Retour à la recherche
Logo de CoreFactor Inc.
CoreFactor Inc.Source d’offres vérifiée

Senior Identity and Access Management Specialist (Permanent)

Offre en anglais
  • Mississauga, ON
  • Hybride
  • Publié 19 août 2026
  • 1 poste

Ouvre un site externe

Connectez-vous pour enregistrer ce poste
Type d’emploi
Temps plein
Niveau d’expérience
Expérimenté · 5+ ans
Langue de l’offre
anglais
Heures de travail
40 heures par semaine
Présence au bureau
4 jours par semaine

Résumé du poste

The role involves administering and enhancing privileged access management capabilities while supporting secure access across hybrid enterprise environments. You will also lead directory services improvements and ensure compliance with security standards through structured analysis and reporting.

Détails du poste

CoreFactor is searching for a Senior Identity and Access Management Specialist on a permanent/full-time basis. This position is hybrid and will require the successful incumbent to go into the Mississauga office four (4) times per week. The Role: As the Senior Analyst Identity and Access Management, you will report to the IAM Manager and play a key role in maturing identity, privileged access management, and Zero Trust capabilities. This is an opportunity to help shape enterprise identity controls, strengthen privileged access protection, and support secure access across a complex hybrid environment that includes corporate, cloud, and business-critical operational systems. We are looking for a motivated self-starter with strong analytical, technical, and problem-solving skills. The successful candidate will be able to assess complex identity and access challenges, synthesize information clearly, and provide practical recommendations to both technical and non-technical stakeholders. You will bring hands-on experience with privileged access management platforms, along with directory services, cloud identity, conditional access, identity lifecycle controls, access reviews, and privileged access governance. You will understand IAM and PAM principles, support audit-ready control evidence, and apply security best practices aligned with least privilege, segregation of duties, and identity as the control plane for Zero Trust. Duties: Administer and enhance privileged access management capabilities, including CyberArk Cloud onboarding, privileged account management, session controls, and service availability using platforms (Examples CyberArk, Saviyant, Delinea, etc). Support secure access to servers, databases, applications, cloud services, and other enterprise systems by implementing standardized connection patterns and access controls. Lead and support directory services Active Directory and cloud identity Microsoft Entra ID operational improvements, including group management, access policies, conditional access, and identity lifecycle processes. Design, document, and deliver scalable, secure, and highly available IAM and PAM solutions that align with enterprise architecture, security standards, and business requirements. Identify and remediate IAM and PAM risks, process gaps, control weaknesses, and implementation issues through structured analysis and clear recommendations. Support joiner, mover, leaver, access review, and entitlement management processes to ensure access remains appropriate, timely, and aligned to business need. Perform and support scheduled and ad hoc access reviews for user, privileged, administrative, and service accounts, with a focus on least privilege and segregation of duties. Produce, maintain, and improve IAM and PAM documentation, including procedures, control evidence, operational runbooks, reporting, and audit support materials. Troubleshoot IAM, PAM, directory services Active Directory, and cloud identity Microsoft Entra ID access issues, documenting both one-time resolutions and opportunities for automation. Collaborate with Infrastructure, Cloud, Database, Security Engineering, User Experience, application teams, and the Project Office to deliver secure identity outcomes across projects and operations. Drive continuous improvement through process standardization, automation, reporting, and adoption of IAM, PAM, and Zero Trust best practices. Support compliance with internal policies, regulatory obligations, and industry frameworks by maintaining visibility into identity controls, access risks, and remediation activities. Requirements 5+ years of hands-on experience in identity and access management, privileged access management, security administration, infrastructure security, or related cybersecurity functions. Practical experience with directory services Active Directory and cloud identity platforms Microsoft Entra ID, including users, groups, roles, access policies, conditional access, and hybrid identity directory services. Hands-on experience supporting PAM or IAM platforms (Examples CyberArk, Saviyant, Delinea, etc) or comparable privileged access management technologies. Strong understanding of IAM and PAM principles, including least privilege, segregation of duties, role-based access control, single sign-on, privileged access governance, and identity lifecycle management. Ability to assess identity risks, identify control gaps, track remediation activities, and provide clear recommendations to technical and non-technical stakeholders. Experience producing operational documentation, procedures, reports, and audit evidence to support business continuity and control compliance. Strong analytical skills, attention to detail, and ability to organize, prioritize, and track multiple operational and project activities. Effective verbal and written communication skills with the ability to explain complex identity risks and technical issues clearly across all levels of the organization. Working knowledge of enterprise IT operations, including change management, incident management, project delivery, and cross-functional collaboration. Ability to use reporting, scripting, or analysis tools such as PowerShell, Excel, and PowerPoint to support access reviews, control reporting, and remediation tracking.

Ce que vous ferez

The role involves administering and enhancing privileged access management capabilities while supporting secure access across hybrid enterprise environments. You will also lead directory services improvements and ensure compliance with security standards through structured analysis and reporting.

Exigences

Candidates must have at least 5 years of hands-on experience in identity and access management or related cybersecurity functions. Proficiency with Active Directory, Microsoft Entra ID, and PAM platforms like CyberArk is required.

Compétences indiquées

  • Control · Souhaitée
  • Analytical · Souhaitée
  • Technical · Souhaitée
  • analysis · Souhaitée
  • Conditional Access · Souhaitée
  • Active Directory · Souhaitée
  • Microsoft · Souhaitée
  • Compliance · Souhaitée
  • management · Souhaitée
  • Documentation · Souhaitée
  • Reporting · Souhaitée
  • Audit · Souhaitée

Autres compétences pertinentes

Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.

  • Identity and Access Management
  • Privileged Access Management
  • CyberArk
  • Active Directory
  • Microsoft Entra ID
  • Zero Trust
  • Identity Lifecycle Management
  • Access Reviews
  • Conditional Access
  • Security Best Practices
  • Risk Assessment
  • Audit Support
  • PowerShell
  • Infrastructure Security
  • Directory Services
  • Cross-Functional Collaboration
  • Self-Starter
  • Cloud Services
  • Technical Issues
  • Project Delivery
  • Analytical Skills
  • Microsoft Excel
  • Access Controls
  • Account Management
  • Auditing
  • Automation
  • Business Continuity
  • Management
  • Business Requirements
  • Change Management
  • Cloud Database
  • Communication
  • Continuous Improvement Process
  • Cyber Security
  • Software Design Documents
  • Directory Service
  • Governance
  • Scalability
  • Identity And Access Management
  • Incident Management
  • Security Engineering
  • Enterprise Architecture
  • Information Technology Operations
  • Problem Solving
  • Operations
  • Microsoft PowerPoint
  • Windows PowerShell
  • Project Management Office (PMO)
  • Role-Based Access Control (RBAC)
  • Security Administration

Domaines d’emploi

  • Technology
  • Security & Safety
  • Software
  • Manufacturing
  • Identity and Access Management Specialist
  • Cyber Security Manager / Administrator
  • Database and Network Professionals Not Elsewhere Classified
  • Information Security Engineers
  • Computer Occupations, All Other

D’autres postes auxquels postuler directement

Des possibilités semblables publiées par des employeurs qui recrutent sur Jobs.ca, sans formulaire externe.

Voir tous les postes à candidature simplifiée