Senior engineer - Identity & Token Security
Posted on Jul 27, 2026 by Opus Recruitment Solutions Ltd
London, United Kingdom
IT
16 Aug 2026
£550 - £600 Daily
Contract/Project
Senior Engineer - Identity & Token Security
Rate: £550 day Outside IR35
Start Date: ASAP
End Date: 18/12/2026
Active SC Clearance
Location: Remote/Hybrid (UK-based)
Responsibilities
Design and implement OAuth 2.0 Token Exchange (RFC 8693) capabilities.
Develop secure identity delegation and propagation patterns across distributed services.
Implement token down-scoping and audience restriction mechanisms aligned to least-privilege principles.
Design secure service-to-service authentication frameworks within zero-trust environments.
Build and maintain robust JWT validation and cryptographic trust chains.
Integrate applications and services using OpenID Connect (OIDC) standards
Essential:
OAuth 2.0 & Identity Standards
Proven hands-on implementation experience with OAuth 2.0 Token Exchange (RFC 8693).
Strong understanding of OpenID Connect (OIDC) core specifications.
Expert-level understanding of JWT (RFC 7519).
Experience signing, validating and encrypting tokens using JWS and JWE.
Strong knowledge of JWKS endpoints and automated key rotation strategies.
Understanding of secure alternatives to shared-secret authentication mechanisms.
Experience securing service-to-service communication within distributed microservice architectures.
Understanding of zero-trust security principles.
Knowledge of secure transit-layer protection and identity-based access controls.
Identity Delegation & Token Management
Experience implementing:
Token down-scoping
Audience restriction (aud)
Actor and Subject claims handling
Experience designing secure token life cycle management strategies including:
Token caching
Token renewal
Revocation patterns
Familiar with:
CDDO Secure by Design principles
Experience with cloud-native security architectures.
Knowledge of API gateways, service meshes, and federated identity platforms.
Rate: £550 day Outside IR35
Start Date: ASAP
End Date: 18/12/2026
Active SC Clearance
Location: Remote/Hybrid (UK-based)
Responsibilities
Design and implement OAuth 2.0 Token Exchange (RFC 8693) capabilities.
Develop secure identity delegation and propagation patterns across distributed services.
Implement token down-scoping and audience restriction mechanisms aligned to least-privilege principles.
Design secure service-to-service authentication frameworks within zero-trust environments.
Build and maintain robust JWT validation and cryptographic trust chains.
Integrate applications and services using OpenID Connect (OIDC) standards
Essential:
OAuth 2.0 & Identity Standards
Proven hands-on implementation experience with OAuth 2.0 Token Exchange (RFC 8693).
Strong understanding of OpenID Connect (OIDC) core specifications.
Expert-level understanding of JWT (RFC 7519).
Experience signing, validating and encrypting tokens using JWS and JWE.
Strong knowledge of JWKS endpoints and automated key rotation strategies.
Understanding of secure alternatives to shared-secret authentication mechanisms.
Experience securing service-to-service communication within distributed microservice architectures.
Understanding of zero-trust security principles.
Knowledge of secure transit-layer protection and identity-based access controls.
Identity Delegation & Token Management
Experience implementing:
Token down-scoping
Audience restriction (aud)
Actor and Subject claims handling
Experience designing secure token life cycle management strategies including:
Token caching
Token renewal
Revocation patterns
Familiar with:
CDDO Secure by Design principles
Experience with cloud-native security architectures.
Knowledge of API gateways, service meshes, and federated identity platforms.
Reference: 3145436898
https://jobs.careeraddict.com/post/113611833
Senior engineer - Identity & Token Security
Posted on Jul 27, 2026 by Opus Recruitment Solutions Ltd
London, United Kingdom
IT
16 Aug 2026
£550 - £600 Daily
Contract/Project
Senior Engineer - Identity & Token Security
Rate: £550 day Outside IR35
Start Date: ASAP
End Date: 18/12/2026
Active SC Clearance
Location: Remote/Hybrid (UK-based)
Responsibilities
Design and implement OAuth 2.0 Token Exchange (RFC 8693) capabilities.
Develop secure identity delegation and propagation patterns across distributed services.
Implement token down-scoping and audience restriction mechanisms aligned to least-privilege principles.
Design secure service-to-service authentication frameworks within zero-trust environments.
Build and maintain robust JWT validation and cryptographic trust chains.
Integrate applications and services using OpenID Connect (OIDC) standards
Essential:
OAuth 2.0 & Identity Standards
Proven hands-on implementation experience with OAuth 2.0 Token Exchange (RFC 8693).
Strong understanding of OpenID Connect (OIDC) core specifications.
Expert-level understanding of JWT (RFC 7519).
Experience signing, validating and encrypting tokens using JWS and JWE.
Strong knowledge of JWKS endpoints and automated key rotation strategies.
Understanding of secure alternatives to shared-secret authentication mechanisms.
Experience securing service-to-service communication within distributed microservice architectures.
Understanding of zero-trust security principles.
Knowledge of secure transit-layer protection and identity-based access controls.
Identity Delegation & Token Management
Experience implementing:
Token down-scoping
Audience restriction (aud)
Actor and Subject claims handling
Experience designing secure token life cycle management strategies including:
Token caching
Token renewal
Revocation patterns
Familiar with:
CDDO Secure by Design principles
Experience with cloud-native security architectures.
Knowledge of API gateways, service meshes, and federated identity platforms.
Rate: £550 day Outside IR35
Start Date: ASAP
End Date: 18/12/2026
Active SC Clearance
Location: Remote/Hybrid (UK-based)
Responsibilities
Design and implement OAuth 2.0 Token Exchange (RFC 8693) capabilities.
Develop secure identity delegation and propagation patterns across distributed services.
Implement token down-scoping and audience restriction mechanisms aligned to least-privilege principles.
Design secure service-to-service authentication frameworks within zero-trust environments.
Build and maintain robust JWT validation and cryptographic trust chains.
Integrate applications and services using OpenID Connect (OIDC) standards
Essential:
OAuth 2.0 & Identity Standards
Proven hands-on implementation experience with OAuth 2.0 Token Exchange (RFC 8693).
Strong understanding of OpenID Connect (OIDC) core specifications.
Expert-level understanding of JWT (RFC 7519).
Experience signing, validating and encrypting tokens using JWS and JWE.
Strong knowledge of JWKS endpoints and automated key rotation strategies.
Understanding of secure alternatives to shared-secret authentication mechanisms.
Experience securing service-to-service communication within distributed microservice architectures.
Understanding of zero-trust security principles.
Knowledge of secure transit-layer protection and identity-based access controls.
Identity Delegation & Token Management
Experience implementing:
Token down-scoping
Audience restriction (aud)
Actor and Subject claims handling
Experience designing secure token life cycle management strategies including:
Token caching
Token renewal
Revocation patterns
Familiar with:
CDDO Secure by Design principles
Experience with cloud-native security architectures.
Knowledge of API gateways, service meshes, and federated identity platforms.
Reference: 3145436898
Share this job:
Alert me to jobs like this:
Amplify your job search:
Expert career advice
Increase interview chances with our downloads and specialist services.
Visit Blog