Staff Fullstack Engineer, SecureAI
Okta INC · 🇨🇦 Toronto, Ontario, Canada
Sponsorship verdict
No sponsorship evidence yet
No government record and no wording either way. Not a refusal — ask the recruiter.
- No government sponsor record hereNo government sponsor record covers this employer in this country.
- The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
- No salary bar for this routeCanada has no single salary bar: the employer usually needs a positive LMIA. Pay at or above the provincial median wage + 20% (e.g. C$36.92/h in Ontario) puts it in the high-wage stream. Source: https://www.canada.ca/en/employment-social-development/services/foreign-workers/median-wage.html, rules effective 2026-07-17.
- Confirmed live todayWhen a source last listed this job as open.
Canada: Express Entry no longer awards ranking points for job offers (since 25 Mar 2025); a job offer still counts toward Federal Skilled Worker eligibility.
A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.
Or apply yourself on the official page →
Why not apply?
No register record and no sponsorship wording in the posting. Worth asking the employer before investing significant time.
SponsorApply flags time-wasters so your applications go where they can land. These come from the posting's own wording — read the original listing to confirm. See better-fit alternatives →
Sponsor Radar — Okta INC
No government sponsor record covers this employer in this country.
Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for Okta INC →
About the role
Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. About Okta Secures AI Team The Okta for AI Agents Team is building the future of digital identity management. The way companies are using agents and allowing them access is undergoing a fundamental shift, enabling teams to move fast while staying secure. Our North Star is clear: To get AI right, you have to get identity right. We are not just managing identities; we are building the industry's first Identity Security Fabric for the agentic era. As organizations rapidly deploy AI, these non-human entities are acting with access to critical tools, often bypassing traditional perimeters and creating a 'Shadow AI' crisis. Our mission is to move identity from a reactive gatekeeper to a unified control plane, transforming AI risk into business ROI. We are tackling this by implementing a comprehensive four-pillar maturity model: Discover, Onboard, Protect, and Govern. We are driving innovation by defining the standards for Agentic Identity—including pioneer work with securing AI Agents and support for protocols like MCP. You will be helping us build the infrastructure that allows enterprises to scale AI safely, ensuring every access decision—whether made by a human or an automated agent—is authenticated, authorized, and audited at scale. We are a diverse team of engineers, product managers, and designers who are bringing Okta’s expertise in identity to define the future of Agent Identity management, focusing on enablement while staying secure. About the role As a Staff Fullstack Engineer on the Okta Secures AI team, your mission is to build the industry's first Identity Security Fabric for the agentic era. You will be working on the designs and driving of our unified control plane features, ensuring that we operationalize our North Star: "To get AI right, you have to get identity right." As a true full-stack role, you will actively design, build, and maintain both robust backend services and intuitive frontend interfaces. This role requires deep expertise in distributed systems and a commitment to AI-native engineering as our standard. You will rethink backend design, validation, and delivery through AI-augmented workflows, ensuring our platform provides secure, interoperable, and scalable access—enforcing the principle of least privilege for every agent action. What you’ll be doing • Proactively shape the technical strategy of the Identity Security Fabric, partnering with leadership to prioritize the work streams for securing AI Agents. • Build the Runtime Policy Decision Point (PDP). Implement the request-time authorization engine at the Agent Gateway and at the agent to resource connection level to intercept and evaluate every agent request against per-agent, per-tool, and per-resource rules. • Design and support authoring from a policy engine like Cedar, schema validation, and evaluation—connecting the admin console's no-code UI builder output with direct API-published policies. • Develop the logic to validate which employees a delegated agent is permitted to represent and securely forward the acting user's identity to downstream resources. • Develop Comprehensive Audit Logging. Build secure logging mechanisms to record the outcome of every request (allow or deny) along with the specific rule or reason behind