<div class="content-intro"><p><strong>About Kaseya</strong></p> <p data-start="226" data-end="568">Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Our comprehensive platform helps organizations efficiently manage, secure, and automate their IT environments, driving operational efficiency and long-term business success.</p> <p data-start="570" data-end="898">Backed by <a class="decorated-link" href="https://www.insightpartners.com?utm_source=chatgpt.com" target="_new" data-start="580" data-end="654">Insight Partners</a>, a leading global software investor, Kaseya has experienced sustained double-digit growth and continues to expand its global footprint. Today, Kaseya supports customers in more than 20 countries and manages over 15 million endpoints worldwide.</p> <p data-start="900" data-end="1191">Founded in 2000, Kaseya has built a culture centered around innovation, accountability, and results. We are a high-growth, high-performance organization that values individuals who are driven, adaptable, and committed to delivering exceptional outcomes for our customers and teammates alike.</p> <p data-start="1193" data-end="1468">At Kaseya, success comes from embracing challenges, moving with urgency, and continuously raising the bar.&nbsp;</p></div><p><strong>Position Summary:</strong></p> <p>Kaseya is looking for an Intelligence Systems Engineer to design and build the low-level process isolation, sandboxing, and network interception infrastructure that powers secure sidecar architecture at scale. This role focuses on Linux systems, networking, process boundaries, and security infrastructure rather than application-layer development. You role is focused, but not limited to:</p> <ul> <li>You will design and build the process isolation, sandboxing, and network interception infrastructure that makes sidecar architecture work at scale.</li> <li>This is low-level systems work who will be operating at the OS, networking, and process boundary layer, not the application layer.</li> <li>Build and maintain the Fleet sidecar: a per-workload transparent authenticating proxy that intercepts all outbound vendor API calls at the TCP layer via iptables, enforces credential management and compliance policy, and writes tamper-evident audit ledger entries: all without any app-level instrumentation</li> <li>Implement and harden process isolation between the sidecar and automation workload processes: separate UIDs, ptrace restrictions, mlock'd credential memory, explicit zeroing of plaintext after use</li> <li>Develop and refine language-agnostic sandboxing approaches: evaluate and implement solutions across gVisor, micro VMs, WASM, and Unix domain socket-based isolation patterns; the platform must support automation workloads written in any language</li> <li>Manage namespace isolation at scale: this platform runs thousands of Temporal namespaces for client orgs; you will work on the infrastructure that keeps those boundaries structurally enforced, not just configured</li> <li>Evaluate and potentially adopt SPIFFE/SPIRE for workload identity attestation within the sandboxed execution environment</li> <li>Work on sidecar startup sequencing: KMS credential fetch, OAuth token warming, iptables rule installation, and readiness signaling all before the workload process starts</li> </ul> <p><strong>Required Qualification:</strong></p> <ul> <li>Deep Linux systems experience: iptables/netfilter, process namespaces, cgroups, socket options, Unix domain sockets</li> <li>Experience with at least one sandboxing or isolation technology: gVisor, Firecracker micro VMs, WASM runtimes, or equivalent</li> <li>Strong networking fundamentals: TCP/IP stack, transparent proxying, TLS termination and origination</li> <li>Language-agnostic mindset : you design platforms that other languages run on top of, not systems tied to a single runtime</li> <li>Comfort working close to the OS: memory management, process lifecycle, privilege separation</li> <li>Familiarity with SPIFFE/SPIRE or similar workload identity frameworks is a strong plus</li> <li>Go or Rust strongly preferred; C/C++ experience relevant</li> </ul> <p><strong>Preferred Qualification:</strong></p> <ul> <li>Experience building or operating multi-tenant container or VM isolation infrastructure</li> <li>Prior work in security tooling, EDR, or zero-trust networking</li> <li>Familiarity with KMS integrations (AWS KMS, Azure Key Vault) at the infrastructure level</li> </ul> <p>&nbsp;</p><div class="content-conclusion"><p><strong>Additional information</strong><br><em>Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.</em></p></div>
Kaseya is a leading provider of IT automation software for IT service providers and public and private sector IT organizations. Kaseya's IT automation platform allows IT professionals to proactively monitor, manage, and maintain distributed IT infrastructures remotely, easily, and efficiently with one integrated web-based platform.
Kaseya's integrated web-based platform is complete, powerful, secure, and easy to deploy and administer. The Kaseya managed service platform is designed for IT administrators who need to reduce complexity and increase productivity, and managed service providers that want to pass those benefits to their customers and increase their own profit margins.
Features:
Our IT Automation Software is easy to integrate and implement. The software saves users time and increases staff productivity of businesses. This decreases production errors and increases productivity, allowing users to focus their time on the needs of their clients. Kaseya gives businesses the tools and technology to completely automate and improve their IT services.
Kaseya's K2 Patch Management Software can eliminate time-consuming tasks such as updating and securing networks in multiple locations and domains. With K2, IT professionals will be able to automatically keep servers, workstations, and remote computers updated with the latest security patches and software updates. Our patch management feature is able to make automatic and recurring patch scans, approve or deny patches, automate easy and fast patch deployment, interactively manage patches, flexibly configure patch management, and give comprehensive, scheduled reports.
With Kaseya's Audit and Inventory feature, you are able to track every system you are managing. With this feature, we are able to work with inventory quickly with every workstation and mobile computer on each network. Tracking every system can be done remotely at any location. The Audit and Inventory feature lets you have complete hardware and software inventory across the network.
Kaseya's System Monitoring Software provides user-defined monitoring for all the managed systems on the user's network. With the help of automated alerts, the user receives instant notification of changes and/or problems. The easy and fast set-up gets the software up and running in minutes with no software to install. It monitors servers, workstations, remote computers, Windows Event Logs, and applications. The software's automated LAN discovery and comprehensive reports keep the organization running smoothly and help ensure network security and productivity.
Our PC Remote Access with Live Connect is a fast and secure solution for any network's machines. IT professionals can access servers and workstations with ease without affecting the productivity of other users. Kaseya works on a web-based management platform which allows a single machine to have full control over all endpoints. Live Connect has the tools to do anything and everything with an agent directly.
Kaseya provides Remote Backup Software and disaster recovery for servers, desktops, and workstations. Our remote backup software offers protection, security, and peace of mind for businesses that want to ensure the recoverability of their electronic data. Our backup provides real-time programmed disk remote backup, file-level remote backup, disk imaging, monitoring, and bare metal restore.
Our Endpoint Security Software advises your system's spyware and adware to review any unwanted applications. For example, if there is something detected and pops up as a warning, anti-virus software will block and remove access to that specific program.
The Kaseya IT Management Monitoring Platform provides proactive, user-defined monitoring with instant notification of problems or changes. Receive a system alert when critical servers go down, users alter their configuration, or a possible security threat occurs. We provide IT professionals with the tools they need to proactively manage their systems and keep the organization running efficiently.
With Kaseya's Remote Control Software, IT professionals can quickly access servers, workstations, and mobile computers. Kaseya G1 is able to work behind firewalls and NAT as well. The remote control software can increase productivity and responsiveness by allowing access to computers from anywhere with a standard web browser.
Kaseya's Desktop Migration feature gives users a 3-step process in order to swap users on an existing computer. Kaseya desktop migration backs up all files, restores previous account information, and migrates single users or multiple users for one machine or many machines on a scheduled basis. Kaseya users never need to wonder what state each machine is in during the migration process.
Location
Pune, Maharashtra
Total raised
$500M
Last stage
Growth
Investors
Mark Sutherland
Co-Founder
Paul Wong
Co-Founder
Fred Voccola
Co-Founder & Former CEO (now Vice Chairman)
No applications, no recruiter spam. Just the intro.
A few questions to make sure this role is the right shape for you. Two minutes.
I write the intro, send it to the founder, and handle the back-and-forth.
If they’re a yes, I book the chat. You show up — that’s the whole job-hunt.