Retour à la recherche
Logo de J&M Group
J&M GroupSource d’offres vérifiée

Cybersecurity Engineer

Offre en anglais
  • Toronto, ON
  • Sur place
  • Publié 28 août 2026
  • 1 poste

Ouvre un site externe

Connectez-vous pour enregistrer ce poste
Type d’emploi
Contrat
Niveau d’expérience
Expérimenté · 5+ ans
Postuler avant le
24 févr. 2027
Langue de l’offre
anglais
Heures de travail
40 heures par semaine
Niveau d’expérience
Mid-Senior level
Mode de candidature
La candidature directe est offerte

Résumé du poste

Manage the identity and access lifecycle, including NPID governance and PAM onboarding, to enhance the organization's security posture. Integrate security controls into DevOps pipelines and develop Python-based automation for security operations and risk reporting.

Détails du poste

Support and enhance the organization s cybersecurity posture by managing identity and access lifecycle, non-personal IDs (NPIDs), risk control frameworks, and DevOps security integration while driving process automation through Python-based tooling. Key Responsibilities Identity & Access Management (IAM) Onboard applications and services into IAM platforms (SailPoint, CyberArk, Active Directory) Manage access provisioning, recertification, and deprovisioning workflows Enforce least-privilege and role-based access control (RBAC) policies Support PAM (Privileged Access Management) onboarding and credential vaulting NPID Management Create, maintain, and retire Non-Personal IDs (service accounts, shared accounts, system IDs) Ensure NPIDs comply with organizational password policy, rotation schedules, and ownership accountability Conduct periodic reviews and attestations of NPID inventory Remediate orphaned or stale NPIDs flagged during audits DevOps Security Support Embed security controls into CI/CD pipelines (Jenkins, Azure DevOps, GitHub Actions) Advise development teams on secrets management (HashiCorp Vault, Azure Key Vault) Support SAST/DAST/SCA tool integration (Veracode, Snyk, Checkmarx) Collaborate on secure code reviews and threat modeling for new services Risk & Controls Management Own and track risk controls across assigned application portfolios Raise, manage, and remediate risk findings and exceptions Prepare risk reporting for audits, regulators, and senior management Automation & Tooling (Python) Develop Python scripts to automate IAM workflows, NPID audits, and vulnerability reporting Build integrations with internal APIs, Confluence, ServiceNow, and Tableau Maintain and enhance automation pipelines for recurring security operations tasks Reduce manual effort through scheduled jobs, data extraction, and automated reporting Required Skills IAM/PAM platforms: CyberArk, Active Directory, Azure AD/Entra ID Scripting: Python (pandas, requests, openpyxl, Selenium), PowerShell DevSecOps toolchain familiarity Understanding of NPID/service account governance

Ce que vous ferez

Manage the identity and access lifecycle, including NPID governance and PAM onboarding, to enhance the organization's security posture. Integrate security controls into DevOps pipelines and develop Python-based automation for security operations and risk reporting.

Exigences

Requires proficiency in IAM/PAM platforms like CyberArk and Active Directory, along with strong Python scripting skills for automation. Candidates should have experience with DevSecOps toolchains and a solid understanding of service account governance.

Compétences indiquées

  • Active Directory · Souhaitée
  • Python · Souhaitée

Autres compétences pertinentes

Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.

  • Identity & Access Management
  • Privileged Access Management
  • Python
  • DevSecOps
  • CyberArk
  • Active Directory
  • Azure AD
  • SailPoint
  • CI/CD Pipelines
  • Risk Control Frameworks
  • Secrets Management
  • SAST/DAST/SCA
  • PowerShell
  • RBAC
  • NPID Management
  • Threat Modeling

Domaines d’emploi

  • Security & Safety
  • Technology
  • Software
  • Engineering
  • Consulting

D’autres postes auxquels postuler directement

Des possibilités semblables publiées par des employeurs qui recrutent sur Jobs.ca, sans formulaire externe.

Voir tous les postes à candidature simplifiée