About The Position

The position involves architecting and developing a Windows agent that interacts with cloud identity services and local system components. The role emphasizes implementing and optimizing FIDO2, hybrid passkey, and certificate-based authentication flows within Windows, focusing on password-less authentication. The candidate will design and maintain background services, credential providers, and system-level components that enable secure user sign-in experiences while ensuring compliance with enterprise-grade security and Windows platform requirements for credential management, cryptographic key handling, and secure storage. Collaboration with cross-platform teams is essential to align authentication logic across Windows, macOS, iOS, and Android. The role also includes troubleshooting complex issues related to Windows internals, network stack, and integration with domain or Entra ID environments. The candidate will drive code quality and architectural excellence through reviews, design discussions, and hands-on mentorship, while staying current with Windows OS and .NET evolution, identity standards, and cryptographic technologies to inform the product roadmap.

Requirements

  • Bachelor’s or Master’s degree in Computer Science, Computer Engineering, or related field.
  • 10+ years of software development experience, including 5+ years in Windows systems programming.
  • Expert knowledge of C#, C/C++, .NET, Windows APIs, and Win32 system programming.
  • Proven experience developing Windows services, Credential Providers, or authentication agents.
  • Deep understanding of Windows security model, including key storage, DPAPI, TPM, and certificate management.
  • Familiarity with FIDO2/WebAuthn, PKI, Kerberos, and Windows Hello frameworks.
  • Strong debugging skills using Visual Studio, WinDbg, ETW, and other diagnostic tools.
  • Experience with secure communication protocols (TLS, JWT, mutual authentication, certificate pinning).
  • Excellent problem-solving, collaboration, and communication skills.
  • US Citizenship required.

Nice To Haves

  • Experience implementing FIDO, passkey, or hybrid authentication flows on Windows.
  • Familiarity with Active Directory, Entra ID, and modern identity protocols (OAuth 2.0, OIDC, SAML).
  • Experience building cross-platform authentication clients or SDKs.
  • Understanding of USB, NFC, BLE, or hardware security key integration on Windows.

Responsibilities

  • Architect and develop the Windows agent that interacts with cloud identity services and local system components.
  • Implement and optimize FIDO2, hybrid passkey, and certificate-based authentication flows within Windows with strong emphasis on password-less authentication.
  • Design and maintain background services, credential providers, and system-level components that enable secure user sign-in experiences.
  • Ensure compliance with enterprise-grade security and Windows platform requirements for credential management, cryptographic key handling, and secure storage.
  • Collaborate with cross-platform teams to align authentication logic across Windows, macOS, iOS, and Android.
  • Troubleshoot complex issues related to Windows internals, network stack, and integration with domain or Entra ID environments.
  • Drive code quality and architectural excellence through reviews, design discussions, and hands-on mentorship.
  • Stay current with Windows OS and .NET evolution, identity standards, and cryptographic technologies to inform product roadmap.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service