Enable job alerts via email!

Senior Staff Engineer, PAM and AD

ZipRecruiter

Toronto

On-site

CAD 100,000 - 130,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading FinTech as a Privileged Access Management Engineer, where you'll design and implement PAM solutions to secure privileged accounts. With a focus on integrating PAM capabilities with Active Directory and Microsoft Entra ID, you'll play a key role in enhancing security across hybrid environments. This senior-level position requires strong knowledge of PAM solutions and the ability to mentor junior staff. Enjoy a competitive salary and benefits while contributing to a transformative banking experience for Canadians.

Benefits

Competitive discretionary bonus
Market leading RRSP match program
Medical, dental, vision, life, and benefits
Employee Share Purchase Plan
Maternity/Parental top-up
Generous vacation policy
Annual professional development allowance

Qualifications

  • Minimum of 10 years in IT support/engineering.
  • Strong knowledge of PAM solutions and Active Directory.
  • Ability to educate non-technical stakeholders on PAM best practices.

Responsibilities

  • Design and manage PAM solutions for secure privileged accounts.
  • Integrate PAM systems with AD and Entra ID.
  • Monitor privileged sessions and respond to unauthorized access.

Skills

Privileged Access Management
Scripting
Attention to Detail
Collaboration

Tools

Hashicorp Vault
CyberArk
BeyondTrust
Active Directory
Microsoft Entra ID

Job description

Job DescriptionJoin a Challenger

Being a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing things. If you’re not afraid of taking on big challenges and redefining the future, you belong with us. You’ll get to work with people who will encourage you to reach new heights. We like to keep things fun, ask questions and learn together.

We are a big (and growing!) family. Overall we serve more than 670,000 people across Canada through Equitable Bank, Canada's Challenger Bank, and have been around for more than 50 years. Equitable Bank's wholly-owned subsidiary, Concentra Bank, supports credit unions across Canada that serve more than six million members. Together we have over $125 billion in combined assets under management and administration, with a clear mandate to drive change in Canadian banking to enrich people's lives. Our customers have named our EQ Bank digital platform (eqbank.ca) one of the top banks in Canada on the Forbes World's Best Banks list since 2021.

The Work

This position is a senior-level role requiring at least 10 years of work experience. The Privileged Access Management (PAM) Engineer is responsible for designing, implementing, and administering EQ Bank’s PAM solutions, with a primary focus on integrating PAM capabilities with Active Directory (AD) and Microsoft Entra ID (formerly Azure AD). This role is crucial in securing privileged accounts, implementing least-privilege access, and enhancing the organization’s security posture across hybrid environments. Additionally, the PAM Engineer will mentor intermediate and junior staff, helping them become more knowledgeable and effective in their roles.

The Core Responsibilities

  • Design, implement, and manage PAM solutions to secure privileged accounts across on-premises and cloud environments
  • Integrate PAM systems with AD, Entra ID, and other sources for seamless authentication and access management
  • Develop and enforce least-privilege access policies and ensure proper segregation of duties
  • Configure and manage privileged access workflows for user provisioning, deprovisioning, and access requests
  • Monitor and audit privileged sessions to detect and respond to unauthorized access attempts
  • Collaborate with cybersecurity teams to align PAM practices with the organization’s overall security strategy
  • Conduct regular health checks and maintenance of PAM systems to ensure high availability and performance
  • Implement and maintain Multi-Factor Authentication (MFA) policies for privileged accounts
  • Develop and maintain detailed documentation for PAM processes, configurations, and policies
  • Work with the IT team to ensure secure remote access for privileged users
  • Lead PAM-related projects, including upgrades, migrations, and integration with other security tools

Let's Talk About!

  • Minimum of 10 years of experience in an IT support and/or engineering role for corporate applications
  • Strong knowledge of Privileged Access Management (PAM) solutions, such as Hashicorp’s Vault/Boundary, CyberArk or BeyondTrust
  • Deep understanding of Active Directory and Microsoft Entra ID, including hybrid integration
  • Familiarity with Multi-Factor Authentication (MFA) and conditional access policies for privileged accounts
  • Proficiency in scripting , such as PowerShell and/or Power Automate for automating PAM tasks and integrations
  • Knowledge of governance principles, including least privilege and Role-Based Access Control (RBAC)
  • Experience with PAM-related protocols and technologies, such as RDP, SSH, and VPN
  • Ability to educate and influence non-technical stakeholders on PAM best practices
  • High attention to detail and ability to adhere to strict security protocols
  • Ability to work effectively within a team and independently as required

What we offer [For full-time permanent roles]

Competitive discretionary bonus

Market leading RRSP match program

Medical, dental, vision, life, and benefits

Employee Share Purchase Plan

Maternity/Parental top-up while you care for your little one

Generous vacation policy and personal days

Virtual events to connect with your fellow colleagues

Annual professional development allowance and a comprehensive Career Development program

A fulfilling opportunity to join one of the top FinTechs and help create a new kind of banking experience

Equitable Bank is deeply committed to . Our organization is stronger and our employees thrive when we honour and celebrate everyone’s diverse experiences and perspectives. In tandem with that commitment, we support and encourage our staff to grow not just in their career path, but personally as well.

We commit to providing a barrier-free recruitment process and work environment for all applicants. In addition, please inform us of any accommodations needed to ensure you can participate fully. All candidates considered for hire must pass a criminal background check and credit check. We appreciate your interest, but only leading candidates whose skills closely match the role will be contacted.

We look forward to getting to know you!

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Staff Engineer, PAM and AD

Equitable Group

Toronto

On-site

CAD 80 000 - 120 000

30+ days ago