Senior Identity and Access Management Specialist (Permanent)
- Mississauga, ON
- Hybrid
- Posted Aug 19, 2026
- 1 position
Opens an external site
- Employment type
- Full-time
- Experience level
- Senior · 5+ years
- Posting language
- English
- Working hours
- 40 hours per week
- Office presence
- 4 days per week
Job summary
The role involves administering and enhancing privileged access management capabilities while supporting secure access across hybrid enterprise environments. You will also lead directory services improvements and ensure compliance with security standards through structured analysis and reporting.
Job details
CoreFactor is searching for a Senior Identity and Access Management Specialist on a permanent/full-time basis. This position is hybrid and will require the successful incumbent to go into the Mississauga office four (4) times per week. The Role: As the Senior Analyst Identity and Access Management, you will report to the IAM Manager and play a key role in maturing identity, privileged access management, and Zero Trust capabilities. This is an opportunity to help shape enterprise identity controls, strengthen privileged access protection, and support secure access across a complex hybrid environment that includes corporate, cloud, and business-critical operational systems. We are looking for a motivated self-starter with strong analytical, technical, and problem-solving skills. The successful candidate will be able to assess complex identity and access challenges, synthesize information clearly, and provide practical recommendations to both technical and non-technical stakeholders. You will bring hands-on experience with privileged access management platforms, along with directory services, cloud identity, conditional access, identity lifecycle controls, access reviews, and privileged access governance. You will understand IAM and PAM principles, support audit-ready control evidence, and apply security best practices aligned with least privilege, segregation of duties, and identity as the control plane for Zero Trust. Duties: Administer and enhance privileged access management capabilities, including CyberArk Cloud onboarding, privileged account management, session controls, and service availability using platforms (Examples CyberArk, Saviyant, Delinea, etc). Support secure access to servers, databases, applications, cloud services, and other enterprise systems by implementing standardized connection patterns and access controls. Lead and support directory services Active Directory and cloud identity Microsoft Entra ID operational improvements, including group management, access policies, conditional access, and identity lifecycle processes. Design, document, and deliver scalable, secure, and highly available IAM and PAM solutions that align with enterprise architecture, security standards, and business requirements. Identify and remediate IAM and PAM risks, process gaps, control weaknesses, and implementation issues through structured analysis and clear recommendations. Support joiner, mover, leaver, access review, and entitlement management processes to ensure access remains appropriate, timely, and aligned to business need. Perform and support scheduled and ad hoc access reviews for user, privileged, administrative, and service accounts, with a focus on least privilege and segregation of duties. Produce, maintain, and improve IAM and PAM documentation, including procedures, control evidence, operational runbooks, reporting, and audit support materials. Troubleshoot IAM, PAM, directory services Active Directory, and cloud identity Microsoft Entra ID access issues, documenting both one-time resolutions and opportunities for automation. Collaborate with Infrastructure, Cloud, Database, Security Engineering, User Experience, application teams, and the Project Office to deliver secure identity outcomes across projects and operations. Drive continuous improvement through process standardization, automation, reporting, and adoption of IAM, PAM, and Zero Trust best practices. Support compliance with internal policies, regulatory obligations, and industry frameworks by maintaining visibility into identity controls, access risks, and remediation activities. Requirements 5+ years of hands-on experience in identity and access management, privileged access management, security administration, infrastructure security, or related cybersecurity functions. Practical experience with directory services Active Directory and cloud identity platforms Microsoft Entra ID, including users, groups, roles, access policies, conditional access, and hybrid identity directory services. Hands-on experience supporting PAM or IAM platforms (Examples CyberArk, Saviyant, Delinea, etc) or comparable privileged access management technologies. Strong understanding of IAM and PAM principles, including least privilege, segregation of duties, role-based access control, single sign-on, privileged access governance, and identity lifecycle management. Ability to assess identity risks, identify control gaps, track remediation activities, and provide clear recommendations to technical and non-technical stakeholders. Experience producing operational documentation, procedures, reports, and audit evidence to support business continuity and control compliance. Strong analytical skills, attention to detail, and ability to organize, prioritize, and track multiple operational and project activities. Effective verbal and written communication skills with the ability to explain complex identity risks and technical issues clearly across all levels of the organization. Working knowledge of enterprise IT operations, including change management, incident management, project delivery, and cross-functional collaboration. Ability to use reporting, scripting, or analysis tools such as PowerShell, Excel, and PowerPoint to support access reviews, control reporting, and remediation tracking.
What you’ll do
The role involves administering and enhancing privileged access management capabilities while supporting secure access across hybrid enterprise environments. You will also lead directory services improvements and ensure compliance with security standards through structured analysis and reporting.
Requirements
Candidates must have at least 5 years of hands-on experience in identity and access management or related cybersecurity functions. Proficiency with Active Directory, Microsoft Entra ID, and PAM platforms like CyberArk is required.
Listed skills
- Control · Preferred
- Analytical · Preferred
- Technical · Preferred
- analysis · Preferred
- Conditional Access · Preferred
- Active Directory · Preferred
- Microsoft · Preferred
- Compliance · Preferred
- management · Preferred
- Documentation · Preferred
- Reporting · Preferred
- Audit · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Identity and Access Management
- Privileged Access Management
- CyberArk
- Active Directory
- Microsoft Entra ID
- Zero Trust
- Identity Lifecycle Management
- Access Reviews
- Conditional Access
- Security Best Practices
- Risk Assessment
- Audit Support
- PowerShell
- Infrastructure Security
- Directory Services
- Cross-Functional Collaboration
- Self-Starter
- Cloud Services
- Technical Issues
- Project Delivery
- Analytical Skills
- Microsoft Excel
- Access Controls
- Account Management
- Auditing
- Automation
- Business Continuity
- Management
- Business Requirements
- Change Management
- Cloud Database
- Communication
- Continuous Improvement Process
- Cyber Security
- Software Design Documents
- Directory Service
- Governance
- Scalability
- Identity And Access Management
- Incident Management
- Security Engineering
- Enterprise Architecture
- Information Technology Operations
- Problem Solving
- Operations
- Microsoft PowerPoint
- Windows PowerShell
- Project Management Office (PMO)
- Role-Based Access Control (RBAC)
- Security Administration
Job areas
- Technology
- Security & Safety
- Software
- Manufacturing
- Identity and Access Management Specialist
- Cyber Security Manager / Administrator
- Database and Network Professionals Not Elsewhere Classified
- Information Security Engineers
- Computer Occupations, All Other
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
Bédard Ressources Humaines
ITAD Services Representative #1265
SponsoredDirect employerEasy Apply- On-site
- Mississauga, ON
- Posted Sep 16, 2026
Bédard Ressources Humaines
Plant Manager - Food Industry #1812
SponsoredDirect employerEasy Apply- On-site
- Posted Sep 9, 2026
Government of Yukon
Legal Counsel
SponsoredDirect employerEasy Apply- On-site
- Posted Sep 4, 2026
