Wolters Kluwer
Principal Engineer, Identity and Access Management
GBR - London, Canada Square
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Role family
- Engineering
- Seniority
- Lead / management
- Country
- CA
- Work mode
- On-site / unstated
- First seen by hirly
- 8 Oct 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
Lead the design and engineering of a cloud-agnostic Identity and Authorization Platform that secures users, services, APIs, AI agents, and data across a multi-tenant SaaS platform.
Unlike traditional IAM roles, this position focuses heavily on authorization architecture.
Responsibilities
Lead architecture and implementation of:
Authentication
Authorization
Identity federation
Fine-grained access control
- Own architecture for:
- RBAC
- ReBAC
- ABAC
- ACL
- Policy engines
- Relationship graphs
- Design authorization for:
- Web applications
- Mobile
- APIs
- Microservices
- AI Gateway
- Agent runtime
- MCP tools
- Knowledge Graph
- Vector stores
- Design authorization decision architecture:
- PEP ↓
- PDP ↓
- Policy Store ↓
- Relationship Store↓
- Decision
- Lead adoption of:
- OpenFGA / SpiceDB
- Cedar
- Open Policy Agent (OPA)
- Zanzibar concepts
- Work with platform teams on:
- API Gateway
- AI Gateway
- Kubernetes
- Service Mesh
- mTLS
Essential experience
- 10+ years engineering
- 5+ years security platform experience
- Demonstrable experience building authorization engines using:
- RBAC
- ReBAC
- ABAC
- ACL
- Experience designing authorization for:
- Multi-tenant SaaS
- Microservices
- APIs
- Experience with:
- OAuth2
- OpenID Connect
- JWT
- SAML
Strong distributed systems experience
Nice to have
- Google Zanzibar
- OpenFGA
- SpiceDB
- OPA
- Cedar
- Envoy
- Istio
- SPIFFE/SPIRE
Our Interview Practices
To maintain a fair and genuine hiring process, we kindly ask that all candidates participate in interviews without the assistance of AI tools or external prompts. Our interview process is designed to assess your individual skills, experiences, and communication style. We value authenticity and want to ensure we’re getting to know you—not a digital assistant. To help maintain this integrity, we ask to remove virtual backgrounds and include in-person interviews in our hiring process. Please note that use of AI-generated responses or third-party support during interviews will be grounds for disqualification from the recruitment process.
Applicants may be required to appear onsite at a Wolters Kluwer office as part of the recruitment process.
Listed on hirly, a job board. hirly is not the employer: Wolters Kluwer is hiring for this role.
Similar jobs
- Staff Software Engineer - EngineerUber · Toronto, ON, CanadaFirst seen today
- Principal Software Engineer, MarTech Platforms & Digital EnablementSunlife · 2 LocationsFirst seen today
- Principal Software Engineer, MarTech Platforms & Digital EnablementSunlife · 2 LocationsFirst seen today
- Lead Full Stack Software EngineerManulife · 3 LocationsFirst seen today
- Staff Software Engineer - Capital One Travel Tech - Full-stackCapitalone · Toronto, ONFirst seen today
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job