Systems Engineer — Linux Isolation & Networking

Toronto, ON

About the role

<div class="content-intro"><p><strong>About Kaseya</strong></p> <p data-start="226" data-end="568">Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Our comprehensive platform helps organizations efficiently manage, secure, and automate their IT environments, driving operational efficiency and long-term business success.</p> <p data-start="570" data-end="898">Backed by <a class="decorated-link" href="https://www.insightpartners.com?utm_source=chatgpt.com" target="_new" data-start="580" data-end="654">Insight Partners</a>, a leading global software investor, Kaseya has experienced sustained double-digit growth and continues to expand its global footprint. Today, Kaseya supports customers in more than 20 countries and manages over 15 million endpoints worldwide.</p> <p data-start="900" data-end="1191">Founded in 2000, Kaseya has built a culture centered around innovation, accountability, and results. We are a high-growth, high-performance organization that values individuals who are driven, adaptable, and committed to delivering exceptional outcomes for our customers and teammates alike.</p> <p data-start="1193" data-end="1468">At Kaseya, success comes from embracing challenges, moving with urgency, and continuously raising the bar. </p></div><p></p> <h1>Systems Engineer — Linux Isolation & Networking</h1> <p><strong>Locations:</strong> Toronto, ON — 2 openings<br><strong>Employment Type:</strong> Full-time</p> <h2>Why Kaseya?</h2> <p>Join a fast-growing company that’s transforming the IT industry. At Kaseya, you’ll have the opportunity to work with cutting-edge technology, collaborate with a dynamic team, and develop your career in a high impact role.</p> <p>Join the Kaseya growth rocket ship and see how we are #ChangingLives!</p> <h2>Job Summary</h2> <p>We’re hiring Systems Engineers to build the process-isolation, sandboxing, and network-interception infrastructure that enables secure workload execution across the Kaseya Intelligence Platform. This is low-level engineering at the Linux, networking, and process boundary rather than application-layer development. You’ll build language-independent infrastructure that isolates workloads, protects credentials, and enforces security controls across multi-tenant environments.</p> <h2>Roles &

Responsibilities</h2> <ul> <li> <p>Build and operate a transparent sidecar proxy that intercepts outbound vendor API calls, enforces credential and compliance policies, and records tamper-evident audit events</p> </li> <li> <p>Implement process-isolation controls using Linux users and permissions, namespaces, cgroups, ptrace restrictions, protected memory, and explicit credential cleanup</p> </li> <li> <p>Evaluate and implement sandboxing approaches using technologies such as gVisor, Firecracker, WebAssembly runtimes, or Unix-domain-socket isolation</p> </li> <li> <p>Design infrastructure that enforces workload and customer boundaries across large numbers of isolated execution environments</p> </li> <li> <p>Evaluate and integrate workload identity and attestation technologies such as SPIFFE and SPIRE</p> </li> <li> <p>Implement secure workload startup sequencing, including KMS access, token preparation, network-rule installation, and readiness signalling</p> </li> <li> <p>Improve the performance, observability, reliability, and failure recovery of the execution and isolation layers</p> </li> <li> <p>Partner with Platform, Security, and Backend Engineering teams to define interfaces, investigate production issues, and deploy platform improvements</p> </li> </ul> <h2>Required

Qualifications</h2> <ul> <li> <p>Experience developing production systems software using Go, Rust, C, or C++</p> </li> <li> <p>Experience working with Linux internals, including namespaces, cgroups, netfilter or iptables, sockets, and process lifecycle management</p> </li> <li> <p>Experience implementing or operating at least one sandboxing or workload-isolation technology, such as gVisor, Firecracker, WebAssembly, containers, or micro virtual machines</p> </li> <li> <p>Experience building networking infrastructure involving TCP/IP, transparent proxying, or TLS termination and origination</p> </li> <li> <p>Experience implementing process isolation, privilege separation, protected credential handling, or related operating-system security controls</p> </li> </ul> <h2>Preferred

Qualifications</h2> <ul> <li> <p>Experience building or operating multi-tenant container, sandbox, or virtual-machine isolation infrastructure</p> </li> <li> <p>Experience with SPIFFE, SPIRE, or another workload identity and attestation framework</p> </li> <li> <p>Experience integrating AWS KMS, Azure Key Vault, GCP Cloud KMS, or similar key-management services</p> </li> <li> <p>Experience working on endpoint security, EDR, zero-trust networking, or infrastructure security products</p> </li> <li> <p>Experience with Kubernetes, container-runtime internals, or managed container platforms</p> </li> <li> <p>Experience with Temporal or another durable workflow execution platform</p> </li> <li> <p>Experience supporting systems subject to security, privacy, or compliance

requirements</p> </li> </ul> <h2>

Compensation Range — Toronto Posting Only</h2> <p>The base salary range for this job is CAD $160,000 – $240,000 / year.</p> <p>An individual’s base pay depends on various factors including geographical location and review of experience, knowledge, skills, and abilities of the applicant. At Kaseya, certain roles are eligible for

benefits and additional rewards. These rewards are allocated based on individual impact in role. In addition, certain roles also have the opportunity to earn sales incentives based on revenue or utilization, depending on the terms of the plan and the employee’s role.</p> <h2>Additional Information</h2> <p>Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.</p><div class="content-conclusion"><p><strong>Additional information</strong><br><em>Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.</em></p></div>

About Kaseya

Kaseya is a leading provider of IT automation software for IT service providers and public and private sector IT organizations. Kaseya's IT automation platform allows IT professionals to proactively monitor, manage, and maintain distributed IT infrastructures remotely, easily, and efficiently with one integrated web-based platform.

Kaseya's integrated web-based platform is complete, powerful, secure, and easy to deploy and administer. The Kaseya managed service platform is designed for IT administrators who need to reduce complexity and increase productivity, and managed service providers that want to pass those benefits to their customers and increase their own profit margins.

Features:

Our IT Automation Software is easy to integrate and implement. The software saves users time and increases staff productivity of businesses. This decreases production errors and increases productivity, allowing users to focus their time on the needs of their clients. Kaseya gives businesses the tools and technology to completely automate and improve their IT services.

Kaseya's K2 Patch Management Software can eliminate time-consuming tasks such as updating and securing networks in multiple locations and domains. With K2, IT professionals will be able to automatically keep servers, workstations, and remote computers updated with the latest security patches and software updates. Our patch management feature is able to make automatic and recurring patch scans, approve or deny patches, automate easy and fast patch deployment, interactively manage patches, flexibly configure patch management, and give comprehensive, scheduled reports.

With Kaseya's Audit and Inventory feature, you are able to track every system you are managing. With this feature, we are able to work with inventory quickly with every workstation and mobile computer on each network. Tracking every system can be done remotely at any location. The Audit and Inventory feature lets you have complete hardware and software inventory across the network.

Kaseya's System Monitoring Software provides user-defined monitoring for all the managed systems on the user's network. With the help of automated alerts, the user receives instant notification of changes and/or problems. The easy and fast set-up gets the software up and running in minutes with no software to install. It monitors servers, workstations, remote computers, Windows Event Logs, and applications. The software's automated LAN discovery and comprehensive reports keep the organization running smoothly and help ensure network security and productivity.

Our PC Remote Access with Live Connect is a fast and secure solution for any network's machines. IT professionals can access servers and workstations with ease without affecting the productivity of other users. Kaseya works on a web-based management platform which allows a single machine to have full control over all endpoints. Live Connect has the tools to do anything and everything with an agent directly.

Kaseya provides Remote Backup Software and disaster recovery for servers, desktops, and workstations. Our remote backup software offers protection, security, and peace of mind for businesses that want to ensure the recoverability of their electronic data. Our backup provides real-time programmed disk remote backup, file-level remote backup, disk imaging, monitoring, and bare metal restore.

Our Endpoint Security Software advises your system's spyware and adware to review any unwanted applications. For example, if there is something detected and pops up as a warning, anti-virus software will block and remove access to that specific program.

The Kaseya IT Management Monitoring Platform provides proactive, user-defined monitoring with instant notification of problems or changes. Receive a system alert when critical servers go down, users alter their configuration, or a possible security threat occurs. We provide IT professionals with the tools they need to proactively manage their systems and keep the organization running efficiently.

With Kaseya's Remote Control Software, IT professionals can quickly access servers, workstations, and mobile computers. Kaseya G1 is able to work behind firewalls and NAT as well. The remote control software can increase productivity and responsiveness by allowing access to computers from anywhere with a standard web browser.

Kaseya's Desktop Migration feature gives users a 3-step process in order to swap users on an existing computer. Kaseya desktop migration backs up all files, restores previous account information, and migrates single users or multiple users for one machine or many machines on a scheduled basis. Kaseya users never need to wonder what state each machine is in during the migration process.

Other roles at Kaseya

Interested?

Let me introduce you to the founders.

Skip the process

Job details

Salary

CA$160,000 - CA$240,000

Location

Toronto, ON

Company

NameKaseya
IndustryCloud Computing
Team Size6

Funding

Total raised

$500M

Last stage

Growth

Investors

Insight Partners
TTPG
Sixth Street Partners
Temasek
IIreland Strategic Investment Fund

Founders

MS

Mark Sutherland

Co-Founder

PW

Paul Wong

Co-Founder

FV

Fred Voccola

Co-Founder & Former CEO (now Vice Chairman)

What happens next.

No applications, no recruiter spam. Just the intro.

01

Confirm the fit

A few questions to make sure this role is the right shape for you. Two minutes.

02

I pitch you to the company

I write the intro, send it to the founder, and handle the back-and-forth.

03

A meeting lands on your calendar

If they’re a yes, I book the chat. You show up — that’s the whole job-hunt.