Jobs.ca
Jobs.ca
Language
SPS Commerce logo

Staff Security Engineer

SPS Commerce5 days ago
Remote
Ontario, Canada
Senior Level
Full-Time

Top Benefits

Comprehensive Benefits Package
Annual Incentive Program

About the role

Description

SPS Commerce is a leading provider of cloud-based supply chain management solutions, serving a global network of retail trading partners. We foster a collaborative and inclusive work environment where innovation and continuous improvement are highly valued. Join SPS Commerce and be part of a dynamic team that's transforming the global retail supply chain!

Position Summary

Job Summary: The Staff Security Engineer – IAM ensures Company development, infrastructure, and business practices have security defined, integrated, and implemented according to the SPS security policies, standards, and best practices. Together with the broader technology team, security engineers ensure that risk-based controls are implemented and monitored to protect SPS.

Essential Responsibilities / Duties

  • Devise reasonable, risk-based security controls to monitor and protect SPS and align with our business objectives
  • Implement the security program strategic plan that improves program maturity and compliance
  • Lead team through the IAM Engineering best practices (design, build, test, implement)
  • Partner with engineering teams to design and implement authentication flows for internally built applications — including OAuth 2.0/OIDC client and resource server implementations, token issuance and validation, session management, and secure credential storage.
  • Evaluate and implement modern authentication standards: passwordless/WebAuthn/FIDO2, PKCE, mTLS, and JWT-based authorization.
  • Advise and recommend technology solutions supporting efficient IAM business processes
  • Perform security review of infrastructure and applications IAM processes and integrations
  • Communicate results of security review findings to a broad and diverse set of stakeholders across the company
  • Monitor trends, tools, etc, in the IAM industry. Recommend solutions. Lead evaluation of security toolsets to mature IAM capability
  • Create or write automation to orchestrate security-related processes – leveraging COTS and custom code
  • Develop, manage, and consult on the technical architecture for enterprise security controls
  • Partner with business and technology operations groups to maintain the security monitoring for IAM controls

Minimum Requirements

  • Bachelor's degree in related business or technical area plus a minimum of 8 years of related experience; or a Master's degree with 6 years of experience; or equivalent combination of education and experience o Equivalent work experiences include: security engineering/architecture experience and designing and implementing standards, specifications, and procedures
  • Experience in providing technical security guidance to technical and non-technical audiences
  • Strong working knowledge of authentication/authorization protocols: OAuth 2.0, OpenID Connect, SAML 2.0, SCIM, and JWT.
  • Experience with regulatory requirements from SOX, HIPAA, and PCI-DSS
  • Demonstrated experience and understanding of business security and compliance requirements and ability to translate into well-engineered & integrated business solutions
  • Strong knowledge of development operations practices – accountable for driving the integration of security into development operations and existing continuous delivery / continuous improvement business processes

Preferred Experience

  • Okta Certified Professional or Okta Certified Developer certification.
  • Experience with Okta Identity Governance (OIG), Okta API Access Management (custom authorization servers), or Okta Workflows at scale.
  • Experience with WebAuthn/FIDO2, passkeys, or other passwordless authentication implementations.
  • System configuration and architecture experience
  • Strong knowledge of industry accepted information security best practices, standards, and policies such as NIST CSF, OWASP, CIS, STIG, MITRE ATT@CK, etc.
  • Demonstrated experience building or significantly extending authentication capabilities for a custom-developed application — not just configuring a third-party IdP.
  • Proven ability to manage information security service and operation through effective management of resources
  • Demonstrated ability to take initiative and accountability for achieving results
  • Driven to understand & appropriately respond to customers' business needs
  • Certifications & Licenses: One or more industry certification - CISSP, CISM, CISA, CCFE, GIAC, CCIE, CCSP, ABCP, MBCP, ISA, PCIP, CEH
  • Actively participates and contributes to the security community

Internal Equivalency Experience

  • At least 2 years of SPS experience and exposure to related/relevant areas of practice or expertise

Job Context

Work Environment

  • This job operates in a modern professional work environment with open workspace.
  • The role routinely uses computers and interactive communications platforms such as Slack and Zoom.

Physical Demands

  • To successfully perform the duties of this job, the employee must be able to communicate verbally, either assisted or unassisted.
  • This position requires the ability to occasionally lift office products and supplies.

Location

This is a fully remote role based in Ontario.

What We Offer

At SPS Commerce, we are committed to ensuring that each employee's compensation reflects their unique experiences, performance, and skills in their role. The salary range for this role considers several factors, including education, relevant skills, work history, certifications, location, and more. The annual salary range for this role is: $104,600.00 - 156,900.00 CAD Annual. The actual salary offered will be determined based on the factors listed above and may fall anywhere within the range. Additionally, you may also be eligible to participate in an annual incentive program. An incentive award, if granted, is based on individual and/or organizational performance. SPS Commerce offers a comprehensive benefits package designed to support employees’ health, well-being, and financial security. Benefits are country-specific and aligned with local laws and market practices.

Commitment to our Employees

At SPS we power connections that drive the world of commerce forward, and our success depends on making strong decisions, fostering innovation, delivering unparalleled customer solutions, and driving outstanding business performance. We achieve this by creating an environment where every employee feels a true sense of belonging. We embrace diversity, equity, and inclusion, ensuring everyone feels accepted, valued, and empowered to make a meaningful impact. We are committed to affirmative action and equal opportunity in all aspects of employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

About SPS Commerce

IT Services and IT Consulting
1001-5000
Founded in 1987

SPS Commerce is the world’s leading retail network, connecting trading partners around the globe to optimize supply chain operations for all retail partners. We support data-driven partnerships with innovative cloud technology, customer-obsessed service, and accessible experts so our customers can focus on what they do best.

To date, more than 120,000 companies in retail, distribution, grocery, and e-commerce have chosen SPS as their retail network. SPS has achieved 95 consecutive quarters of revenue growth and is headquartered in Minneapolis.

For additional information, contact SPS at 866-245-8100 or visit www.spscommerce.com.

Similar Jobs