Senior Security Engineering Developer / Identity and Access Management (IAM) (Hybrid Toronto)
Job Description
<p><strong><span data-contrast="auto">Build secure, scalable backend solutions that protect the world's leading financial institutions.</span></strong><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559740":240}"> </span></p> <p><strong><span data-contrast="auto">The Role</span></strong><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559740":240}"> </span></p> <p> </p> <p>Capco is seeking a Security Engineering Developer to design, develop, and enhance enterprise authentication capabilities on a Unified Authentication Platform. The role will focus on integrating modern Identity and Access Management (IAM) solutions such as Ping Identity (or equivalent), implementing passwordless authentication, MFA, token services, and secure API integrations to deliver scalable, secure, and seamless authentication experiences.</p> <p> </p> <p><strong><span data-contrast="auto">What You'll Do</span></strong><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559740":240}"> </span></p> <ul> <li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"> <p>Design, develop, and maintain capabilities on the Unified Authentication Platform.</p> </li> <li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"> <p>Integrate enterprise IAM solutions such as Ping Identity, IBM Security Verify Access (ISAM), or similar authentication platforms.</p> </li> <li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"> <p>Develop and implement Passkey (FIDO2/WebAuthn) authentication and associated backend services.</p> </li> <li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"> <p>Build and integrate Multi-Factor Authentication (MFA) capabilities, including adaptive authentication workflows.</p> </li> <li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"> <p>Develop secure REST APIs and integrate authentication services with enterprise applications. Implement and manage OAuth 2.0/OIDC token lifecycle, including token issuance, validation, refresh, and revocation.</p> </li> <li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"> <p>Integrate with enterprise security services, directories, and legacy authentication platforms such as IBM ISAM. Apply secure coding practices and security engineering principles to authentication and authorization services.</p> </li> <li dat