×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Engineer

Remote / Online - Candidates ideally in
Toronto, Ontario, C6A, Canada
Listing for: Marqeta
Full Time, Remote/Work from Home position
Listed on 2026-08-07
Job specializations:
  • IT/Tech
    Cybersecurity, Cloud Computing: Infrastructure & Operations, Systems Engineer, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 136 CAD Daily CAD 136.00 DAY
Job Description & How to Apply Below

Senior Security Engineer at Marqeta.

About the role

Marqeta is in search of a Senior Security Engineer who will specialize in Identity and Access Management (IAM) within a fully cloud-based infrastructure utilizing AWS. This position involves the development and execution of contemporary identity strategies across all organizational systems and services, without the burden of managing any on-premises data center infrastructure.

Key facts

Location:

Toronto, Canada or Vancouver, Canada Engagement:
Full-time, Flex First (remote or office) Salary: CAD 136, base Manager:
Sandeep Chotwani Recruiter:
Kayla Osuna

What you ll do
  • Develop and enhance Identity Governance and Administration capabilities throughout the organization.
  • Implement and manage Privileged Access Management solutions in an AWS-centric environment.
  • Design a Certificate Lifecycle Management system specifically suited for cloud-native applications.
  • Integrate IAM systems with AWS services, SaaS platforms, and developer/Dev Ops pipelines.
  • Establish identity and access controls for AI and machine learning systems, encompassing training datasets, models, and inference APIs.
  • Automate user provisioning, de-provisioning, and access audits utilizing AI technologies and infrastructure-as-code methodologies.
  • Apply and uphold principles of least privilege and zero-trust through automated policy enforcement.
  • Mentor junior engineers and serve as the technical lead on IAM projects.
  • Collaborate with Security, Dev Ops, and Infrastructure teams to incorporate IAM controls seamlessly into engineering workflows.
  • Stay informed about emerging threats and regulatory changes to continuously refine IAM strategies.
Requirements
  • A minimum of 8 years of relevant experience with a Bachelor s degree, or 5 years with a Master s degree, or 3 years with a PhD, or an equivalent combination of education and experience.
  • Practical experience with IAM solutions such as Okta, Cyber Ark, Ping, or SailPoint.
  • Comprehensive knowledge of AWS IAM, including roles, policies, permission boundaries, and federation concepts.
  • Proficiency in infrastructure-as-code tools like Terraform or Cloud Formation.
  • Familiarity with protocols such as SAML, OAuth2, OpenID Connect, and Kerberos.
  • Understanding of directory services like Active Directory, LDAP, and their cloud-based alternatives.
  • Scripting skills in Python or Power Shell for automating IAM-related tasks.
  • Knowledge of compliance standards such as NIST, SOC 2, and PCI DSS.
  • Proven experience in integrating IAM within CI/CD pipelines, secrets management, and Dev Ops practices.
  • Excellent communication skills with the ability to lead cross-functional teams effectively.
Nice to have
  • Professional certifications such as CISSP, CISM, CIAM/CAMS, Cyber Ark Certified, or Okta Certified Consultant.
  • Experience with AWS services including Lambda, S3, DynamoDB, RDS, Aurora, SNS, SQS, Cloud Trail, Cloud Watch, Code Pipeline, and AWS Developer Tools.
  • Familiarity with Dev Ops tools, secrets management solutions, and CI/CD pipeline methodologies.
Skills & tools
  • IAM platforms:
    Okta, Cyber Ark, Ping, Sail Point
  • AWS services: IAM, Lambda, EC2, S3, DynamoDB, RDS, Aurora, SNS, SQS, Cloud Trail, Cloud Watch, Code Pipeline
  • Infrastructure-as-code tools:
    Terraform, Cloud Formation
  • Protocols: SAML, OAuth2, OpenID Connect, Kerberos
  • Directory services:
    Active Directory, LDAP
  • Scripting languages:
    Python, Power Shell
  • Security concepts: SSO, MFA, PAM, IGA, secrets management, certificate lifecycle management
Practical notes
  • The Flex First policy allows employees to work either from home or in a company office, with compensation adjusted according to location.
  • An annual bonus is available based on individual and company performance metrics.
  • Employees will receive equity in a publicly traded company.
  • A variety of health insurance plans are offered to cater to different needs.
  • Flexible vacation policies are in place to support work-life balance.
  • Retirement savings plans with company contributions are available.
  • A monthly stipend for remote work expenses is provided.
  • Annual development funds are allocated for professional growth and learning opportunities.
  • Family-forming benefits and up to 20 weeks of parental leave are included.

Marqeta is committed to being an equal opportunity employer and offers reasonable accommodations for applicants with disabilities.

#J-18808-Ljbffr
Position Requirements
10+ Years work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary