IAM Security Architect REMOTE (OTTAWA)
THIS CONTRACT HAS A TBD START DATE AND GOES TILL END OF DECEMBER 2027
(GREAT CHANCE OF EXTENSION)
LOCATION: REMOTE (THE CLIENT IS IN THE OTTAWA AREA)
LANGUAGE: ENGLISH
CLEARANCE: SECRET (MUST BE ELIGIBLE)
REFERENCES: 2
Mandatory Skills
- University Degree or College Diploma in computer science, information security, engineering, or a related field
- A minimum of five (5) years of recent demonstrated experience in information technology, identity and access management (IAM), or cyber security
- A minimum of three (3) years of recent demonstrated experience as an IAM architect, or identity security consultant in complex, regulated environments
- Demonstrated experience assessing current-state IAM capabilities and defining target-state IAM architectures and roadmaps
- Demonstrated experience designing and governing IAM controls, including identity governance, privileged access management, authentication, authorization, and Zero Trust identity capabilities
- Demonstrated experience identifying IAM, security, and compliance control gaps and recommending risk-based improvements
- Demonstrated experience developing IAM standards, reference architectures, design patterns, and governance frameworks
- Demonstrated Experience working in the financial sector or another highly regulated environment
- Demonstrated Experience with enterprise architecture methods or frameworks such as TOGAF, SABSA, or comparable approaches
- Relevant certifications would be considered an asset (e.g., CISSP, CISM, Microsoft, SailPoint, CyberArk, TOGAF, or SABSA)
The scope of work of the Contract includes, but is not limited to:
The IAM Security Architect professional will be expected to execute the following tasks during this contract, but not limited to:
- Provide senior Identity and Access Management (IAM) guidance, advisory, and architecture services to support Bank objectives and cyber resilience initiatives
- Develop the strategic direction, target-state architecture, and roadmap for IAM capabilities across the Bank
- Lead the advancement of Zero Trust identity principles across users, workloads, applications, devices, services, and AI-enabled solutions
- Create enterprise IAM architectures and governance models aligned with security, privacy, operational, and regulatory requirements
- Establish authentication, authorization, and access governance patterns leveraging Microsoft Entra ID, SailPoint, CyberArk, Azure Key Vault, and related technologies
- Establish standards and design patterns for identity governance, lifecycle management, access certification, entitlement management, and privileged access
- Develop the Bank's approach to non-human identities, including service accounts, workload identities, APIs, secrets, certificates, and machine-to-machine access
- Lead the development of agentic identity management capabilities and governance models to support secure adoption of AI agents
- Implement authorization models, lifecycle controls, monitoring requirements, and governance processes for AI agent identities
- Provide architectural oversight and technical guidance for IAM initiatives, ensuring alignment with enterprise architecture, Zero Trust principles, and strategic objectives
- Review and provide guidance with solution designs, implementation approaches, and technical deliverables produced by project teams and service providers
- Identify IAM capability gaps, technology risks, and control deficiencies, and develop remediation roadmaps
- Collaborate with cybersecurity, architecture, infrastructure, cloud, application, and data teams to embed identity controls into technology solutions and business processes
- Establish security requirements and architecture guidance for cloud identity, federation, privileged access, secrets management, and emerging technologies
- Assist in the development of identity threat detection, monitoring, and response capabilities to strengthen cyber resilience and enable machine-speed operations
- Produce architecture deliverables, standards, roadmaps, governance artifacts, and executive-ready recommendations for leadership and governance forums
- Provide expert guidance and knowledge transfer to internal teams supporting IAM initiatives
- Participate in the planning, prioritization, and delivery of IAM capabilities within the Cyber Resilience Transformation Program and broader Bank IAM initiatives
- Perform other related duties and deliverables as required