Senior Systems Engineer (Linux Isolation & Networking) New Toronto, Ontario

Senior Systems Engineer (Linux Isolation & Networking) New Toronto, Ontario

29 Aug
|
Kaseya
|
Ontario

29 Aug

Kaseya

Ontario

About Kaseya

Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Our comprehensive platform helps organizations efficiently manage, secure, and automate their IT environments, driving operational efficiency and long-term business success.

Backed by Insight Partners, a leading global software investor, Kaseya has experienced sustained double-digit growth and continues to expand its global footprint. Today, Kaseya supports customers in more than 20 countries and manages over 15 million endpoints worldwide.

Founded in 2000, Kaseya has built a culture centered around innovation, accountability, and results. We are a high-growth, high-performance organization that values individuals who are driven, adaptable, and committed to delivering exceptional outcomes for our customers and teammates alike.

At Kaseya, success comes from embracing challenges, moving with urgency, and continuously raising the bar.

Senior Systems Engineer (Linux Isolation & Networking)
Why Kaseya?
Join a fast-growing company that’s transforming the IT industry. At Kaseya, you’ll have the opportunity to work with cutting- edge technology, collaborate with a dynamic team, and develop your career in a highimpact role.

Join the Kaseya growth rocket ship and see how we are #ChangingLives!

Job Summary
We’re hiring a Senior Systems Engineer to build the process-isolation, sandboxing, and network-interception infrastructure supporting the Kaseya Intelligence Platform. This is a hands‑on systems role operating at the Linux, networking, and process boundary rather than the application layer. You’ll own complex platform components from design through production, helping ensure automation and agentic AI workloads remain isolated, secure, observable,



and reliable in multi‑tenant environments.

Roles & Responsibilities

Design, build, and operate a per-workload sidecar proxy that intercepts outbound API traffic and applies authentication, credential, compliance, and audit controls

Implement process‑isolation controls using Linux namespaces, cgroups, separate user identities, ptrace restrictions, protected memory, and secure credential cleanup

Evaluate and implement language‑independent sandboxing approaches using gVisor, Firecracker, WebAssembly runtimes, micro virtual machines, or Unix domain sockets

Build infrastructure that enforces workload and customer boundaries across isolated execution environments and Temporal namespaces

Integrate workload identity and attestation capabilities using SPIFFE, SPIRE, or similar technologies

Implement secure workload startup sequencing, including KMS access, OAuth token preparation, network‑rule installation, and readiness signalling

Improve the performance, observability, reliability, and failure recovery of the execution and isolation layers

Partner with Platform, Security, and Backend Engineering teams on system design, production troubleshooting, and long‑term reliability improvements

Required Qualifications

5+ years of systems engineering or software engineering experience building production infrastructure, runtime, or platform services

Experience developing production systems using Go, Rust, C, or C++

Experience working with Linux internals,



including namespaces, cgroups, netfilter or iptables, sockets, and process lifecycle management

Experience implementing or operating at least one sandboxing or workload‑isolation technology, such as gVisor, Firecracker, WebAssembly, containers, or micro virtual machines

Experience building networking systems involving TCP/IP, transparent proxying, or TLS termination and origination

Preferred Qualifications

Experience using Go or Rust for systems‑level or infrastructure development

Experience building or operating multi‑tenant container, sandbox, or virtual‑machine isolation infrastructure

Experience with SPIFFE, SPIRE, or another workload identity and attestation framework

Experience integrating AWS KMS, Azure Key Vault, GCP Cloud KMS, or similar key‑management services

Experience working on endpoint security, EDR, zero‑trust networking, or infrastructure security products

Experience with Kubernetes, container‑runtime internals, or managed container platforms

Experience with Temporal or another durable workflow execution platform

Additional Information
Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.

Additional information
Kaseya provides equal employment prospect to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.

#J-18808-Ljbffr

📌 Senior Systems Engineer (Linux Isolation & Networking) New Toronto, Ontario
🏢 Kaseya
📍 Ontario

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior systems engineer (linux isolation & networking) new toronto, ontario / ontario