Enter a job title or keyword

Cybersecurity Engineer – DevSecOps, IAM, PAM


Job Location:

Toronto - Canada

Monthly Salary: K 10 - 10
Experience Required: 5years
Posted: 29 August 2026 (3 days ago)
Application Deadline: 26 November 2026
Vacancies: 1 Vacancy

Job Summary

Job Description: Cybersecurity Engineer DevSecOps / IAM / PAM

Location: Toronto ON
Work Arrangement: Hybrid 4 Days Work From Office (WFO)
Duration: 612 Months

Role Overview

We are seeking an experienced Cybersecurity Engineer with strong expertise in IAM PAM CyberArk Active Directory Entra ID Python and DevSecOps.

The successful candidate will support and enhance RBCs cybersecurity posture by managing identity and access lifecycles Non-Personal IDs (NPIDs) risk and control frameworks and DevSecOps security integration while driving process automation through Python-based tooling.

Key Responsibilities
1. Identity & Access Management (IAM)
  • Onboard applications and services into IAM platforms including SailPoint CyberArk and Active Directory.
  • Manage access provisioning recertification and deprovisioning workflows.
  • Enforce Least Privilege and Role-Based Access Control (RBAC) policies.
  • Support Privileged Access Management (PAM) onboarding and credential vaulting.
  • Manage identity lifecycle processes in Azure AD / Microsoft Entra ID.
2. Non-Personal ID (NPID) Management
  • Create maintain and retire Non-Personal IDs including service accounts shared accounts and system IDs.
  • Ensure NPIDs comply with password policies rotation schedules and ownership requirements.
  • Conduct periodic reviews and attestations of NPID inventories.
  • Identify and remediate orphaned stale or non-compliant NPIDs.
  • Support audit and compliance activities related to service-account governance.
3. DevSecOps Security
  • Embed security controls into CI/CD pipelines using tools such as:
    • Jenkins
    • Azure DevOps
    • GitHub Actions
  • Advise development teams on secrets management using:
    • HashiCorp Vault
    • Azure Key Vault
  • Support integration and implementation of:
    • SAST
    • DAST
    • SCA
  • Work with security and development teams on tools such as Veracode Snyk and Checkmarx.
  • Participate in secure code reviews and threat modeling for new applications and services.
4. Risk & Controls Management
  • Own and track cybersecurity risk controls across assigned application portfolios.
  • Identify raise manage and remediate security risk findings and exceptions.
  • Monitor compliance with cybersecurity policies and control requirements.
  • Prepare risk and control reporting for audits regulators and senior management.
  • Support evidence collection and remediation activities for internal and external audits.
5. Automation & Tooling
  • Develop Python-based automation to streamline IAM workflows NPID audits vulnerability reporting and other security operations.
  • Develop integrations with internal APIs and platforms such as:
    • Confluence
    • ServiceNow
    • Tableau
  • Maintain and enhance automation pipelines for recurring security operations tasks.
  • Use Python libraries such as pandas requests openpyxl and Selenium.
  • Develop scheduled jobs automated data extraction and reporting solutions to reduce manual effort.
Required Skills & Qualifications
  • Strong experience in Cybersecurity Engineering IAM PAM and DevSecOps.
  • Hands-on experience with:
    • CyberArk
    • Active Directory
    • Microsoft Entra ID / Azure AD
    • SailPoint
  • Strong understanding of Identity & Access Management (IAM) and Privileged Access Management (PAM).
  • Experience with Non-Personal IDs (NPIDs) service accounts and identity governance.
  • Strong scripting and automation skills using Python.
  • Experience with Python libraries including pandas requests openpyxl and Selenium.
  • Working knowledge of PowerShell.
  • Familiarity with DevSecOps practices and CI/CD security.
  • Knowledge of Jenkins Azure DevOps and GitHub Actions.
  • Experience with application security tools such as Veracode Snyk and Checkmarx.
  • Knowledge of secrets-management technologies such as HashiCorp Vault and Azure Key Vault.
  • Understanding of cybersecurity risk controls compliance and audit requirements.
  • Strong analytical communication and problem-solving skills.
  • Ability to work effectively with cybersecurity infrastructure application development and DevOps teams.
Key Technology Stack

IAM / PAM: SailPoint CyberArk Active Directory Microsoft Entra ID
Automation: Python pandas requests openpyxl Selenium PowerShell
DevSecOps: Jenkins Azure DevOps GitHub Actions
Secrets Management: HashiCorp Vault Azure Key Vault
Application Security: Veracode Snyk Checkmarx
Enterprise Tools: ServiceNow Confluence Tableau




Required Skills:

60-70


Required Education:

Backend Engineer Kotlin Microservices & AKSRole Overview:We are seeking a highly skilled backend developer with strong experience in modern programming languages and frameworks with primary expertise in Kotlin and exposure to Java microservices and cloud Skills:Proficiency in Kotlin with additional experience in Java (Spring Boot Spring Security) and JavaScript () 5 years of backend development experience including: oUnit testing frameworks (e.g.