Role Overview
- This is a foundational leadership role; the work here impacts every product, customer, and partner experience with Kaseya. The role will be responsible for building and executing the Identity and API strategy for Kaseya's platform.
- This position demands deep technical expertise in Identity platforms combined with strategic product thinking and cross‑functional collaboration.
- The role will work closely with product, security, legal, sales, and marketing teams across the organization to build foundational capabilities that become force multipliers for the entire platform.
- The role shapes the core platform layer that enables engineering teams to build, automate, and operate software and AI‑enabled systems reliably at scale.
What will you do
As a Principal Engineer, you will be the technical north star for our IAM and Control Plane strategy. Your role transcends individual features; you will be responsible for the long‑term health and architectural evolution of our identity systems. Own the end‑to‑end technical design of IAM services, including identity lifecycle management, authentication, authorization, SSO, and privileged access controls, ensuring they are secure, scalable, and highly available.
- Architectural Leadership: Lead the design and evolution of a secure, high‑throughput, low‑latency IAM system that powers both customer‑facing and internal service APIs. Lead design and implementation of IAM integrations for SaaS, on‑prem, and cloud platforms, including federation (SAML, OIDC, OAuth), MFA, and passwordless capabilities.
- Technical Strategy: Define the roadmap for migrating or scaling our legacy authentication and authorization systems into modern, distributed architectures.
- Cross‑Functional Influence: Work closely with Product, Security, and UX teams to translate complex business requirements into robust, secure technical specifications.
- Mentorship & Excellence: Set the standard for engineering excellence through deep code reviews, technical design documents, and mentoring senior engineers.
- Operational Stewardship: Oversee the reliability of a platform under constant load, ensuring observability and resilience are baked into the core of the system.
Required Skills
- Extensive experience: 10+ years of professional experience building and managing software applications at a massive scale, with at least 5 years at Sr. Staff or Principal level.
- Identity domain expertise: Deep understanding of IAM protocols (OAuth2, OIDC, SAML), RBAC/ABAC models, and the security implications of session management at the edge. Experience with Active Directory and extensive experience implementing federation protocols (SAML, OIDC, OAuth2).
- Experience in data security or related areas and expertise in following authentication, network, Kubernetes security, web security, governance, privacy, trust, safety, identity management, access control, key management, inter‑service authentication, secure application frameworks, detection & response. Experience building systems at large‑scale internet companies is a huge plus.
- Distributed systems mastery: Proven track record in designing, architecting, and debugging large‑scale distributed systems that handle global traffic.
- Language proficiency: Deep knowledge of Go, Java, TypeScript, Rust, or similar is highly valued.
- API stewardship: Significant experience designing and versioning public‑facing APIs that are used by millions of developers.
- Recruit and mentor top‑tier engineering talent to scale our security infrastructure.
Desirable Skills
- Observability advocate: A passion for building observable systems using Prometheus, Grafana, and Kibana to proactively identify failures.
- Infrastructure as code: Experience with modern containerized deployment (Docker & Kubernetes), Terraform, and infrastructure automation.
- Security mindset: A background in security engineering or formal verification of protocol implementations.
- Strategic delivery: A history of leading multi‑quarter projects from conception to global rollout in partnership with product owners.
Equal Employment Opportunity
Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.