Software Engineer II
veeamsoftware • Remote, United States
Posted: September 23, 2026
Job Description
Software Engineer, Veeam Data Cloud (FedRAMP)
We are looking for an experienced Software Engineer to join the Veeam Data Cloud (VDC) engineering team, working on the FedRAMP-compliant version of our SaaS product. The mission of the team is to build a secure, reliable, and easy-to-use data protection service that meets the bar federal customers hold us to — and to prove, in code and in tests, that it does. As a member of the team, you will design and build the microservices and security controls that make that compliance real.
This is an excellent opportunity for someone with cloud services and secure software development experience to help build the world's most successful, modern data protection platform. The ideal candidate will have held similar roles in a rapidly growing SaaS company.
This is not a compliance paperwork position — it's a software engineering role focused on cryptography, authentication, auditability, and the reliability of services running in production.
What you'll do
- Design and develop reliable, scalable microservices in Go and C#/.NET, integrated with cloud-based managed services.
- Turn compliance requirements handed over by our compliance engineers into working application code — and the tests that prove the behavior holds.
- Take FIPS-validated cryptography from requirement to running binary: build configuration, startup assertions, TLS mode enforcement, and CI checks a non-compliant build can't pass.
- Instrument privileged operations with structured audit events — actor, target, before and after state, outcome, correlation ID — and wire them into the audit pipeline.
- Harden authentication paths: OAuth client authentication with key pairs rather than shared secrets, stateless JWT validation via JWKS, and SAML federation through our identity provider.
- Work across service API contracts and generated clients as services move onto private network paths.
- Ensure your code is high-quality, thoroughly tested, and FedRAMP-compliant.
- Participate in the on-call rotation for product operations.
- Take ownership of the reliability and efficiency of your services running in the cloud.
- Participate in technical design discussions, review code, and provide feedback to other engineers.
- Collaborate with a distributed team — including compliance engineers who will bring you requirements and expect a clear answer on what the code actually does.
What you'll bring
- 5+ years of experience in the software development industry.
- Strong Go, or strong C#/.NET with real interest in working across both — most of the control plane is Go, and the Microsoft 365 services are .NET.
- Demonstrated expertise designing, building, and running SaaS or large-scale cloud services on Azure, AWS, or GCP.
- Working developer-level knowledge of applied cryptography and authentication: TLS, JWTs, OAuth/OIDC flows, key management. You don't need to be a cryptographer, but you should know what a JWKS endpoint is for and why a client secret is weaker than a signed assertion.
- Experience with structured logging and observability — you've instrumented a service that someone else had to debug at 3am.
- Expertise developing, testing, and debugging production-quality, scalable, concurrent systems.
- Solid testing discipline, including tests that assert a security behavior rather than a feature.
- Comfort reading a written requirement you didn't author, and asking the right clarifying questions before building.
- A strong knowledge of computer science fundamentals (data structures and algorithms).