Information Security Analyst - AI

CXC

Toronto

On-site

CAD 90,000 - 130,000

Full time

10 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

CXC Global is seeking a Senior Information Security Analyst focused on Agentic AI Identity Governance to establish and oversee governance controls for AI agents and non-human identities. You will collaborate across cybersecurity, IAM, compliance, privacy, legal, and risk management to ensure security guardrails, accountability, and regulatory compliance for AI systems.

The role emphasizes identity governance, privileged access management, risk assessment, and ongoing governance improvements for

Qualifications

  • 5+ years of experience in Information Security, IAM, Security Governance, Risk Management, or related discipline.
  • Strong understanding of Identity Governance & Administration (IGA), Privileged Access Management (PAM), authentication, authorization, access lifecycle management, and certification processes.
  • Experience supporting controls for non-human identities, including service accounts, machine identities, APIs, automation platforms, bots, or AI-enabled systems.
  • Knowledge of Zero Trust security principles and least-privilege access methodologies.
  • Experience conducting risk assessments, control evaluations, compliance reviews, and audit support activities.
  • Ability to translate complex technology risks into practical governance controls and business recommendations.
  • Excellent communication, stakeholder management, analytical, and problem-solving skills.

Responsibilities

  • Define and maintain governance standards for AI agents and non-human identities across enterprise systems.
  • Establish processes for identity registration, ownership assignment, classification, and entitlement management.
  • Develop and manage lifecycle controls covering onboarding, provisioning, approval workflows, access reviews, suspension, and decommissioning.
  • Ensure accountable business ownership is assigned for all AI agent identities.
  • Design access models based on least privilege, segregation of duties, policy-based authorization, delegated authority, and just-in-time access principles.
  • Support implementation of governance controls for privileged and non-privileged AI agents.
  • Collaborate with IAM and security teams to align AI identity controls with enterprise security architecture and Zero Trust strategies.
  • Conduct risk assessments focused on AI agent activities, decision-making capabilities, tool usage, system integrations, and privileged operations.
  • Identify governance gaps and recommend appropriate control enhancements.
  • Assist in policy development related to AI governance, human oversight requirements, escalation procedures, and exception management.
  • Participate in audit readiness activities and compliance reviews related to AI-enabled technologies.
  • Define monitoring and audit requirements to ensure AI activity is observable, attributable, and traceable.
  • Support implementation of logging, analytics, and reporting capabilities for AI identities.
  • Conduct periodic access certification reviews and governance maturity assessments.
  • Produce executive-level reporting on security posture, control effectiveness, risk exposure, and remediation progress.
  • Partner with Cybersecurity, IAM, AI Engineering, Privacy, Compliance, Legal, and Risk teams to establish secure AI operating models.
  • Contribute to threat modeling exercises focused on identity misuse, privilege escalation, credential compromise, unauthorized tool execution, and policy violations.
  • Provide guidance on emerging AI governance requirements and industry best practices.

Skills

IGA
PAM
IAM
Zero Trust
Risk assessment
Governance
Communication
Audit & compliance

Tools

IAM platforms
IGA solutions
PAM technologies
SIEM/SOAR
API security
Cloud identity

Job description

CXC Global is partnering with an innovative, AI-driven organization that is leveraging advanced technologies to transform business operations through intelligent automation and agentic AI solutions. We are seeking a Senior Information Security Analyst – Agentic AI Identity Governance to lead the development and operationalization of governance frameworks that secure and manage AI-powered agents operating across enterprise environments.

This is an exciting opportunity for a security professional who understands identity governance, risk management, and access controls, and is passionate about helping organizations adopt AI responsibly, securely, and at scale.

Location: Toronto, ON or Mt. Laurel, NJ

Duration: 6-Month Contract with Potential Extension

Start Date: Immediate

Work Authorization: Citizens and Green Card Holders only. Sponsorship or transfer of sponsorship is not available for this opportunity.

Position Summary

As a Senior Information Security Analyst focused on Agentic AI Identity Governance, you will be responsible for establishing and overseeing governance controls for AI agents and other non-human identities. You will work across cybersecurity, IAM, AI engineering, compliance, privacy, legal, and risk management functions to ensure AI systems operate within defined security guardrails while maintaining accountability, transparency, and regulatory compliance.

The ideal candidate brings a strong background in identity governance, privileged access management, security controls, and risk assessment, coupled with an interest in emerging AI governance practices.

Key Responsibilities
AI Identity Governance & Lifecycle Management
  • Define and maintain governance standards for AI agents and non-human identities across enterprise systems.
  • Establish processes for identity registration, ownership assignment, classification, and entitlement management.
  • Develop and manage lifecycle controls covering onboarding, provisioning, approval workflows, access reviews, suspension, and decommissioning.
  • Ensure accountable business ownership is assigned for all AI agent identities.
Access Control & Security Architecture
  • Design access models based on least privilege, segregation of duties, policy-based authorization, delegated authority, and just-in-time access principles.
  • Support implementation of governance controls for privileged and non-privileged AI agents.
  • Collaborate with IAM and security teams to align AI identity controls with enterprise security architecture and Zero Trust strategies.
Risk, Compliance & Oversight
  • Conduct risk assessments focused on AI agent activities, decision-making capabilities, tool usage, system integrations, and privileged operations.
  • Identify governance gaps and recommend appropriate control enhancements.
  • Assist in policy development related to AI governance, human oversight requirements, escalation procedures, and exception management.
  • Participate in audit readiness activities and compliance reviews related to AI-enabled technologies.
Monitoring, Auditability & Reporting
  • Define monitoring and audit requirements to ensure AI activity is observable, attributable, and traceable.
  • Support implementation of logging, analytics, and reporting capabilities for AI identities.
  • Conduct periodic access certification reviews and governance maturity assessments.
  • Produce executive-level reporting on security posture, control effectiveness, risk exposure, and remediation progress.
Cross-Functional Collaboration
  • Partner with Cybersecurity, IAM, AI Engineering, Privacy, Compliance, Legal, and Risk teams to establish secure AI operating models.
  • Contribute to threat modeling exercises focused on identity misuse, privilege escalation, credential compromise, unauthorized tool execution, and policy violations.
  • Provide guidance on emerging AI governance requirements and industry best practices.
Required Qualifications
  • 5+ years of experience in Information Security, Identity & Access Management (IAM), Security Governance, Risk Management, Cybersecurity, or a related discipline.
  • Strong understanding of Identity Governance & Administration (IGA), Privileged Access Management (PAM), authentication, authorization, access lifecycle management, and certification processes.
  • Experience supporting controls for non-human identities, including service accounts, machine identities, APIs, automation platforms, bots, or AI-enabled systems.
  • Knowledge of Zero Trust security principles and least-privilege access methodologies.
  • Experience conducting risk assessments, control evaluations, compliance reviews, and audit support activities.
  • Ability to translate complex technology risks into practical governance controls and business recommendations.
  • Excellent communication, stakeholder management, analytical, and problem-solving skills.
Preferred Qualifications
  • Experience supporting AI governance, responsible AI initiatives, data governance programs, or model risk management activities.
  • Familiarity with agentic AI concepts such as autonomous planning, memory, tool orchestration, delegated authority, and multi-agent workflows.
  • Hands-on experience with:
  • IAM platforms
  • IGA solutions
  • PAM technologies
  • SIEM/SOAR platforms
  • API security solutions
  • Cloud identity platforms
  • Security monitoring tools
  • Industry certifications such as:
  • CISSP
  • CISM
  • CISA
  • CCSP
  • CRISC
  • Security+
  • Identity-focused certifications
  • Experience working within highly regulated industries such as financial services, healthcare, government, or critical infrastructure.
Technical & Governance Expertise

Successful candidates should demonstrate experience in:

  • Identity governance across human, privileged, machine, service, and AI-agent identities
  • Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC)
  • Privileged Access Management (PAM) and Just-In-Time (JIT) access models
  • Security monitoring, audit logging, identity analytics, and anomaly detection
  • AI identity governance frameworks and control design
  • Risk assessment methodologies and security control mapping
  • Security policy development and governance documentation
  • Cross-functional collaboration across security, architecture, compliance, risk, and engineering teams
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Manager, AI Security Cybersecurity (1887) 150-170hr
Senior Manager, AI Security Cybersecurity (1887) 150-170hr

Direct IT Recruiting Inc. • Toronto

Hybrid
CAD 207,000 - 234,000
AI Security Architect
AI Security Architect

TEEMA • Toronto

On-site
CAD 135,000 - 175,000
Analyst, Artificial Intelligence
Analyst, Artificial Intelligence

Altotrain • Montreal (administrative region)

On-site
CAD 90,000 - 150,000
AI Governance Engineer (Remote Role) - MUST RESIDE IN CANADA
AI Governance Engineer (Remote Role) - MUST RESIDE IN CANADA

Pozent Corporation • Toronto

On-site
CAD 120,000 - 180,000
Senior Security Engineer - AI Focus
Senior Security Engineer - AI Focus

Euna Solutions • Oakville

On-site
CAD 120,000 - 180,000
Senior AI Engineer – Agentic AI Platform, LLM & GraphRAG
Senior AI Engineer – Agentic AI Platform, LLM & GraphRAG

Urban Ridge Supplies • Toronto

Hybrid
CAD 120,000 - 180,000
Security Technical Program Manager
Security Technical Program Manager

Themesoft Inc • Toronto

Hybrid
CAD 120,000 - 180,000
IT/Information Security Risk / Security Analyst III (Gen AI OR AI Technologies)
IT/Information Security Risk / Security Analyst III (Gen AI OR AI Technologies)

Compunnel Inc. • Toronto

On-site
CAD 90,000 - 120,000
Staff Product Engineer, Agentic Identity & Governance, AI Platform
Staff Product Engineer, Agentic Identity & Governance, AI Platform

Jobgether SRL • Canada

On-site
CAD 312,000 - 369,000
Fully remote in Canada
High-autonomy Staff-level role
Mentorship and professional growth
+1
AI Governance Specialist
AI Governance Specialist

Mobility Global • London

On-site
CAD 95,000 - 135,000