Software Engineer, Enterprise Platform

Replit Replit · Enterprise · Foster City, CA · Hybrid · Engineering

Software Engineer on the Enterprise Platform team at Replit, focusing on building infrastructure for large organizations to run Replit within their security and compliance boundaries. This includes deployment flexibility, networking, authorization, and data controls.

What you'd actually do

  1. Build enterprise deployment infrastructure: Design and implement single-tenant and dedicated deployment options, enabling customers to run Replit with the isolation guarantees their security posture requires.
  2. Implement private networking capabilities: Build VPC peering, private connectivity, and static IP configurations that allow enterprises to integrate Replit into their existing network architectures.
  3. Design authorization services: Build the authorization infrastructure that enforces custom enterprise policies; enabling fine-grained access controls, custom permission models, and policy enforcement that integrates with customers' existing identity and governance systems.
  4. Ship data protection features: Implement bring-your-own-key (BYOK) encryption, customer-managed keys, and data residency controls that give enterprises ownership over their most sensitive data.
  5. Develop infrastructure automation: Write Terraform modules and automation that enable reliable, repeatable enterprise deployments across regions and configurations.

Skills

Required

  • Infrastructure Engineering, Platform Engineering, or similar roles
  • Go, Typescript or Python
  • Kubernetes and cloud-native technologies in production environments
  • cloud networking: VPCs, peering, private connectivity, load balancers, DNS
  • infrastructure as code (Terraform) and configuration management
  • authentication and authorization systems: OAuth/OIDC, RBAC/ABAC models, policy enforcement
  • security and encryption fundamentals: TLS, encryption at rest, key management concepts
  • debugging skills with an ability to trace issues across distributed systems
  • written communication

Nice to have

  • Google Cloud Platform (GCP) services, networking, and IAM
  • building multi-tenant or single-tenant SaaS infrastructure
  • enterprise compliance frameworks (SOC 2, FedRAMP, HIPAA)
  • customer-managed encryption keys (CMEK/BYOK) implementations
  • developer platforms, cloud IDEs, or developer productivity products