Engineering Manager - Identity & Access
Company Description
Join the team redefining how the world experiences design.
Hey, g'day, mabuhay, kia ora, 你好, hallo, vítejte!
Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.
Where and how you can work
Our flagship campus is in Sydney. We also have a campus in Melbourne and co-working spaces in Brisbane, Perth and Adelaide. But you have choice in where and how you work, we trust our Canvanauts to choose the balance that empowers them and their team to achieve their goals.
Job Description
About the group/team
The Security Group is responsible for protecting Canva systems and data from information security threats. The group runs programs across Application Security, Risk Management, Enterprise Security, and Threat Detection and Response domains. Our teams work together, and with other groups, to deliver preventive and detective controls and processes that reduce security risk.
Identity and Access team (I&A) builds and runs services across Canva to ensure minimal access to our most sensitive services which store customer data. We develop and drive adoption of high security consequence features for all staff at Canva to leverage.
The Identity and Access team takes charge for solving security-specific problems, using security domain expertise to unblock engineering to work on Canva-differentiating features. Our mission is to drive unified authentication and authorization across internal systems and data, focused on building flexible user-centric platforms to eliminate risk for Canva and our customers.
Role Responsibilities:
Managing a team of software engineers who design and implement authentication and authorization systems for use within Canva. Primarily focused on protecting customer PII and UGC.
Owning the strategy for identity and access at Canva, balancing security, compliance and developer experience to build an experience that allows Canvanauts to move quickly, while having secure guardrails in place.
Coach and develop engineers by providing regular, practical feedback to help them reach their personal growth goals
Own the team’s development methodology including sprint planning, stand-ups and retrospectives resulting in a high-performing team
Working collaboratively with other partner groups such as Infra and IT to build systems that scale beyond our team.
Driving adoption of our systems internally, championing the benefits of what we build.
Required Experience
A solid understanding of authentication and authorization technologies such as access proxies, SAML, OIDC, OAuth etc.
The ability to build a strategy around access that balances usability, security and compliance requirements.
Ability to partner with the team to design and build platform features, owning the whole solution end-to-end.
You’re experienced with languages such as Golang, Python, Java, or similar.
An understanding of attribute based access control systems that utilize Zanzibar style authorization such as AuthZed, Oso and Auth0
Nice to Haves
An understanding of policy-as-code methodologies such as OPA and rego policies.
Experience with infrastructure tools like Terraform, Helm, K8s, or similar.
Experience working with CI/CD systems and defining integration pipelines.
A solid understanding of audit and compliance frameworks such as ISO270001, SOC 2, SOX, FedRAMP etc.
An understanding of emerging AI access patterns and how AI access differs to human access.
An understanding of corporate identity and IGA systems such as Okta, Lumos, ConductorOne etc.
Additional Information
Engineering at Canva
Join a vibrant engineering community solving complex problems for millions of users, world wide. Here, engineering is about more than writing great code. It’s about rapidly iterating to deliver real value for users - building a product that empowers the world to design.
We care deeply about craft and collaborate closely to achieve hugely ambitious goals. We mentor and support one another generously, grounded in a culture of ownership, purpose, and a shared commitment to excellence.
What's in it for you?
Achieving our crazy big goals motivates us to work hard - and we do - but you'll experience lots of moments of magic, connectivity and fun woven throughout life at Canva, too. We also offer a range of benefits to set you up for every success in and outside of work.
Here's a taste of what's on offer:
Equity packages - we want our success to be yours too
Inclusive parental leave policy that supports all parents & carers
An annual Vibe & Thrive allowance to support your wellbeing, social connection, office setup & more
Flexible leave options that empower you to be a force for good, take time to recharge and supports you personally
Check out lifeatcanva.com for more info.
Other stuff to know
We make hiring decisions based on your experience, skills and passion, as well as how you can enhance Canva and our culture. We see AI as a powerful amplifier of creativity and technology at Canva. We’re evolving how we assess AI skills in our Technology hiring experience - you’ll tackle interactive, real-time challenges that reflect the kind of work we do. In some interviews, you may also be asked to solve a problem using an AI tool to show how you approach challenges with tech by your side.
Please note that interviews are conducted virtually.
About the job
Apply for this position
Engineering Manager - Identity & Access
Company Description
Join the team redefining how the world experiences design.
Hey, g'day, mabuhay, kia ora, 你好, hallo, vítejte!
Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.
Where and how you can work
Our flagship campus is in Sydney. We also have a campus in Melbourne and co-working spaces in Brisbane, Perth and Adelaide. But you have choice in where and how you work, we trust our Canvanauts to choose the balance that empowers them and their team to achieve their goals.
Job Description
About the group/team
The Security Group is responsible for protecting Canva systems and data from information security threats. The group runs programs across Application Security, Risk Management, Enterprise Security, and Threat Detection and Response domains. Our teams work together, and with other groups, to deliver preventive and detective controls and processes that reduce security risk.
Identity and Access team (I&A) builds and runs services across Canva to ensure minimal access to our most sensitive services which store customer data. We develop and drive adoption of high security consequence features for all staff at Canva to leverage.
The Identity and Access team takes charge for solving security-specific problems, using security domain expertise to unblock engineering to work on Canva-differentiating features. Our mission is to drive unified authentication and authorization across internal systems and data, focused on building flexible user-centric platforms to eliminate risk for Canva and our customers.
Role Responsibilities:
Managing a team of software engineers who design and implement authentication and authorization systems for use within Canva. Primarily focused on protecting customer PII and UGC.
Owning the strategy for identity and access at Canva, balancing security, compliance and developer experience to build an experience that allows Canvanauts to move quickly, while having secure guardrails in place.
Coach and develop engineers by providing regular, practical feedback to help them reach their personal growth goals
Own the team’s development methodology including sprint planning, stand-ups and retrospectives resulting in a high-performing team
Working collaboratively with other partner groups such as Infra and IT to build systems that scale beyond our team.
Driving adoption of our systems internally, championing the benefits of what we build.
Required Experience
A solid understanding of authentication and authorization technologies such as access proxies, SAML, OIDC, OAuth etc.
The ability to build a strategy around access that balances usability, security and compliance requirements.
Ability to partner with the team to design and build platform features, owning the whole solution end-to-end.
You’re experienced with languages such as Golang, Python, Java, or similar.
An understanding of attribute based access control systems that utilize Zanzibar style authorization such as AuthZed, Oso and Auth0
Nice to Haves
An understanding of policy-as-code methodologies such as OPA and rego policies.
Experience with infrastructure tools like Terraform, Helm, K8s, or similar.
Experience working with CI/CD systems and defining integration pipelines.
A solid understanding of audit and compliance frameworks such as ISO270001, SOC 2, SOX, FedRAMP etc.
An understanding of emerging AI access patterns and how AI access differs to human access.
An understanding of corporate identity and IGA systems such as Okta, Lumos, ConductorOne etc.
Additional Information
Engineering at Canva
Join a vibrant engineering community solving complex problems for millions of users, world wide. Here, engineering is about more than writing great code. It’s about rapidly iterating to deliver real value for users - building a product that empowers the world to design.
We care deeply about craft and collaborate closely to achieve hugely ambitious goals. We mentor and support one another generously, grounded in a culture of ownership, purpose, and a shared commitment to excellence.
What's in it for you?
Achieving our crazy big goals motivates us to work hard - and we do - but you'll experience lots of moments of magic, connectivity and fun woven throughout life at Canva, too. We also offer a range of benefits to set you up for every success in and outside of work.
Here's a taste of what's on offer:
Equity packages - we want our success to be yours too
Inclusive parental leave policy that supports all parents & carers
An annual Vibe & Thrive allowance to support your wellbeing, social connection, office setup & more
Flexible leave options that empower you to be a force for good, take time to recharge and supports you personally
Check out lifeatcanva.com for more info.
Other stuff to know
We make hiring decisions based on your experience, skills and passion, as well as how you can enhance Canva and our culture. We see AI as a powerful amplifier of creativity and technology at Canva. We’re evolving how we assess AI skills in our Technology hiring experience - you’ll tackle interactive, real-time challenges that reflect the kind of work we do. In some interviews, you may also be asked to solve a problem using an AI tool to show how you approach challenges with tech by your side.
Please note that interviews are conducted virtually.
