Senior Identity Management Specialist
- Location: Ottawa, Ontario
- Remote: Hybrid
- Type: Contract
- Job #35394
Myticas Consulting is seeking a Senior Identity Management Specialist to support a major enterprise Identity and Access Management (IAM) initiative for our client in the financial services sector. This role will focus on designing, implementing, and supporting modern identity solutions leveraging Microsoft Entra ID, Azure services, Privileged Identity Management (PIM), Identity Governance, and Zero Trust security principles within a hybrid enterprise environment.
Responsibilities
- Design and implement enterprise identity solutions using Microsoft Entra ID (Azure AD).
- Configure and manage Role-Based Access Control (RBAC), Conditional Access Policies, and Identity Governance capabilities.
- Implement secure authentication using OAuth2, OpenID Connect, SAML, LDAP, and Kerberos.
- Design and support Privileged Identity Management (PIM) and Just-in-Time (JIT) access models.
- Implement Multi-Factor Authentication (MFA) and risk-based access controls.
- Integrate Active Directory with Microsoft Entra ID in hybrid environments.
- Develop identity integrations using REST APIs, Microsoft Graph API, and SCIM provisioning.
- Support CI/CD pipelines and automate IAM deployments using Azure DevOps or equivalent tools.
- Configure Azure services including Key Vault, Managed Identities, and RBAC.
- Implement and manage service accounts, workload identities, and certificate-based authentication.
- Produce technical documentation, architecture artifacts, and implementation guidance.
- Provide technical leadership, knowledge transfer, and collaborate with cross-functional teams.
- Support enterprise IAM strategy, Zero Trust initiatives, and ongoing process improvements.
Required Qualifications
- University degree in Computer Science, Engineering, Cyber Security, or a related discipline.
- Minimum 7 years of software engineering or DevOps experience.
- Minimum 3 years of Identity & Access Management (IAM) experience.
- Strong expertise with Microsoft Entra ID (Azure AD).
- Experience implementing Conditional Access Policies.
- Experience with Privileged Identity Management (PIM) and Just-in-Time (JIT) access.
- Experience with Identity Governance and Administration (IGA), including entitlement management and access lifecycle management.
- Strong knowledge of OAuth2, OpenID Connect, SAML, LDAP, and Kerberos.
- Experience implementing enterprise Multi-Factor Authentication (MFA).
- Strong understanding of hybrid Active Directory and cloud identity architectures.
- Hands-on experience with Azure services including RBAC, Managed Identities, and Key Vault.
- Experience building CI/CD pipelines using Azure DevOps or similar platforms.
- Experience developing REST API integrations, including Microsoft Graph API.
- Strong scripting skills using PowerShell, Python, or JavaScript.
- Experience managing service accounts and certificate-based authentication.
- Strong understanding of Zero Trust architecture and least-privilege access models.
- Excellent analytical, documentation, communication, and stakeholder engagement skills.
Nice to Have
- Experience with certificate lifecycle management platforms.
- Experience within large enterprise or public sector environments.
- Experience implementing hybrid identity and access control solutions.
- Knowledge of modern identity security best practices and cloud-native IAM architectures.
Work Arrangement
- Hybrid preferred (approximately 12 days onsite per month in Ottawa).
- Remote candidates will also be considered; however, occasional onsite attendance may be required at the consultant’s expense.
Additional Requirements
- Must be eligible to obtain a Secret Security Clearance (minimum 5 years residency in Canada required).