About HighLevel:
HighLevel is an AI powered, all-in-one white-label sales & marketing platform that empowers agencies, entrepreneurs, and businesses to elevate their digital presence and drive growth. We are proud to support a global and growing community of over 2 million businesses, comprised of agencies, consultants, and businesses of all sizes and industries. HighLevel empowers users with all the tools needed to capture, nurture, and close new leads into repeat customers. As of mid 2025, HighLevel processes over 4 billion API hits and handles more than 2.5 billion message events every day. Our platform manages over 470 terabytes of data distributed across five databases, operates with a network of over 250 microservices, and supports over 1 million hostnames.
Our People:
With over 1,500 team members across 15+ countries, we operate in a global, remote-first environment. We are building more than software; we are building a global community rooted in creativity, collaboration, and impact. We take pride in cultivating a culture where innovation thrives, ideas are celebrated, and people come first, no matter where they call home.
Our Impact:
As of mid 2025, our platform powers over 1.5 billion messages, helps generate over 200 million leads, and facilitates over 20 million conversations for the more than 2 million businesses we serve each month. Behind those numbers are real people growing their companies, connecting with customers, and making their mark - and we get to help make that happen.
About the Role:
As a Lead Engineer on the Users team, you will own day-to-day execution across some of the most business-critical and sensitive parts of the platform: permissions, tokens, and user-facing access flows.
This role is for someone who can move fast in an imperfect system, take on existing tech debt without fear, and deliver visible improvements across frontend and backend surfaces - without breaking security guarantees. You’ll work closely with Staff Engineers, Product Managers, and Designers to turn complex authorisation models into simple, reliable, and understandable user experiences.
Responsibilities:
End-to-end ownership of permissions and access control features:
-> Roles, permissions, scopes, and user assignments
-> Admin, agency, and account-level access flows
Execution on token-related workflows:
-> Token creation, rotation, revocation, and expiry flows
-> UI and backend consistency for API keys and access tokens
Tech-debt reduction in identity and access systems:
-> Untangling legacy permission logic
-> Removing implicit or duplicated authorisation paths
Full-stack delivery of security-sensitive user flows:
-> Permission visibility and debugging experiences
Improve developer ergonomics:
-> Cleaner APIs
-> Better abstractions
-> Safer defaults for other teams
Partner with Staff Engineers to operationalise architecture:
-> Turn RFCs into shippable code
-> Close gaps between design and reality
Requirements:
5+ years of engineering experience
Strong full-stack skills
Proven ability to pick up messy systems and improve them
Solid understanding of: Authorisation and permissions || Token-based access patterns
Experience shipping security-sensitive features end-to-end
Nice to Have:
Experience working with RBAC/scopes/multi-tenant systems
Prior ownership of large refactors or tech-debt initiatives
Comfort working in fast-moving product teams
EEO Statement:
The company is an Equal Opportunity Employer. As an employer subject to affirmative action regulations, we invite you to voluntarily provide the following demographic information. This information is used solely for compliance with government recordkeeping, reporting, and other legal requirements. Providing this information is voluntary and refusal to do so will not affect your application status. This data will be kept separate from your application and will not be used in the hiring decision.
#LI-Remote #LI-HB1