SAM Developer
Design, develop, and support secure authentication and authorization solutions using IBM ISAM/ISVA. Collaborate with security and infrastructure teams to enable secure user access across enterprise applications.
- Hybrid
- Ontario
- Posted Jul 23, 2026
- Apply by Aug 22, 2026
- 1 position
Job summary
Role: SAM Developer Location: Toronto, ON - Hybrid (4 Days WFO) Duration: 12 months of contract Job Overview We are seeking an experienced Senior IBM Security Access Manager (ISAM/ISVA) Developer to join a leading enterprise Identity and Access Management (IAM) team. The ideal candidate will possess deep expertise in IBM Security Access Manager (ISAM) / IBM Security Verify Access (ISVA), strong Java development skills, and hands-on experience implementing secure authentication, authorization, and federation solutions in large-scale enterprise environments. This role requires close collaboration with security, infrastructure, networking, and application development teams to design, develop, and support access management solutions that enable secure user access across enterprise applications. Must-Have: • Strong experience implementing and supporting IBM Security Access Manager (ISAM), including: o WebSEAL configuration, junctions, ACLs, protected object space (POS) o Authentication/authorization policies, session and cookie management o Federation using SAML, OIDC, OAuth2 o Mapping rules / policy scripting (often JavaScript-based in federation flows) • Solid Java development experience, preferably with: o Spring / Spring Boot, REST APIs, microservices concepts o Authentication and authorization patterns in distributed systems • Strong understanding of IAM fundamentals: o SSO, MFA concepts, token-based auth, identity lifecycle basics • Experience with Linux/Unix, troubleshooting, logs, and network fundamentals (HTTP/S, TLS, headers, cookies). • Strong communication skills and ability to work across security, infrastructure, and application teams. Nice-to-Have: • Experience with IBM Security Verify Access (ISVA) (newer branding/evolution of ISAM) • Experience with IBM Security Directory Server / LDAP tuning and troubleshooting • Exposure to API gateways, WAF, reverse proxy patterns, and mTLS • Containerization/Cloud knowledge: OpenShift/Kubernetes, Azure/AWS/GCP • CI/CD tools: Jenkins/GitHub Actions/Azure DevOps, SonarQube, Nexus/Artifactory • Banking/financial services domain experience and security/compliance familiarity (e.g., SOC2, PCI, PIPEDA).
What you’ll do
Design, develop, and support secure authentication and authorization solutions using IBM ISAM/ISVA. Collaborate with security and infrastructure teams to enable secure user access across enterprise applications.
Requirements
Requires deep expertise in IBM Security Access Manager, strong Java development skills, and experience with federation protocols like SAML and OAuth2. Proficiency in Linux and IAM fundamentals is essential.
Other relevant skills
Identified from the job description. Confirm important requirements above.
- IBM Security Access Manager
- IBM Security Verify Access
- Java
- Spring Boot
- SAML
- OIDC
- OAuth2
- WebSEAL
- Identity and Access Management
- REST APIs
- Linux
- LDAP
- Microservices
- SSO
- MFA
- JavaScript
Job areas
- Software
- Technology
- Security & Safety
- Finance & Accounting
- Consulting
Additional details
- Minimum experience
- 5+ years
- Apply by
- Aug 22, 2026
- Posting language
- English
- Working hours
- 40 hours per week
- Office presence
- 4 days per week
- Seniority
- Mid-Senior level
- Application method
- Direct apply is available
