Talent.com
Mackenzie Investments
Senior Security Platform Specialist (IAM)Mackenzie Investments • Toronto, ON, CA
Senior Security Platform Specialist (IAM)

Senior Security Platform Specialist (IAM)

Mackenzie Investments • Toronto, ON, CA
Il y a plus de 30 jours
Salaire
69,00 $CA par heure
Type de contrat
  • Temps plein
Description de poste

Job Description

IGM Financial Inc. is one of Canada's leading diversified wealth and asset management companies with approximately $271 billion in total assets under managements. The company provides a broad range of financial planning and investment management services to help more than two million Canadians meet their financial goals. Its activities are carried out principally through IG Wealth Management and Mackenzie Investments

Under IGM Financial’s unique business model based on leading brands and multi-channel distribution strategy is Mackenzie Investments, founded in 1967. Mackenzie Investments is a holistic asset-management partner for thousands of Canadian financial advisors and the investors they support.

At Mackenzie Investments You Can Build Your Career with Confidence.

We have a vision and a strategy that will challenge the way business in this industry is done and help Canadians be successful in the ways that mean the most to them. As part of our team, you will do some of your best work, develop some of your most valuable skills and give back in ways that make a difference in the lives of Canadians. We are proud to be recognized as one of Canada’s Top Employers by Mediacorp Canada Inc. for empowering our employees with the tools to thrive while working remotely, while also providing resources to ensure physical and mental wellness were put front and centre.

Join an unstoppable team that is embedded in continuous learning, understanding, and knowledge sharing. You will thrive in our supportive environment where you can indulge your curiosity to learn, while receiving the feedback you need to refine your skills and abilities. We are dedicated to offering a hybrid work environment when applicable.

Mackenzie Investments is a diverse workplace committed to doing business inclusively - this starts with having a representative workforce! We encourage applications from all qualified candidates that represent the diversity present across Canada – including racialized persons, women, Indigenous persons, persons with disabilities, 2SLGBTQIA+ community, gender diverse and neurodiverse individuals, as well as all who may contribute to the further diversification of ideas.

Role & Responsibility

The Senior Security Platform Specialist is a member of the Identity and Access Management (IAM) team responsible for operating and maintaining Identity Management, Secrets Management and Privileged Access Management (PAM) platforms for the enterprise.

The Senior IAM Architect will work with project teams to architect secure IAM and PAM solutions destined for multi-cloud and on-prem environments.

Working with business, security, and other technical team members, the IAM Architect will assist with technical security architectural requirements, design, and delivery of the SailPoint IdentityNow, Active Directory, Secrets Management and Privileged Access Management platforms. This role will lead the development of toolsets that brings centralization, security, and timely access to resources and will work closely with IAM Engineering, Operations and DevOps team members.

This is a deep technical, delivery and leadership-oriented role, and provides a unique opportunity to work closely with numerous business and functional areas across IGM.

Key Capabilities & Responsibilities

  • Define strategic security architectures across hybrid technology stacks and cloud hosted IAM, PAM and Secrets Management platforms
  • Act as an SME in IAM and PAM platforms on evaluating, designing, and testing solutions and technologies, aligned with the enterprise security platforms, including SailPoint IdentityNow, CyberArk PAM, HashiCorp Vault for Secrets Management, Microsoft Active Directory and Azure Active Directory
  • Define solutions realizing workforce and customer IAM capabilities, develop and evolve solution architectures and designs, demonstrate solutions meet stakeholders’ requirements, and obtain approval on the architectures and designs at the architecture review board
  • Deliver architectures and designs in both agile and iterative waterfall project delivery models, and propose and implement enhancements to improve the viability of the solutions to meet program timelines, budget, and quality measurements
  • Author patterns to drive reuse of IAM, PAM and Secrets Management solutions across IGM
  • Be an authoritative and trusted partner with deep, practical experience in workforce and customer IAM, Secrets Management, PAM and solution architecture best practices to various business and functional areas across IGM, as well as to various risk management and governance functions
  • Liaise with cloud, integration, data, digital, security and infrastructure architecture, development, and engineering teams to ensure that all solution architecture views are defined and elaborated
  • Develop documentation, architectural, design and workflow diagrams, and test scripts
  • Identify and communicate high-level gaps and issues in primary functional areas
  • Review solutions to ensure new and existing applications are implemented to the standards utilizing the RBAC and Zero Trust Security Frameworks
  • Proactively identify security technology reuse goals and opportunities
  • Direct the research and evaluation of emerging IAM and PAM technologies, industry, and market trends; and ensure recommendations are based on business relevance, current standards and best practices, appropriate timing, and deployment
  • Identify potential risks of projects, document and address those risks and work with other teams to resolve issues

Implementation Experience

  • Must have hands-on experience designing and deploying large-scale enterprise Identity Governance & Administration solutions, including Identity Management (Provisioning, Enrolment, De-provisioning), Access Management, Authentication, Authorization, Role Based Access Control (RBAC), Identity Governance (Attestation, Re-certification, Reconciliation), Identity Federation, Single Sign-On (Desktop SSO, Web SSO, eSSO), Privileged Access/User Management (PAM/PUM), Security and IAM management for cloud based solutions, including IaaS, PaaS, SaaS and IDaaS, Social Login, Identity Analytics, Identity Trust Frameworks
  • Must have hands-on experience to install, configure, test, maintain and troubleshoot Identity, Access, Governance and Audit Management platforms, e.g. SailPoint IIQ IdentityNow, Azure Active Directory, Windows Active Directory, CyberArk
  • Strong architecture experience with Privileged Access Management Solutions (CyberArk, etc.)
  • Strong knowledge of Directory Services – Active Directory and Azure Active Directory
  • Subject matter expert in the following IAM Technologies: LDAP, SAML, OAuth, OpenID Connect (OIDC), XAML, NAPPS, WS-Fed, FIDO, UMA, SCIM, IWA, etc.
  • Hands-on experience in designing and implementing integrations with ServiceNow and end-to-end workflow automation for full circle fulfillment
  • Governance, planning, and delivery of enterprise-level IAM program based on zero-trust (Identity, access, privileged access, SSO federation, cloud, MFA)
  • Experience in implementing security hardening in cloud-based systems, endpoint, and cloud infrastructure
  • Design of SIEM use cases and playbooks and detection and response plans as it relates to IAM
  • Maintain security, backup, and redundancy strategies for IAM platforms
  • Document standard operating procedures and protocols
  • Lead in the creation and updates of technical project documentation (i.e. technical and configuration runbook, implementation plan, etc.)
  • Experience in leading the team in supporting Level 2, 3 and/or 4 escalation for production incidents

In Scope Key Candidate Skills

  • Greenfield Identity & Access Management Platforms
  • SailPoint IdentityNow
  • CyberArk Privileged Access Management
  • HashiCorp Vault
  • Windows Active Directory
  • Azure Active Directory
  • Authentication & Authorization Protocols (SAML, OAuth, OIDC)
  • Azure AD Privileged Identity Management (PIM)
  • Zero-Trust and NIST Identity Frameworks
  • Multi-Factor Authentication
  • Least Privilege RBAC and Segregation of Duties
  • Microsoft M365
  • Cloud Platform IAM (Azure, GCP, AWS)
  • Infrastructure as Code
  • PowerShell

Qualifications

  • A University degree plus at least 5 years' experience with IAM and PAM architectures and security
  • Extensive knowledge and experience of IAM and PAM-related security capabilities (i.e. provisioning, birthright roles, entitlements, segregation of duties, authentication, authorization, human and non-human credential and role management, access certification, logging, analytics and reporting, privileged access management, etc.) and their realization across workforce and customer populations
  • 5+ years of hands-on working experience in the participation of design and engineering of enterprise scale SailPoint IdentityNow and CyberArk PAM solutions
  • Diverse solutioning experience in a variety of environments, platforms, and channels, including multi-cloud, SaaS, on-prem, off-prem, mainframe, web, mobile, call centre, public clients, etc.
  • Hands-on experience in using a variety of protocols and standards in solutions, including SAML, OAuth, OIDC, XACML, SCIM, FIDO2, Human Workflow with ServiceNow, NIST 800-63, NIST 800-207 Zero Trust Framework, etc.
  • 5+ years’ experience with Microsoft Windows AD, Azure AD, and LDAP
  • 5+ years’ experience with SailPoint and Java, JavaScript, Beanshell, JSON, XML, RPC, SQL, Python and REST development
  • One or more IAM and PAM certifications (SailPoint Certified IdentityIQ Architect and/or SailPoint Certified IdentityNow Engineer, CyberArk Sentry and/or Guardian)
  • One or more industry recognized architecture professional designations (e.g. TOGAF, SABSA, etc.) is an asset
  • One or more industry recognized information security professional designations (e.g. CISSP, CISA, etc.) is an asset
  • Experience in Digital Applications, Salesforce Financial Services Cloud, Azure, GCP cloud services platforms is an asset
  • Superior problem solving and decision-making skills to resolve work issues with the ability to work under pressure in a dynamic environment
  • Highly self-motivated, self-directed, and attentive to detail
  • Excellent documentation and diagraming skills with diligent attention to detail, providing clarity of architecture and design for Engineering and Operations teams
  • Superior leadership, collaboration, and interpersonal skills with a demonstrated ability to work effectively and build consensus in a multi-functional team environment
  • Strategic thinker with strong organizational, project management and time management capabilities
  • Deadline-driven and results-oriented; able to meet consistently high-quality standards while handling a variety of tasks and deadlines simultaneously
  • Strong communication (verbal/written) and good interpersonal skills to build relationships with internal and external business partners and vendors
  • Strong desire to implement change and contribute to the organization
  • Knowledge of Financial Services industry
Créer une alerte emploi pour cette recherche

Senior Security Platform Specialist (IAM) • Toronto, ON, CA

Offres similaires

Professional Services Specialist (Enterprise Physical Security Systems) - SOLOSQUID

SOLOSQUIDnewmarket, on, ca
Temps plein

Professional Services Specialist (Enterprise Security Systems).SoloSquid is a professional services firm that works with enterprise clients to deploy, optimize, and maintain advanced security syste... Voir plus

 • Offre sponsorisée

Security Implementation SME - Azure and Palo Alto

Tech Talent InternationalToronto
Temps plein

Security Implementation SME - Azure and Palo Alto.Job Openings Security Implementation SME - Azure and Palo Alto.About the job Security Implementation SME - Azure and Palo Alto.Fortune 100/500/1000... Voir plus

 • Offre sponsorisée

Sr. Security Services Solutions Architect, AWS Security Services SA - North America

Amazon Web Services (AWS)Toronto, ON, CA
Temps plein

AWS Global Sales drives adoption of the AWS cloud worldwide, enabling customers of all sizes to innovate and expand in the cloud.Our team empowers every customer to grow by providing tailored servi... Voir plus

 • Offre sponsorisée

Director, Cloud Security & IAM Engineering

S&P GlobalToronto
Temps plein

A leading financial data provider is seeking a Director for Cloud Engineering to manage Identity and Access Management.Responsibilities include user account management, IAM solution implementation,... Voir plus

 • Offre sponsorisée

Senior Security Engineer - Identity Management

MarqetaToronto
Temps plein

Shape cloud identity security at Marqeta as a Senior Security Engineer with a focus on IAM.Leverage your passion for AWS and advanced security strategies in an innovative environment.As part of Mar... Voir plus

 • Offre sponsorisée

Senior Security Platform Engineer

Sun Life FinancialToronto
Temps plein

Senior Security Platform EngineerApplylocations: Toronto, Ontario: Waterford, Waterford, Ireland: Waterloo, Ontariotime type: Full timeposted on: Posted Todayjob requisition id: JR00122... Voir plus

 • Offre sponsorisée

Director of Identity Platform & Security Strategy

1PasswordToronto, ON, CA
Temps plein

A cybersecurity company is seeking a Director of Product Management – Identity to lead strategy and execution for identity integration and access management.The ideal candidate will have over 10 ye... Voir plus

 • Offre sponsorisée

Senior DevSecOps Security Specialist

Autodesk, Inc.Toronto, ON, CA
Temps plein

Lead the charge in securing applications and infrastructure as a Senior DevSecOps Engineer.Drive innovative security practices and mentor teams in a collaborative environment.With a focus on securi... Voir plus

 • Offre sponsorisée

Senior Application Security Specialist

AIR MILES Reward ProgramToronto
Temps plein

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Voir plus

 • Offre sponsorisée

Strategic Security Solution Lead

ScotiabankToronto, ON, CA
Temps plein

A leading Canadian bank is seeking a Senior Lead to drive security practices in technological solutions.The role involves guiding business lines, conducting security assessments, and developing ris... Voir plus

 • Offre sponsorisée

Security Automation Consultant, Cyber Defence Operations

Intello Technologies Inc.Toronto, ON, CA
Temps plein

Security Automation Consultant, Cyber Defence Operations.Location: Burnaby, BC, CA V5G 4S4.Jobs by Category: Technology Solutions.Our team and what we’ll accomplish together.In today's rapidly evol... Voir plus

 • Offre sponsorisée

Security Operations Leader - Cloud, IAM & Threat Response

CohereToronto, ON, CA
Temps plein

An innovative technology company in Toronto is seeking a Senior Operations Manager to oversee security operations and manage risks.You will lead the security team in implementing cloud security str... Voir plus

 • Offre sponsorisée

Sr. Security Services Solutions Architect, AWS Security Services SA - North America

Amazon Web Services Canada, Inc.Toronto
Temps plein

AWS Global Sales drives adoption of the AWS cloud worldwide, enabling customers of all sizes to innovate and expand in the cloud.Our team empowers every customer to grow by providing tailored servi... Voir plus

 • Offre sponsorisée

Security Architecture Lead - Strategy, IAM & Risk

SkySec SystemsToronto, Ontario, Canada
Temps plein

Essential Functions: Develop and maintain a security architecture process that enables the enterprise to develop and implement security solutions and capabilities that are clearly aligned with busi... Voir plus

 • Offre sponsorisée

Senior Security Specialist – Vulnerability & MSS Lead

CDW CanadaToronto, ON, CA
Temps plein

A leading IT solutions provider is seeking a Sr.Specialist in Managed Security Services in Toronto.You will provide second-level technical support, mentor junior staff, and manage complex technical... Voir plus

 • Offre sponsorisée

AWS Cloud Security Specialist - Intermediate

InbentaToronto, ON, CA
Temps plein

A leading technology company in Toronto is seeking an Intermediate AWS IT Security Specialist to enhance security controls within AWS environments.The ideal candidate will work across teams, ensuri... Voir plus

 • Offre sponsorisée

Fortinet Presales Security Specialist Role

Fortinet, Inc.Toronto, ON, CA
Temps plein

Shape cybersecurity solutions as a Presales Security Specialist at Fortinet.Engage directly with enterprise customers to design and articulate cutting-edge security solutions and strategies.In the ... Voir plus

 • Offre sponsorisée

Senior Specialist, Cyber Architecture

TES The Employment SolutionToronto, ON, CA
Temps plein +1

Division: Toronto Cyber Security.Job Type & Duration: Permanent Full Time.Location: 55 John Street, Toronto.Shift Information: Monday to Friday, 35 Hours per Week.The Senior Specialist, Cyber Archi... Voir plus

 • Offre sponsorisée

Azure/Palo Alto Security Implementation Consultant

Tech Talent InternationalToronto, ON, CA
Temps plein

Lead security improvement initiatives as a Security Implementation Consultant.Focus on Azure Native and Palo Alto Firewall implementations to bolster network security for clients.In this dynamic ro... Voir plus

 • Offre sponsorisée

Strategic Security Solutions Architect

SoftchoiceToronto, ON, CA
Temps plein

A leading IT solutions provider in Toronto seeks a Customer Solutions Architect to drive demand for security platforms.You will be instrumental in aligning client needs with leading security techno... Voir plus