Archived listing. The details below describe a past opening.
Senior DevSecOps / CIAM Developer
Location: Downtown Montreal, QC
Contract: 12 months, with possibility of renewal
Hours: 37.5 hours/week
Work Model: Hybrid – approximately 6 days onsite per month
Language: Bilingual French and English required
About the Role
We are looking for a highly experienced Senior DevSecOps / CIAM Developer to design, integrate, automate, and support secure cloud-based identity and application platforms.
This is a senior hands-on role combining DevSecOps, CIAM, cloud infrastructure, Kubernetes, Infrastructure as Code, CI/CD, API integration, cybersecurity, and SRE practices.
The successful candidate will help design and deliver secure, scalable solutions across front-end, back-end, APIs, identity services, and cloud infrastructure.
Key Responsibilities
- Design, integrate, operate, and enhance a CIAM platform across front-end, back-end, API, and identity services.
- Support CIAM integrations with customer-facing and partner applications.
- Design and optimize user journeys for registration, authentication, authorization, and identity management.
- Implement identity protocols and technologies including OAuth 2.0, OIDC, SAML 2.0, SCIM, FIDO2, biometrics, certificates, and OpenFGA.
- Lead DevSecOps and SRE practices, including automation, reliability, security, and operational improvements.
- Automate cloud infrastructure and application deployments using Terraform / Infrastructure as Code (IaC).
- Build and improve CI/CD pipelines using technologies such as GitHub, ArgoCD/GitOps, and SonarQube.
- Deploy and support APIs and containerized applications on Kubernetes.
- Design secure cloud infrastructure across AWS, Azure, or GCP.
- Support secure cloud networking, including WAF, DNS, DDoS protection, and related network security controls.
- Implement monitoring and observability using technologies such as Grafana, Prometheus, OpenTelemetry, Cloud Monitoring, Azure Monitor, and Log Analytics.
- Design secure, reliable, scalable, and high-performing technical solutions based on business requirements.
- Participate in cloud solution feasibility, architecture, design, implementation, and production deployment.
- Troubleshoot complex production and operational issues and participate in 24/7 problem resolution when required.
- Perform risk assessments and cost/benefit analyses.
- Act as a technical SME and provide guidance and coaching to technical teams and senior stakeholders.
Must-Have Experience
- Bachelor's degree in Information Technology, Computer Engineering, or a related field.
- 10–15 years of relevant IT experience, including senior solution architecture, development, DevSecOps, or related experience.
- Strong hands-on experience implementing and promoting DevSecOps and SRE principles.
- Strong CIAM / Identity & Access Management experience.
- Experience deploying and supporting CIAM technologies such as Ping Identity/PingOne, Keycloak, Okta, Azure External Identities, GCP CIAM, Auth0, or similar.
- Strong knowledge of OAuth 2.0, OIDC, SAML 2.0, SCIM and modern authentication/authorization patterns.
- Strong experience with at least one major cloud platform: AWS, Azure, or GCP.
- Strong experience with Kubernetes and API-based solutions.
- Hands-on Terraform / Infrastructure as Code experience.
- Strong CI/CD automation experience with tools such as GitHub, ArgoCD/GitOps, SonarQube, or similar.
- Experience with secure cloud networking, including WAF, DNS and DDoS protection.
- Strong understanding of monitoring and observability.
- Knowledge of C# and JavaScript and related frameworks.
- Strong understanding of microservices, distributed architecture, APIs, event-driven architecture and streaming.
- Experience with API gateways such as Apigee, Traefik, Kong, API Gateway or Entra ID.
- Knowledge of secure software-development practices including TDD, code coverage, OWASP and peer code reviews.
- Working knowledge of SQL, NoSQL and caching technologies.
- Strong knowledge of Agile and SAFe methodologies.
- Fluent/bilingual French and English – written and spoken.
Strong Assets
- Experience with SaaS integrations.
- Knowledge of privacy legislation and information-security requirements.
- Strong solution architecture background spanning applications, infrastructure and data.
- Experience leading multidisciplinary technical teams.
- Strong analytical, problem-solving and technical recommendation skills.