Linux Systems Engineer – Identity, PKI & Security (IDM)

 Posted 2 hours ago
     
5-10 years experience
Apply Now

Please mention DailyRemote when applying

AI Summary

You will own the Linux identity layer, managing credentials, certificates, and secrets across the cloud infrastructure. You will also act as a security engineering liaison to automate compliance frameworks and zero-trust requirements into production-grade systems code.

Imagine a future where everyone has instant, low-cost access to intelligence. We’re building a fully featured European AI cloud - with everything one needs to train, experiment with, and deploy AI models. In addition, our GPUs run on 100% renewable energy.

We’re ambitious, curious, and gutsy doers. We practice a low hierarchy across the company and high morale in our teams. We’ve already achieved a lot, yet we’re only getting started. Now it’s your chance to join the ride. We offer more than just the job - we offer a career-defining opportunity to be part of building something big!

Join Verda while it’s still being built - not once it’s finished.

About the role

In this role, you will operate as a Linux Systems Engineer taking full ownership of how identities, credentials, certificates, and secrets are provisioned, authenticated, and distributed across our cloud infrastructure. You will bridge the gap between strict security policies and Linux-native infrastructure—building automated pipelines that replace legacy directory systems with modern, code-driven identity architectures.

You’ll serve as the primary engineering liaison to our Security team, turning threat models and compliance rules into production-grade systems code.

Your Responsibilities

  • Own the Linux Identity Layer: Champion and manage Kanidm as our central identity source of truth. Architect and support client-side Linux host integrations using SSSD, PAM, and NSS modules for seamless user lifecycle and access management.

  • Architect SSH & PKI Security: Design, deploy, and automate short-lived SSH Certificate Authority (SSH CA) workflows for host and user authentication, paired with step-ca for internal PKI and OpenBao for decentralized secrets management.

  • Automate Infrastructure as Code: Use SaltStack and Ansible to enforce 100% declarative configuration management across identity services, SSSD configs, OpenSSH daemons, and system access policies.

  • Act as the Security Engineering Liaison: Partner directly with our Security team to translate compliance frameworks, zero-trust requirements, and threat models into hardened, automated Linux infrastructure.

  • Federate Authentication: Architect, deploy, and troubleshoot OIDC and OAuth2 integrations across our internal engineering toolchain, anchoring host-level access back to our central identity platform.

Your key competencies

  • Linux Systems Engineering Core: Deep, hands-on experience managing Linux operating systems at scale (RHEL/Debian families), with explicit knowledge of the Linux authentication ecosystem (SSSD, PAM, NSS, OpenSSH).

  • Configuration Management Mastery: Operational expertise using SaltStack and/or Ansible to manage system state, deploy identity agents, and maintain zero configuration drift.

  • PKI & SSH Certificate Infrastructure: Practical experience implementing SSH CAs, short-lived host/user certificates, and automated internal TLS issuance.

  • Modern Identity Architecture: Strong understanding of identity protocols (OIDC, OAuth2, WebAuthn/FIDO2, POSIX mapping) and experience building or migrating identity sources of truth.

  • Security & Systems Mindset: The ability to translate high-level security policies into precise system configurations, script automation, and actionable infrastructure code.

    Nice-to-Haves

  • Direct production experience deploying, operating, or migrating to Kanidm, OpenBao, or step-ca.

  • Experience migrating environments away from legacy Active Directory / Windows domain architectures to Linux-native identity stacks.

  • Experience writing custom SSSD plugins, PAM modules, or high-velocity Python/Rust tooling for system administration.

Why Verda

  • Cash + equity compensation along with various fringe benefits (e.g., healthcare, lunch, wellbeing, etc.).

  • Profitable operations with rapid, sustained growth.

  • 31 nationalities, with 6 different ones on the management team.

  • An opportunity to make a clear impact and work alongside world-class engineers, researchers, and partners across the global AI ecosystem.

Practicalities

  • Work mode: Remote (EU)

  • Employment type: Full-time, permanent

  • Start date: As soon as possible

What's next

We’re building fast and this role needs the right person behind it. There’s no artificial deadline, but when we find who we’re looking for, we move.

If this sounds like your next move, apply now.

Please submit your application through our Careers page. We don’t accept applications sent by email nor through agencies.

Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Systems Engineer

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified