Capco

Capco

Senior Security Engineering Developer / Identity and Access Management (IAM) (Hybrid Toronto)

Canada - Toronto · Senior

Sponsorship not specified$118k-$135kDetected 21 hours ago
JavaSpringRESTOAuthCybersecurityRecruitingZero TrustCommunicationCollaborationMentoring

About the role

  • Capco is seeking a Security Engineering Developer to design, develop, and enhance enterprise authentication capabilities on a Unified Authentication Platform.
  • The role will focus on integrating modern Identity and Access Management (IAM) solutions such as Ping Identity (or equivalent), implementing passwordless authentication, MFA, token services, and secure API integrations to deliver scalable, secure, and seamless authentication experiences.

Responsibilities

  • Design, develop, and maintain capabilities on the Unified Authentication Platform.
  • Develop and implement Passkey (FIDO2/WebAuthn) authentication and associated backend services.
  • Build and integrate Multi-Factor Authentication (MFA) capabilities, including adaptive authentication workflows.
  • Develop secure REST APIs and integrate authentication services with enterprise applications. Implement and manage OAuth 2.0/OIDC token lifecycle, including token issuance, validation, refresh, and revocation.
  • Collaborate with architecture, application, and DevSecOps teams to deliver secure, scalable identity solutions.
  • Employee & Family Assistance Program (EFAP) - Company-paid support services for employees and their dependents/partners
  • Business Coach from Day 1: Personalized one-on-one coaching to support career growth, accelerate development, and help achieve your professional goals at Capco.
  • Personalized one-on-one coaching to support career growth, accelerate development, and help achieve your professional goals at Capco.

Requirements

  • Strong experience in Java/Spring Boot (or equivalent backend technologies).
  • Experience with Ping Identity, PingFederate, PingOne, IBM ISAM/ISVA, or similar IAM platforms.
  • Hands-on experience with OAuth 2.0, OpenID Connect (OIDC), SAML, JWT, and token management.
  • Experience implementing Passkeys (FIDO2/WebAuthn) and Multi-Factor Authentication (MFA).
  • Strong knowledge of RESTful APIs, API security, and authentication patterns.
  • Experience integrating enterprise directories (LDAP/Active Directory) and identity services.

Compensation

  • The salary range for this position is listed below.
  • Additionally, this position may also be eligible to receive an annual discretionary/variable bonus payment.
  • Capco is committed to providing fair and equitable compensation to our people.
  • Our compensation policies and salary ranges are designed to allow our people to progress through the salary range as they demonstrate strong performance and develop in their role over time.
  • The base pay offered to selected candidates will be within the salary range and the placement will vary based upon a variety of factors, including, but not limited to job-related knowledge, skills, experience and internal equity.
  • Canada Pay Transparency

Benefits

  • Comprehensive Benefits Coverage - 100% company-paid health, life, and disability insurance effective from Day 1 of employment
  • Retirement Savings Program - Registered Retirement Savings Plan (RRSP) with the option of receiving a matching employer contribution
  • Virtual Health Care - Company-paid program available to all employees and their dependents/partners
  • Parental Leave Top-Up - Enhanced parental leave benefits available from Day 1 of employment
  • Wellness Support - Fitness reimbursement benefit to promote health and well-being
  • Additionally, this position may also be eligible to receive an annual discretionary/variable bonus payment.

Company info

  • What We're Looking For
  • At Capco, we believe that being yourself is your greatest strength.

This listing is sourced directly from Capco's careers page and normalized into a canonical job model.