Engineering Manager - IAM (Go)
Bestow
- Location
- Remote, US
- Employment
- Full Time
- Work model
- Remote
- Level
- Senior
- Posted
- 3h ago
Skills
About this role
ABOUT BESTOW Life insurance is one of the world's most important products. It's also one of the hardest to build, distribute, and modernize. Bestow exists to change that. Bestow is a leading vertical technology platform serving some of the largest and most innovative life insurers. Our platform unifies the fragmented, legacy value chain, enabling carriers to launch products in weeks instead of years. Carriers choose us to scale and operate at unprecedented speed, powered by AI and automation. Bestow isn't selling policies. We're building the infrastructure that helps an entire industry move faster, reach more people, and deliver on its promise. Backed by leading investors (Goldman Sachs, Hedosophia, NEA, Valar, 8VC) and trusted by major carriers, Bestow is powered by a team that moves with precision, purpose, and heart. If you want to help reimagine a centuries-old industry with lasting impact, join us. Bestow offers flexible remote/hybrid work, meaningful benefits, equity, and substantial growth opportunities. Bestow uses E-Verify to confirm the employment eligibility of all newly hired employees. To learn more about E-Verify, including your rights and responsibilities, please visit E-Verify.gov .
ABOUT THE TEAM
The Engineering team is responsible for all technology for Bestow and the Bestow Platform. We serve employees, consumers, and enterprise customers. In addition to building software, we integrate and manage many third-party products used by employees and as part of the platform. Our major functional teams are product engineering, infrastructure, IT, data & analytics, and program management. Engineering works closely with product management and design to define and prioritize the product roadmap.
WHAT YOU'LL DO
As the Engineering Manager for the IAM team, you will lead a team of Software Engineers building the identity and access management foundation behind our digital life insurance enrollment experience. You will spend roughly 20% of your time writing production code, and that capacity is accounted for in team planning. The rest of your time goes to leading the team, shaping architecture, and partnering with Product Managers, Designers, and our enterprise partners. Our system runs on Kubernetes in Google Cloud Platform and is composed of several microservices written in Go that integrate using gRPC, REST, and async messaging patterns. You will share responsibility for operating those workloads. Your first major initiative is IAM Platform Scalability: building an identity foundation that lets new enterprise customers onboard without engineering intervention, while meeting enterprise security and compliance requirements. This role reports to the Director of Engineering and is open to remote candidates within the United States. #LI-Remote Technical Leadership: Stay in the code and actively participate in system design and architecture decisions Review pull requests regularly, with feedback that raises the bar on code quality Own your team's quality standards: test coverage, documentation, code review practice, and the automation and quality gates that keep defects out of production Debug and troubleshoot alongside your engineers, and lead the team through hard diagnostic work Identify technical debt, build a remediation plan for it, and advocate for the time to do it IAM Initiative Ownership: Lead the evolution of our authorization model to support multi-tenant enterprise customers at scale Architect the separation of authentication and authorization so each can scale, cache, and enforce policy independently across enterprise partnerships Design a token strategy that balances security, partner flexibility, and platform cost, and manage the vendor relationships that go with it Build automated user provisioning and de-provisioning so partner onboarding does not require engineering work Solve for partner-specific requirements such as biometric re-authentication, extended session lifetimes, layered access policies, and