Staff Software Engineer, Identity and Access Management - Toronto - Kong Inc.

    Kong Inc.
    Kong Inc. Toronto

    2 weeks ago

    Description

    Staff Software Engineer, Identity and Access Management


    Join to apply for the Staff Software Engineer, Identity and Access Management role at Kong Inc.

    This range is provided by Kong Inc. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

    Base pay range


    CA$163,685.00/yr - CA$245,480.00/yr

    Are you ready to power the World's connections?


    If you don't think you meet all of the criteria below but are still interested in the job, please apply. Nobody checks every box - we're looking for candidates that are particularly strong in a few areas, and have some interest and capabilities in others.

    The Role


    Kong is building the future of API management for developers. We're a fast-growing, well-funded company with happy customers and motivated employees. Insomnia, acquired in 2019, is a full-lifecycle API development platform that has quickly become an integral part of Kong's product portfolio.

    As a Staff Software Engineer on the Konnect team at Kong, you'll architect Kong Identity's multi-tenant identity platform supporting complex organizational hierarchies, cross-tenant isolation, and enterprise-grade security controls.

    What You'll Do

    • Design and implement advanced token management systems, including refresh token rotation, proof-of-possession tokens, and custom token introspection with real-time revocation capabilities.
    • Lead development of Kong Identity's extensible claims engine supporting dynamic attribute resolution, contextual claim injection, and complex business logic evaluation at token issuance.
    • Architect global identity infrastructure with edge optimization, intelligent token caching, and cross-region replication strategies for sub-millisecond authentication latency worldwide.
    • Design sophisticated rate limiting, anomaly detection, and fraud prevention systems to protect against credential stuffing, token abuse, and distributed attacks.
    • Build enterprise identity federation capabilities, including SAML bridge patterns, external IdP chaining, and custom protocol adapters for legacy system integration.
    • Lead technical strategy for Kong Identity's developer experience, including SDKs, webhooks, audit logging, and real-time analytics dashboards for token lifecycle visibility.
    • Architect advanced client management systems supporting dynamic client registration, automated credential rotation, and programmatic policy enforcement.
    • Design Kong Identity's plugin architecture enables custom grant flows, protocol extensions, and third-party integrations while maintaining security boundaries.
    • Drive implementation of compliance frameworks (SOC 2, FedRAMP, GDPR), including comprehensive audit trails, data residency controls, and privacy-preserving token designs.
    • Lead technical initiatives for Kong Identity's integration with observability platforms, supporting distributed tracing, metrics collection, and security event correlation.
    • Mentor engineering teams on advanced identity concepts including zero-trust architectures, workload identity, and service mesh integration patterns.

    What You'll Bring

    • 7+ years of experience building production identity platforms at leading identity providers or enterprise software companies, with proven track record of handling millions of authentication requests daily.
    • Deep expertise in advanced OAuth 2.0 extensions (PKCE, mTLS, JWT bearer assertions, token exchange), OpenID Connect profiles, and emerging standards like OAuth 2.1 and GNAP.
    • Proven experience architecting multi-tenant identity platforms with complex isolation requirements, tenant-specific configurations, and enterprise feature sets.
    • Strong background in cryptographic protocols including advanced JWT patterns, key rotation strategies, Hardware Security Module (HSM) integration, and post-quantum cryptography considerations.
    • Experience building identity platforms with sophisticated analytics, real-time monitoring, and security event detection capabilities at enterprise scale.
    • Expertise in global identity infrastructure including edge deployment strategies, geo-distributed token validation, and cross-region data consistency patterns.
    • Deep understanding of enterprise identity integration patterns including SAML federation, LDAP/AD bridges, SCIM provisioning, and custom protocol adapters.
    • Proven track record building developer-first identity platforms including comprehensive SDKs, webhook systems, and extensible API designs.
    • Experience with identity platform security including threat modeling, penetration testing coordination, and implementation of advanced attack prevention mechanisms.
    • Strong background in compliance and regulatory requirements for identity systems including audit trail design, data residency controls, and privacy engineering.
    • Experience building identity platforms supporting complex organizational structures, delegated administration, and fine-grained permission models.
    • Expertise in high-performance system design including horizontal scaling strategies, caching architectures, and latency optimization for identity operations.
    • Knowledge of service mesh identity patterns, workload identity bootstrapping, and integration with container orchestration platforms.
    • Experience with identity protocol extensions, custom grant flows, and building extensible identity platforms that support diverse use cases.
    • Proven ability to lead technical initiatives in complex, regulated environments while balancing innovation with security and compliance requirements.

    About Kong


    Kong Inc., a leading developer of cloud API technologies, is on a mission to enable companies around the world to become "API-first" and securely accelerate AI adoption. Kong helps organizations globally — from startups to Fortune 500 enterprises — unleash developer productivity, build securely, and accelerate time to market. For more information about Kong, please visit or follow us on X @thekonginc.

    Compensation Range: CA$163.7K - CA$245.5K

    Seniority level


    Mid-Senior level

    Employment type


    Full-time

    Job function


    Engineering and Information Technology

    Industries

    Software Development

    Referrals increase your chances of interviewing at Kong Inc. by 2x

    Get notified about new Staff Software Engineer jobs in Toronto, Ontario, Canada.


    #J-18808-Ljbffr

  • Only for registered members Greater Toronto Area

    Le Spécialiste IAM est responsable de la conception, de la mise en œuvre et de la maintenance de mesures robustes pour protéger l'infrastructure, les applications et les données basées sur le cloud. · Gestion des identités et des accès (IAM) : · ...

  • Only for registered members Toronto, ON

    The successful candidate will report to the Head of Market Access and Stakeholder Relations developing the market access strategy and plans for key stakeholder groups involved in the reimbursement process nationally and provincially. · Develops and executes market access strategi ...

  • Only for registered members Toronto, Ontario

    We are seeking a skilled Developer with hands-on experience implementing and managing Ping Identity solutions. · Implement, · configure,and maintain Ping Access Manager (AM) · ...

  • Only for registered members Toronto, Ontario

    The Data Access Management Analyst will be part of the Logical and Access Governance Operations team with a focus to support the maintenance of the DAM service and Data Access remediation. The Data Operations Analyst will be the first line of contact regarding service incidents, ...

  • Only for registered members Toronto

    +Job summary · +As the Manager Identity Access Management you will help deliver support IAM solutions across Moneris.+You will focus on daily management of IAM technologies processes ensuring secure efficient access for employees contractors vendors customers.+You will work close ...

  • Only for registered members Toronto, Ontario

    The Manager, Identity and Access Management will help deliver and support IAM solutions across Moneris. · Support the implementation and ongoing operations of IAM solutions according to Moneris security policies and regulatory requirements. · Collaborate with Information Security ...

  • Only for registered members Toronto, ON Remote job

    This role is designated as 100% Remote. The successful candidate will be working from home full time. · The primary responsibilities include system access (application and AD) provisioning. · Solving IAM issues. · ...

  • Only for registered members Toronto, ON

    BDO is hiring an Analyst for its Identity and Access Management team. · ...

  • Only for registered members Toronto, ON

    This is an Identity Access Management Consultant position that requires experience with Oracle Identity Manager customization. · Develop solutions to resolve existing PKI OIM issues. · Implement features required by identity and certificate management system. · ...

  • Only for registered members Toronto $111,000 - $148,500 (CAD)

    The successful candidate will report to the Head of Market Access and Stakeholder Relations and work closely with commercial and field market access teams to develop the market access strategy for key stakeholder groups involved in the reimbursement process nationally and provinc ...

  • Only for registered members Toronto

    The Data Access Operations Analyst will be part of the Logical and Access Governance Operations team with a focus to support the maintenance of the DAM service and Data Access remediation. The Data Operations Analyst will be the first line of contact regarding service incidents, ...

  • Only for registered members Toronto

    We are seeking a skilled Developer with hands-on experience implementing and managing Ping Identity solutions specifically Ping Access Manager AM and Ping Directory Server DS. · Implement configure and maintain Ping Access Manager AM to deliver secure authentication authorization ...

  • Only for registered members Toronto

    As the Manager, Identity and Access Management, you will help deliver and support IAM solutions across Moneris.You will focus on the daily management of IAM technologies and processes ensuring secure efficient access for employees contractors vendors customers. · ...

  • Only for registered members Toronto, Ontario

    The Identity & Access Management Specialist position is responsible for the life-cycle of access and identity management. · Own and support the full lifecycle of Identity and Access Management (IAM), including user provisioning/deprovisioning, access reviews, and role design. · ...

  • Only for registered members Toronto, Ontario

    The Identity Lifecycle Management team within the Access Management Operations is responsible for the execution of established security controls pertaining to identity and access. · ...

  • Only for registered members Toronto

    We are a minority owned staff augmentation and technology consulting company. To keep our valued employees engaged in challenging work we need to offer market relevant benefits and provide continued opportunities for professional growth. · Sustainment of Large Identity Systems: 4 ...

  • Only for registered members Toronto, Ontario

    + Job summary: The Identity Access Management Consultant will support the development, UAT and production of PKI OIM and OPS/BPS Secure environments. · + Qualifications: 10+ years experience sustaining commercial-off-the-shelf (COTS) based identity and access management systems. ...

  • Only for registered members Toronto, Ontario

    This role is designated as Hybrid as per Fidelity Canada's Dynamic Working Policy. · We offer individuals and institutions a range of trusted investment portfolios and services - and we're constantly seeking to find new and better ways to help our clients. · We are proud to be re ...

  • Only for registered members Toronto, Ontario

    This position is open due to an existing vacancy to support our evolving business needs. · ...

  • Only for registered members Toronto, Ontario

    BDO is a firm built on a foundation of positive relationships with our people and our clients each day putting people first every day BDO is a firm built on a foundation of positive relationships with our people and our clients. · Lead process improvement with workflows pertainin ...

  • Only for registered members Toronto, Ontario

    At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, Indiana. Our employees around the world work to discover and bring life-changing medicines to those who need them, improve th ...

Jobs
>
Toronto