Security Engineer II - Identity and Access Management

New
J
JobgetherIdentity and access management
This is a fully remote opportunity available to professionals located in Ontario or British Columbia, Canada.Full-TimeMiddle
SalaryCompetitive base salary of CAD 104,000–130,000
Apply NowOpens the employer's application page

Job Details

Experience
At least 3 years of relevant professional experience with a Bachelor’s degree, or 2 years with a Master’s degree, or an equivalent combination of education and experience.
Required Skills
Python

Requirements

  • Have at least 3 years of relevant professional experience with a Bachelor’s degree, or 2 years with a Master’s degree, or an equivalent combination of education and experience.
  • Have hands-on experience with IAM technologies such as Okta, Microsoft Entra ID, CyberArk, Ping, or SailPoint.
  • Have working knowledge of SAML, OAuth 2.0/OIDC, and SCIM protocols.
  • Understand AWS IAM concepts, including roles, policies, federation, least privilege, and role-based access control (RBAC).
  • Have hands-on scripting experience with Python or PowerShell, particularly for automating IAM operations through APIs.
  • Be familiar with Active Directory, LDAP, and cloud-based identity alternatives.
  • Know security and compliance frameworks such as NIST, SOC 2, and PCI DSS.
  • Have experience with AWS services such as Lambda, S3, DynamoDB, RDS, Aurora, SNS, SQS, CloudTrail, CloudWatch, CodePipeline, and AWS Developer Tools (asset).
  • Be familiar with DevOps practices, CI/CD pipelines, and secrets management (asset).
  • IAM-related certifications such as CIAM/CAMS, CyberArk certifications, or Okta Certified Consultant are a plus.

Responsibilities

  • Build and enhance Identity Governance and Administration capabilities for least-privilege access and audit readiness.
  • Implement and operate Privileged Access Management solutions, including just-in-time access.
  • Configure and maintain Okta SSO, MFA, lifecycle management, policies, SAML/OIDC integrations, and SCIM provisioning.
  • Develop access request, approval, review, and certification workflows through IGA platforms.
  • Automate joiner, mover, and leaver processes and access reviews using scripting, APIs, and infrastructure-as-code.
  • Integrate IAM controls across AWS services, SaaS applications, cloud accounts, and developer and DevOps pipelines.
  • Partner with Security, DevOps, Infrastructure, and engineering teams to onboard applications and troubleshoot access issues.
  • Design identity and access controls for AI/ML environments, including training data, models, and inference APIs.
  • Support SOC 2, PCI DSS, and other compliance and audit activities by providing access evidence and improving controls.
  • Maintain documentation, contribute to runbooks, and participate in on-call activities when required.
View Full Description & ApplyYou'll be redirected to the employer's site
Competitive base salary of CAD 104,000–130,000
Apply Now