Cyber Security Engineer / IAM Specialist

Sunrise Farms

Surrey

On-site

CAD 110,000 - 130,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Sunrise Farms is seeking a versatile Cyber Security Engineer / IAM Specialist to secure our IT and OT operations as we mature our security program. This cross-functional role spans governance, vulnerability management, OT security, and cyber architecture.

You will own IAM and application security, deploying least privilege, zero trust, and Microsoft Entra ID / Azure AD, with Conditional Access, MFA, SSO, and RBAC. You’ll regularly audit identities and permissions to meet internal policies.

Qualifications

  • Proven experience as a Cyber Security Engineer or IAM engineer.
  • Deep knowledge of Microsoft security ecosystem including Azure Entra ID/Azure AD.
  • Hands-on threat modeling and risk assessment for third-party apps.
  • Strong IAM fundamentals: SAML, OAuth, OIDC, least-privilege, and zero trust.
  • Excellent communication to translate risk into business decisions.

Responsibilities

  • Oversee application security and risk management for third-party apps.
  • Design IAM lifecycle processes and enforce least privilege across the org.
  • Configure and enforce Conditional Access, MFA, SSO, and RBAC.
  • Lead vulnerability and OT security initiatives and governance activities.
  • Audit identities, roles, and permissions for policy compliance.

Skills

Cyber Security
IAM
Threat Modeling
Azure Entra ID
Zero Trust
RBAC

Tools

Azure AD
SAML/OIDC
OAuth

Job description

About The Role

We are looking for a versatile and highly skilled Cyber Security Engineer / IAM Specialist to play a pivotal role in securing our business and IT operations. As we are actively building and maturing our cyber security program, this role offers a unique opportunity to make a foundational impact.


You will serve as our subject matter expert for Identity and Access Management (IAM) and application security, ensuring that all third-party business and IT applications are implemented with a security-first mindset. Because our cyber program is evolving, this is a highly dynamic, cross-functional role. You will have your hands in multiple domains, including security governance, vulnerability management, operational technology (OT) security, and overarching cyber architecture.


Key Responsibilities


  • Application Security & Risk Management

  • Secure Implementation: Oversee the security architecture and implementation of all third-party IT and business applications (SaaS, COTS, etc.), ensuring they meet organizational security standards.

  • Threat Modeling: Conduct comprehensive threat modeling to identify potential vulnerabilities, attack vectors, and design flaws in application deployments.

  • Risk Mitigation: Assess risks associated with new and existing applications, providing actionable, secure solutions and compensating controls to business stakeholders.

  • Identity & Access Management (IAM)

  • Lifecycle Management: Design, deploy, and manage our IAM lifecycle processes, ensuring the principles of least privilege and zero trust are applied across the organization.

  • Microsoft Ecosystem Management: Leverage the Microsoft environment (e.g., Entra ID / Azure AD) to configure and enforce Conditional Access policies, MFA, SSO, and Role-Based Access Control (RBAC).

  • Access Auditing: Regularly audit identities, roles, and permissions to ensure compliance with internal access policies.

  • Cyber Program Development & Engineering

  • Vulnerability Management: Assist in building, configuring, and maintaining vulnerability scanning workflows and coordinating remediation efforts across endpoints, servers, and applications.

  • Operational Technology (OT) Security: Support the secure design and architecture of our OT environments, bridging the gap between standard IT infrastructure and industrial/operational systems.

  • Governance & Compliance: Contribute to the development of foundational cyber security policies, standards, and compliance frameworks.

  • General Cyber Support: Act as a flexible security engineering resource, guiding the secure design of various IT projects and initiatives as the overarching security program scales.


Required Qualifications


  • Experience: Proven experience as a Cyber Security Engineer, Application Security Specialist, or IAM Engineer.

  • Microsoft Environment Expertise: Deep technical understanding of the Microsoft security ecosystem, including Azure, Entra ID (Azure AD), and enterprise Windows environments.

  • Threat Modeling Skills: Hands-on experience performing threat modeling and risk assessments for third-party software integrations and business apps.

  • IAM Proficiency: Strong foundational knowledge of identity protocols (SAML, OAuth, OIDC) and enterprise identity management.

  • Broad Security Knowledge: Working understanding of broader security domains, including vulnerability management, OT/ICS security concepts, and governance frameworks.

  • Communication: Excellent ability to translate complex cyber risks into clear, actionable business recommendations for non-technical stakeholders.


Why Join Us?

This is a builder's role. You will not just be turning the crank on existing processes; you will be instrumental in defining how we approach security across the business. If you enjoy a dynamic environment where you can touch multiple architectural aspects of cyber security, from evaluating a new SaaS application to securing OT networks, we want to hear from you.


$110,000 - $130,000 a year

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Specialist
Senior Cybersecurity Specialist

STACK IT Recruitment • Burlington

On-site
CAD 154,000 - 181,000
Paid vacation and personal days
Annual bonus
Senior IAM Administrator
Senior IAM Administrator

Power Staffing Solutions • Toronto

On-site
CAD 90,000 - 120,000
Senior Business Analyst – Identity & Access Management (IAM)
Senior Business Analyst – Identity & Access Management (IAM)

Recrute Action • Toronto

Hybrid
CAD 102,000 - 142,000
Manager, Cyber Security
Manager, Cyber Security

Clear Destination Inc. • Toronto

On-site
CAD 150,000 - 170,000
Senior Information Security Architect
Senior Information Security Architect

Placements24 • Kimberley

Hybrid
CAD 140,000 - 180,000
Performance-based bonuses
Home office stipend
Remote-friendly benefits
+1
Senior Software Security Engineer
Senior Software Security Engineer

TimePlay • Toronto

On-site
CAD 120,000 - 180,000
IT Security Administrator
IT Security Administrator

ROBINSON • Winnipeg

On-site
CAD 70,000 - 100,000
Cybersecurity Analyst
Cybersecurity Analyst

Horizon Computer Solutions • Edmonton

On-site
CAD 85,000 - 120,000
Annual bonus
Registered Pension Plan
Insurance reimbursement
+2
Cloud Security Engineer
Cloud Security Engineer

ALLTECH CONSULTING SVC INC • Quebec

On-site
CAD 80,000 - 120,000
Staff Security Operations Engineer
Staff Security Operations Engineer

Jobgether • Canada

Remote
CAD 130,000 - 170,000
Remote-first environment
Biannual in-person team sprints
USD 2,000 learning budget
+4