Identity and Access Management Designer

York University

Toronto

On-site

CAD 110,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

York University is seeking an Identity & Access Management Designer to lead planning, design, configuration, integration, testing and continual evolution of IAM services. The role acts as an expert resource, guiding standards, workflows, controls and best practices to support secure, scalable identity services across the university.

Required is a Bachelor’s degree in CS/IS/Cybersecurity or 4 years of relevant York University experience, plus 7 years in identity management with SailPoint

Qualifications

  • Bachelor's degree or 4 years of relevant experience in identity/security.
  • 7 years of related experience with identity management systems.
  • Extensive SailPoint IdentityIQ experience with complex workflows and lifecycle processes.
  • Experience with directories, cloud platforms and REST/SOAP APIs.

Responsibilities

  • Plan, design, configure, integrate, test and evolve IAM solutions and services.
  • Provide guidance on IAM standards, workflows, controls and best practices.
  • Translate IAM objectives into concrete identity workflows across York University.
  • Collaborate with technical and non-technical partners to support secure, scalable identity services.

Skills

IAM design
SailPoint IdentityIQ
REST APIs
Azure AD / Entra ID
Java
SQL
XML/JSON
LDAP
Linux/UNIX
RBAC/ABAC
SAML / OAuth / OpenID Connect
Ansible

Education

Bachelor's degree in Computer Science or Cybersecurity or related field

Tools

Active Directory
LDAP
CI/CD pipelines (Ansible)

Job description

The Identity & Access Management Designer is a technology and solution subject matter expert with deep pragmatic experience and passion for the Identity and Access domain as well as other relevant information security domains. Reporting to the Senior Manager, Identity and Access Management, this role serves as an expert technical resource for the planning, design, configuration, integration, testing and ongoing evolution of IAM solutions and services. The role provides guidance on IAM standards, solution design, workflows, controls, technical patterns and best practices to support secure, scalable and sustainable identity services, improving the user experience, and supporting the long‑term evolution of IAM services at the University. The IAM Designer collaborates closely with both technical and non-technical partners across the University to effectively translate the IAM objectives into specific identity and access management workflows enabled by York University's IAM technologies and services.

Education:

Bachelor's degree in a relevant discipline, such as Computer Science, Information Systems, or Cybersecurity or an equivalent of 4 years recent experience (defined as within the last five years) working at York University and performing the same or similar tasks. This education equivalency is in addition to the experiential requirements outlined below.

Experience:

7 years related experience with the development, implementation, and operation of identity management systems and related technologies

Extensive experience designing, implementing, maintaining, administering and troubleshooting SailPoint IdentityIQ solutions, including complex workflows, integrations and identity lifecycle processes

Experience integrating SailPoint with directories, applications, and cloud platforms using REST/SOAP APIs

Experience with enterprise identity platforms such as Microsoft Entra ID (Azure AD), including authentication, authorization, and identity governance capabilities

Experience scripting using Beanshell, Java, SQL, XML, JSON

Experience with Linux/UNIX systems and LDAP directories

Experience with user provisioning, de‑provisioning, and access certification workflows

Skills:

Ability to present complex technical materials to non-technical business partners and executives.

Ability to work closely with business and IT teams to align IAM strategies with organizational goals.

Ability to work with operating systems and middleware security software/tools.

Ability to solve large complex IT and business problems that are often ambiguous, conceptual and/or ill-defined.

Ability to apply judgment, discretion, technical problem‑solving, and analytical skills.

Ability to work as a team member and establish effective working relationships.

Ability to build relationships and bring together individuals with different perspectives and opinions toward a common goal.

Commitment to continuous learning and skill building in DEDI and cultural competence.

Effective interpersonal skills, including listening and questioning skills.

Ability to maintain strict confidentiality.

Ability to accomplish goals through influence without direct authority.

Ability to navigate and work effectively in a dynamic work environment with frequent change.

Ability to interpret regulatory standards and technical specifications.

Ability to design scalable and secure IAM frameworks, procedures, and best practices.

Expertise in implementing and managing role‑based and attribute‑based access models.

Effective knowledge of IAM principles, practices, and standards as applicable in a multi‑faced organization supported by multi‑platform technical environments.

Deep understanding of IAM architecture, lifecycle events, workflows, and connectors.

Familiarity with NIST, CIS, and industry IAM frameworks.

Knowledge of identity threats, zero‑trust models, and IAM risk mitigation strategies.

Awareness of IT infrastructure, cloud security, and hybrid IAM deployment models.

Knowledge of relational databases (SQL) and directory services (Active Directory, LDAP) in IAM implementations.

Effective knowledge of Active Directory, LDAP, SSO, MFA, and authentication protocols (SAML, OAuth, OpenID Connect).

Knowledge of managing CI/CD pipelines and automating tasks using tools such as Ansible

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Identity & Access Management
Senior Identity & Access Management

TEEMA • Brampton

On-site
CAD 90,000 - 125,000
Identity Management Consultant
Identity Management Consultant

Randstad Digital • Toronto

On-site
CAD 80,000 - 100,000
Identity and Access Manager Engineer - Windows IAM
Identity and Access Manager Engineer - Windows IAM

Astra-North Infoteck Inc. ~ Conquering today’s challenges, achieving tomorrow’s vision! • Toronto

On-site
CAD 90,000 - 120,000
Senior Identity and Access Management Specialist (Permanent)
Senior Identity and Access Management Specialist (Permanent)

CoreFactor • Mississauga

Hybrid
CAD 100,000 - 150,000
Senior Consultant, SailPoint ISC
Senior Consultant, SailPoint ISC

The Herjavec Group US • Toronto

Hybrid
CAD 110,000 - 150,000
Medical Insurance
Life Insurance
Hybrid Work Model
+6
Senior Specialist, Identity & Access Management
Senior Specialist, Identity & Access Management

Canada Mortgage and Housing Corporation (CMHC) Société canadienne d'hypothèques et de logement(SCHL) • Ottawa

Hybrid
CAD 110,000 - 140,000
Annual paid vacation
Performance incentive
Defined benefit pension
+4
Senior Consultant, SailPoint ISC
Senior Consultant, SailPoint ISC

Cacheflow • Toronto

Hybrid
CAD 110,000 - 150,000
Medical Insurance
Life Insurance
Hybrid Work Model
+5
Senior Identity and Access Management Specialist Mississauga - Financial Dr., ON 8/13/2026
Senior Identity and Access Management Specialist Mississauga - Financial Dr., ON 8/13/2026

Maple Leaf Foods • Mississauga

On-site
CAD 77,000 - 112,000
Identity Security Engineer
Identity Security Engineer

KTek Resourcing • Brampton

On-site
CAD 80,000 - 120,000
Senior Cyber Security Specialist, IAM Onboarding
Senior Cyber Security Specialist, IAM Onboarding

Jobtailor • Toronto

On-site
CAD 120,000 - 180,000