SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Kaseya is seeking a Principal Software Engineer to lead the technical strategy and architectural evolution of its Identity & Access Management (IAM) and Control Plane systems. This is a senior individual contributor role focused on designing and owning end-to-end IAM services that power both customer-facing and internal APIs for a global platform managing over 15 million endpoints.
You will be responsible for the long-term health and architectural evolution of identity systems, including identity lifecycle management, authentication, authorization, SSO, and privileged access controls. Key responsibilities include:
• Architectural Leadership: Design and evolve secure, high-throughput, low-latency IAM systems. Lead design and implementation of IAM integrations for SaaS, on-premises, and cloud platforms, including federation protocols (SAML, OIDC, OAuth2), MFA, and passwordless capabilities.
• Technical Strategy: Define the roadmap for migrating or scaling legacy authentication and authorization systems into modern, distributed architectures.
• Cross-Functional Influence: Collaborate with Product, Security, and UX teams to translate complex business requirements into robust, secure technical specifications.
• Mentorship & Excellence: Set the standard for engineering excellence through deep code reviews, technical design documents, and mentoring senior engineers.
• Operational Stewardship: Oversee platform reliability under constant load, ensuring observability and resilience are core to the system.
Required qualifications: 10+ years of professional software engineering experience at scale, with at least 5 years at Senior Staff or Principal level. Deep expertise in IAM protocols (OAuth2, OIDC, SAML), RBAC/ABAC models, and security implications of session management. Experience with Active Directory and federation protocol implementation. Proven track record designing and debugging large-scale distributed systems handling global traffic. Experience in data security, authentication, network security, Kubernetes security, web security, and identity management. Background from large-scale internet companies is a plus.