterprise security challenges posed by disconnected applications. The platform automates identity management for applications lacking SSO or SCIM support. The company reported 130% year-over-year ARR growth and tripled its six-figure accounts, with a 130% net revenue retention rate. Cerby has appointed new executives including Ernie Tkac as chief revenue officer and Manny Ataebi as chief marketing officer, whilst launching the Vanguard Partner Programme. The platform bridges the gap between modern identity protocols and legacy or niche applications by wrapping security controls around apps not built for them, enabling automated provisioning, MFA enforcement and centralised access management across enterprise environments.

Associated Press
Jun 29th, 2026
Cerby hits 130% ARR growth as enterprises rush to secure disconnected apps

Cerby, an identity automation platform for securing disconnected applications, has reported 130% year-over-year ARR growth and 130% net revenue retention. The San Francisco-based company has tripled its number of six-figure customer accounts and added clients including monday.com. The platform helps organisations manage applications that don't support standard identity protocols like SAML or OIDC. Recent product enhancements include on-premises deployment capabilities, a lifecycle management framework integrating with SailPoint and Oracle Identity Governance, and automated MFA onboarding. The platform has scaled from thousands to millions of automated actions per month. Cerby has strengthened its executive team with appointments including Ernie Tkac as chief revenue officer and expanded its partner programme. Backed by over $82 million in funding, the company continues growing across North America, EMEA and Latin America.

Cerby
Jun 16th, 2026
Cerby wins Best Identity and Access Management Platform in The Hacker News 2026 Cybersecurity Stars Awards.

Cerby wins Best Identity and Access Management Platform in The Hacker News 2026 Cybersecurity Stars Awards. Cerby Team Ready to see what Cerby can do for your disconnected apps? Recognition honors the company's innovation in building industry-first identity solutions that eliminate enterprise blind spots and secure disconnected applications. ALAMEDA, Calif., June 12, 2026 - Cerby, the identity automation leader making security seamless across all enterprise applications, has announced it has been named a winner in the Best Identity and Access Management Platform category in The Hacker News Cybersecurity Stars Awards. The award recognizes Cerby's continued platform innovation and its commitment to empowering organizations to eliminate identity blind spots, automate lifecycle management, and deliver superior governance outcomes. The Cybersecurity Stars Awards honor standout solutions that transform the cybersecurity landscape through innovation, proactive defense mechanisms, and measurable customer value. Cerby was recognized for its differentiated approach to extending centralized identity controls to disconnected applications, which are difficult to manage because they lack APIs and often do not support modern standards like SAML, OIDC, or SCIM. "A lot of business critical apps were never built to plug into modern identity systems, so they get managed by hand or not at all," said Belsasar Lepe, co-founder and CEO of Cerby. "Cerby was built to bring them under the same controls as your managed applications, even when they don't support identity standards like SCIM or SAML." Purpose-built for modern enterprises, Cerby integrates seamlessly with Okta, Microsoft Entra ID, SailPoint, and other IGA and IDP solutions, allowing existing identity controls to reach further with no replacement required. Using an advanced connector model, in which integrations are trained rather than developed, Cerby delivers rapid time-to-value by deploying new connectors within seven to 10 days. The platform's unique self-healing capability automatically detects interface changes and repairs connectors, making comprehensive application coverage sustainable at scale. Visit The Hacker News for more information about Cerby's recognition. About Cerby Cerby is the identity automation platform purpose-built to secure disconnected applications - those that fall outside the reach of traditional identity security tools. By integrating with existing IAM, IGA, and PAM systems, Cerby brings centralized access controls, automates manual security tasks, and extends governance across your entire application ecosystem. IT and security teams gain complete visibility and control, reducing risk and operational overhead. Founded in 2020, Cerby is backed by leading investors and trusted by global enterprises. Media Contact Jennifer Tanner Look Left Marketing [email protected]

Citybiz
Mar 30th, 2026
Cerby named to Citizens 2026 Cyber 66 list of leading private cybersecurity companies.

Cerby named to Citizens 2026 Cyber 66 list of leading private cybersecurity companies. March 30, 2026 The prestigious annual report recognizes Cerby for automating identity security, extending governance and control to disconnected applications. Cerby, the fastest-growing identity security automation platform for disconnected applications, today announced its inclusion in the 2026 Cyber 66 list by Citizens, which recognizes the most innovative and high-growth privately held cybersecurity companies shaping the future of the industry. Cerby was recognized for solving one of identity security's most persistent blind spots: disconnected applications. These applications don't support modern identity standards, such as SAML and SCIM, putting them out of reach of traditional identity solutions and leaving access management to manual processes that are inconsistent and error-prone. Cerby extends the identity controls and policies organizations already have in place to the applications those tools can't reach, and automates what would otherwise be done by hand. The result: fewer security gaps and consistent access policies across every application. "Our inclusion in the Cyber 66 report is a strong validation of the problem we are solving and the impact our customers are seeing," said Belsasar Lepe, CEO and co-founder of Cerby. "As organizations adopt more SaaS applications and begin to scale AI-driven workflows, identity becomes the foundation of security. However, many of these applications fall outside traditional identity systems. Cerby was built to bring those applications under control, enabling organizations to extend identity governance to previously unmanaged applications and reduce operational risk at scale." Strong demand for Cerby's identity security automation platform has fueled rapid growth and enterprise adoption. This recognition comes at a time when enterprises are rapidly expanding their use of SaaS and AI technologies, increasing the number of identities, applications, and access points that security teams must manage. An emerging leader in identity security automation, Cerby helps organizations: * Extend identity and access management (IAM) controls from existing identity solutions to non-standard and disconnected applications * Automate provisioning, deprovisioning, and other traditionally manual, error-prone access governance workflows * Centralize credential management for disconnected apps, including securing privileged and shared accounts * Enforce consistent security policies across all applications, including those that fall outside the reach of traditional identity tools Now in its 12th year, the annual Cyber 66 report highlights companies at the forefront of cybersecurity innovation across identity, AI security, data protection, and security operation. This year's report underscores the growing importance of securing agentic AI and defending against increasingly sophisticated AI-driven threats, while reinforcing identity as a foundational control plane for enterprise security. Cerby's inclusion highlights its leadership in addressing this shift. By extending identity security to disconnected applications, Cerby delivers visibility, control, and automation across a critical but historically overlooked layer of enterprise applications. To learn more about how Cerby is helping organizations secure and automate access across disconnected applications, visit the website. About Cerby Cerby is the identity automation platform purpose-built to secure disconnected applications - those that fall outside the reach of traditional identity security tools. By integrating with existing IAM, IGA, and PAM systems, Cerby brings centralized access controls, automates manual security tasks, and extends governance across your entire application ecosystem. IT and security teams gain complete visibility and control, reducing risk and operational overhead. Founded in 2020, Cerby is backed by leading investors and trusted by global enterprises.

Cerby
Feb 18th, 2026
Cerby Extends Series B to $54M with New Strategic Investors Deloitte Ventures, Engage Fund, Squarepoint, and Valor

Cerby extends Series B to $54M with Deloitte Ventures, Engage, Squarepoint & Valor to scale identity security automation globally.