Senior Identity and Access Management Specialist (Permanent)
Mississauga - Canada
Job Summary
CoreFactor is searching for a Senior Identity and Access Management Specialist on a permanent/full-time basis.
This position is hybrid and will require the successful incumbent to go into the Mississauga office four (4) times per week.
The Role:
As the Senior Analyst Identity and Access Management you will report to the IAM Manager and play a key role in maturing identity privileged access management and Zero Trust capabilities. This is an opportunity to help shape enterprise identity controls strengthen privileged access protection and support secure access across a complex hybrid environment that includes corporate cloud and business-critical operational systems.
We are looking for a motivated self-starter with strong analytical technical and problem-solving skills. The successful candidate will be able to assess complex identity and access challenges synthesize information clearly and provide practical recommendations to both technical and non-technical stakeholders.
You will bring hands-on experience with privileged access management platforms along with directory services cloud identity conditional access identity lifecycle controls access reviews and privileged access governance.
You will understand IAM and PAM principles support audit-ready control evidence and apply security best practices aligned with least privilege segregation of duties and identity as the control plane for Zero Trust.
Duties:
- Administer and enhance privileged access management capabilities including CyberArk Cloud onboarding privileged account management session controls and service availability using platforms (Examples CyberArk Saviyant Delinea etc).
- Support secure access to servers databases applications cloud services and other enterprise systems by implementing standardized connection patterns and access controls.
- Lead and support directory services Active Directory and cloud identity Microsoft Entra ID operational improvements including group management access policies conditional access and identity lifecycle processes.
- Design document and deliver scalable secure and highly available IAM and PAM solutions that align with enterprise architecture security standards and business requirements.
- Identify and remediate IAM and PAM risks process gaps control weaknesses and implementation issues through structured analysis and clear recommendations.
- Support joiner mover leaver access review and entitlement management processes to ensure access remains appropriate timely and aligned to business need.
- Perform and support scheduled and ad hoc access reviews for user privileged administrative and service accounts with a focus on least privilege and segregation of duties.
- Produce maintain and improve IAM and PAM documentation including procedures control evidence operational runbooks reporting and audit support materials.
- Troubleshoot IAM PAM directory services Active Directory and cloud identity Microsoft Entra ID access issues documenting both one-time resolutions and opportunities for automation.
- Collaborate with Infrastructure Cloud Database Security Engineering User Experience application teams and the Project Office to deliver secure identity outcomes across projects and operations.
- Drive continuous improvement through process standardization automation reporting and adoption of IAM PAM and Zero Trust best practices.
- Support compliance with internal policies regulatory obligations and industry frameworks by maintaining visibility into identity controls access risks and remediation activities.
- 5 years of hands-on experience in identity and access management privileged access management security administration infrastructure security or related cybersecurity functions.
- Practical experience with directory services Active Directory and cloud identity platforms Microsoft Entra ID including users groups roles access policies conditional access and hybrid identity directory services.
- Hands-on experience supporting PAM or IAM platforms (Examples CyberArk Saviyant Delinea etc) or comparable privileged access management technologies.
- Strong understanding of IAM and PAM principles including least privilege segregation of duties role-based access control single sign-on privileged access governance and identity lifecycle management.
- Ability to assess identity risks identify control gaps track remediation activities and provide clear recommendations to technical and non-technical stakeholders.
- Experience producing operational documentation procedures reports and audit evidence to support business continuity and control compliance.
- Strong analytical skills attention to detail and ability to organize prioritize and track multiple operational and project activities.
- Effective verbal and written communication skills with the ability to explain complex identity risks and technical issues clearly across all levels of the organization.
- Working knowledge of enterprise IT operations including change management incident management project delivery and cross-functional collaboration.
- Ability to use reporting scripting or analysis tools such as PowerShell Excel and PowerPoint to support access reviews control reporting and remediation tracking.
Required Skills:
Post-secondary education in Engineering or related technical discipline from an accredited college or university. Knowledge of core development principles (e.g. algorithms and data structure OOP design patterns SOLID principles) 2 years of experience in programming (Python C# JavaScript XML). Comfortable using relational databases and SQL. Ability to analyze problems and find solutions. Ability to work in an industrial environment (i.e. Work in a dusty hot non-climate-controlled environment; with stairs frequent walking standing and occasional lifting of material). Must excel at working independently and in group settings. Must have an aptitude to multitask effectively. Experience using a Version Control System (Git).