CoreFactor is searching for a Senior Identity and Access Management Specialist on a permanent/full-time basis.
This position is hybrid and will require the successful incumbent to go into the Mississauga office four (4) times per week.
The Role:
As the Senior Analyst Identity and Access Management, you will report to the IAM Manager and play a key role in maturing identity, privileged access management, and Zero Trust capabilities. This is an opportunity to help shape enterprise identity controls, strengthen privileged access protection, and support secure access across a complex hybrid environment that includes corporate, cloud, and business-critical operational systems.
We are looking for a motivated self-starter with strong analytical, technical, and problem-solving skills. The successful candidate will be able to assess complex identity and access challenges, synthesize information clearly, and provide practical recommendations to both technical and non-technical stakeholders.
You will bring hands-on experience with privileged access management platforms, along with directory services, cloud identity, conditional access, identity lifecycle controls, access reviews, and privileged access governance.
You will understand IAM and PAM principles, support audit-ready control evidence, and apply security best practices aligned with least privilege, segregation of duties, and identity as the control plane for Zero Trust.
Duties:
- Administer and enhance privileged access management capabilities, including CyberArk Cloud onboarding, privileged account management, session controls, and service availability using platforms (Examples CyberArk, Saviyant, Delinea, etc).
- Support secure access to servers, databases, applications, cloud services, and other enterprise systems by implementing standardized connection patterns and access controls.
- Lead and support directory services Active Directory and cloud identity Microsoft Entra ID operational improvements, including group management, access policies, conditional access, and identity lifecycle processes.
- Design, document, and deliver scalable, secure, and highly available IAM and PAM solutions that align with enterprise architecture, security standards, and business requirements.
- Identify and remediate IAM and PAM risks, process gaps, control weaknesses, and implementation issues through structured analysis and clear recommendations.
- Support joiner, mover, leaver, access review, and entitlement management processes to ensure access remains appropriate, timely, and aligned to business need.
- Perform and support scheduled and ad hoc access reviews for user, privileged, administrative, and service accounts, with a focus on least privilege and segregation of duties.
- Produce, maintain, and improve IAM and PAM documentation, including procedures, control evidence, operational runbooks, reporting, and audit support materials.
- Troubleshoot IAM, PAM, directory services Active Directory, and cloud identity Microsoft Entra ID access issues, documenting both one-time resolutions and opportunities for automation.
- Collaborate with Infrastructure, Cloud, Database, Security Engineering, User Experience, application teams, and the Project Office to deliver secure identity outcomes across projects and operations.
- Drive continuous improvement through process standardization, automation, reporting, and adoption of IAM, PAM, and Zero Trust best practices.
- Support compliance with internal policies, regulatory obligations, and industry frameworks by maintaining visibility into identity controls, access risks, and remediation activities.
Requirements
- 5+ years of hands-on experience in identity and access management, privileged access management, security administration, infrastructure security, or related cybersecurity functions.
- Practical experience with directory services Active Directory and cloud identity platforms Microsoft Entra ID, including users, groups, roles, access policies, conditional access, and hybrid identity directory services.
- Hands-on experience supporting PAM or IAM platforms (Examples CyberArk, Saviyant, Delinea, etc) or comparable privileged access management technologies.
- Strong understanding of IAM and PAM principles, including least privilege, segregation of duties, role-based access control, single sign-on, privileged access governance, and identity lifecycle management.
- Ability to assess identity risks, identify control gaps, track remediation activities, and provide clear recommendations to technical and non-technical stakeholders.
- Experience producing operational documentation, procedures, reports, and audit evidence to support business continuity and control compliance.
- Strong analytical skills, attention to detail, and ability to organize, prioritize, and track multiple operational and project activities.
- Effective verbal and written communication skills with the ability to explain complex identity risks and technical issues clearly across all levels of the organization.
- Working knowledge of enterprise IT operations, including change management, incident management, project delivery, and cross-functional collaboration.
- Ability to use reporting, scripting, or analysis tools such as PowerShell, Excel, and PowerPoint to support access reviews, control reporting, and remediation tracking.