Staff Software Engineer

Posted 4 Days Ago
Be an Early Applicant
Pune, Maharashtra, IND
In-Office
Expert/Leader
Information Technology • Software
The Role
Lead architecture, implementation, and operation of a multi-tenant IAM platform. Define roadmap, build integrations with identity providers and API gateways, implement authentication/authorization (OAuth/OIDC/SAML/JWT/MFA), design RBAC/ABAC and policy-based authorization, enable machine identity and secrets management, and drive compliance, scalability, and cross-product adoption while providing hands-on engineering and operational ownership.
Summary Generated by Built In

About Kaseya

Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Our comprehensive platform helps organizations efficiently manage, secure, and automate their IT environments, driving operational efficiency and long-term business success.

Backed by Insight Partners, a leading global software investor, Kaseya has experienced sustained double-digit growth and continues to expand its global footprint. Today, Kaseya supports customers in more than 20 countries and manages over 15 million endpoints worldwide.

Founded in 2000, Kaseya has built a culture centered around innovation, accountability, and results. We are a high-growth, high-performance organization that values individuals who are driven, adaptable, and committed to delivering exceptional outcomes for our customers and teammates alike.

At Kaseya, success comes from embracing challenges, moving with urgency, and continuously raising the bar. 

Senior Staff Software Engineer – Identity & Access Management Platform

Required Qualifications

  • 12+ years of software engineering experience with significant experience building distributed systems, platform services, or security infrastructure.
  • Deep expertise in Identity and Access Management (IAM), authentication, authorization, federation, and access governance.
  • Strong hands-on experience with OAuth 2.0, OpenID Connect (OIDC), SAML, JWTs, MFA, enterprise SSO, and delegated authorization patterns.
  • Demonstrated experience implementing, operating, extending, or integrating enterprise IAM platforms such as Zitadel, Keycloak, Authentik, ForgeRock, Ping Identity, Okta, Auth0, or equivalent solutions.
  • Experience building identity platforms by leveraging and extending open-source technologies rather than developing IAM systems entirely from scratch.
  • Strong understanding of multi-tenant SaaS architectures, tenant isolation, delegated administration, and B2B/B2B2B identity models.
  • Experience designing and implementing RBAC, ABAC, policy-based authorization, entitlement management, and access governance solutions.
  • Experience building and operating secure API platforms, service-to-service authentication, and machine identity systems.
  • Strong software engineering skills with modern backend technologies, cloud-native architectures, and infrastructure automation.
  • Experience designing highly available, scalable, and secure distributed systems.
  • Proven track record of leading large cross-functional technical initiatives while remaining deeply hands-on in architecture, implementation, and operational ownership.

Preferred Qualifications

  • Direct experience implementing or operating Zitadel or similar in a production environment.
  • Experience integrating IAM platforms with enterprise identity providers including Microsoft Entra ID, Okta, Google Workspace, Ping Identity, and Active Directory.
  • Experience with policy engines and policy-as-code frameworks such as Open Policy Agent (OPA), Cedar, or similar technologies.
  • Experience with machine identity lifecycle management, secrets management, certificate management, and workload identities.
  • Experience designing audit, compliance, governance, and entitlement review systems.
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, or FedRAMP.

Responsibilities:

Technical Leadership

  • Define the long-term architecture and technical roadmap for the IAM platform.
  • Lead identity, authentication, authorization, and access governance initiatives spanning multiple products and engineering teams.
  • Establish standards, reference architectures, and best practices for identity and access management across the organization.
  • Drive platform adoption and migration strategies for existing products and services.

Hands-On Engineering 

  • Design, implement, and operate core IAM platform services.
  • Build integrations between identity providers, API gateways, authorization systems, secrets management platforms, and SaaS products.
  • Develop services supporting user lifecycle management, machine identity management, delegated administration, access reviews, and compliance reporting.
  • Implement secure token exchange, service-to-service authentication, and federated identity workflows.
  • Build APIs, automation, and self-service capabilities for onboarding, provisioning, and access governance.
  • Troubleshoot and resolve complex scalability, reliability, and security challenges across the platform.

Security & Governance

  • Design authorization models supporting RBAC, ABAC, delegated administration, and multi-tenant environments.
  • Define controls for least privilege, separation of duties, credential management, and privilege escalation prevention.
  • Ensure complete auditability of access grants, modifications, reviews, and revocations.
  • Partner with security and compliance teams to meet regulatory and customer requirements.

Additional information
Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.

Skills Required

  • 12+ years of software engineering experience building distributed systems, platform services, or security infrastructure
  • Deep expertise in Identity and Access Management (IAM), authentication, authorization, federation, and access governance
  • Strong hands-on experience with OAuth 2.0, OpenID Connect (OIDC), SAML, JWTs, MFA, and enterprise SSO
  • Experience implementing, operating, extending, or integrating enterprise IAM platforms (Zitadel, Keycloak, Authentik, ForgeRock, Ping Identity, Okta, Auth0, or equivalent)
  • Experience building identity platforms by leveraging and extending open-source technologies rather than building IAM from scratch
  • Strong understanding of multi-tenant SaaS architectures, tenant isolation, delegated administration, and B2B/B2B2B identity models
  • Experience designing and implementing RBAC, ABAC, policy-based authorization, entitlement management, and access governance
  • Experience building and operating secure API platforms, service-to-service authentication, and machine identity systems
  • Strong software engineering skills with modern backend technologies, cloud-native architectures, and infrastructure automation
  • Experience designing highly available, scalable, and secure distributed systems
  • Proven track record of leading large cross-functional technical initiatives while remaining deeply hands-on in architecture, implementation, and operational ownership
  • Direct experience implementing or operating Zitadel or similar in production
  • Experience integrating IAM with enterprise identity providers (Microsoft Entra ID, Okta, Google Workspace, Ping Identity, Active Directory)
  • Experience with policy engines and policy-as-code frameworks such as Open Policy Agent (OPA), Cedar, or similar
  • Experience with machine identity lifecycle management, secrets management, certificate management, and workload identities
  • Experience designing audit, compliance, governance, and entitlement review systems
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, or FedRAMP

Kaseya Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Kaseya and has not been reviewed or approved by Kaseya.

  • Leave & Time Off Breadth PTO is commonly described around 20–21 days per year plus standard holidays. Some indicate they can fully disconnect while on leave.
  • Equity Value & Accessibility Equity or option grants are available to many roles, offering potential upside beyond base pay. This exposure is presented as a meaningful component of total compensation for some roles.
  • Affordable Benefits The high‑deductible medical plan is described as having low or employer‑covered employee‑only premiums in some cases. This can reduce out‑of‑pocket costs for those who select the HDHP.

Kaseya Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Miami, FL
5,000 Employees
Year Founded: 2000

What We Do

Kaseya is a premier provider of unified IT management and security software for managed service providers (MSPs) and small to medium-sized businesses (SMBS). Through its customer-centric approach, Kaseya delivers best-in-breed technologies that allow organizations to efficiently manage, secure and backup IT. Kaseya offers a broad array of IT management solutions, including well-known names: Kaseya, IT Glue, RapidFire Tools, Spanning Cloud Apps, ID Agent, Graphus, RocketCyber, TruMethods and Unitrends. These solutions empower businesses to command all of IT centrally, easily manage remote and distributed environments, simplify backup and disaster recovery, safeguard against cybersecurity attacks, effectively manage compliance and network assets, streamline IT documentation and automate across IT management functions. Headquartered in Miami, Florida, Kaseya is privately held with a presence in over 20 countries.

Gallery

Gallery

Similar Jobs

SailPoint Logo SailPoint

Staff Software Engineer

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Hybrid
Pune, Maharashtra, IND
2461 Employees

Rapid7 Logo Rapid7

Staff Software Engineer

Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Remote or Hybrid
Pune, Maharashtra, IND
2400 Employees

OpenGov Logo OpenGov

Staff Software Engineer

Artificial Intelligence • Cloud • Software
In-Office or Remote
2 Locations
922 Employees

Kaseya Logo Kaseya

Staff Software Engineer

Information Technology • Software
In-Office
Pune, Maharashtra, IND
5000 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account