Role: CIAM Security Engineer
Rates: Up To $96.00 p/h INC.
Location: Downtown Toronto, 2x per week on-site
Structure: 2 month contract, plus possible extension options
--
We have a great new opportunity to support one of our Top 5 banking clients in a contract capacity!
Please see below for more information on the position and if interested apply with an updated resume aligned to the needs of the role.
—
Candidate Requirements/Must Have Skills:
1. 10+ years of progressive experience leading and overseeing the design, implementation, and modernization of enterprise‑scale platforms built on Java/J2EE, Spring Framework, Node.js, RESTful APIs, event‑driven architectures (Kafka), and cloud‑based data services.
2. 5+ years of deep experience providing technical leadership for CIAM platforms, including ForgeRock (AM, IDM, DS) and Ping Identity (PingFederate, PingAccess, PingDirectory), with exposure to Okta and other SaaS IAM providers considered an asset.
3. Expert‑level understanding of identity and access management protocols and standards, including OAuth 2.0, OpenID Connect, SAML, LDAP, and their application across enterprise and customer identity use cases.
4. Demonstrated ability to define IAM and CIAM architectures for hybrid and cloud environments (AWS, Azure, GCP), ensuring scalability, resilience, and alignment with enterprise security strategy.
5. Strong foundation in cybersecurity principles, risk management, and regulatory compliance, with the ability to align IAM decisions to the Bank’s risk appetite and control frameworks.
Nice-To-Have Skills:
1. Strategic oversight of identity federation, SSO, MFA, and adaptive authentication solutions, ensuring secure, consistent implementations across channels and regions.
2. Leadership experience in DevOps and Infrastructure‑as‑Code practices (e.g., Terraform), enabling standardized, repeatable, and secure IAM deployments.
3. Proven leadership in CI/CD and deployment automation, governing engineering standards and release practices using Jenkins, cloud‑native deployment frameworks (GCP/Azure/AWS), and DevOps tooling.
--
CorGTA is an equal opportunity employer, please apply with an updated resume and ensure the required skills you are able to speak to for this position are included.
At times, CorGTA or its client partners may utilize AI tools to assist with the hiring processes.
By submitting your application, you consent to be contacted by CorGTA via email, SMS, or phone regarding current and future opportunities, and acknowledge our collection and use of your personal information in accordance with our Privacy Policy and Terms of Service: www.corgta.com/privacy-policy