Maple Leaf Foods logo
Maple Leaf FoodsPosted 1 week ago

Senior Identity and Access Management Specialist

$77,000–$112,000 year

HybridMississauga, Ontario, Canada

Full TimeSenior LevelEnterprise

Job Summary

Administer and enhance privileged access management capabilities, including CyberArk Cloud onboarding, session controls, and service availability. Support secure access to servers, databases, applications, and cloud services by implementing standardized connection patterns and access controls. Lead directory services operational improvements for Active Directory and Microsoft Entra ID, managing group policies, conditional access, and identity lifecycle processes. Design scalable IAM and PAM solutions aligned with enterprise architecture and security standards. Identify and remediate IAM risks, process gaps, and control weaknesses through structured analysis. Support joiner, mover, leaver, access review, and entitlement management processes to ensure appropriate access. Perform scheduled and ad hoc access reviews for user, privileged, and service accounts. Produce and maintain IAM documentation, procedures, control evidence, and audit support materials. Troubleshoot IAM, PAM, and directory services access issues, documenting resolutions and automation opportunities. Collaborate with Infrastructure, Cloud, Security, and application teams to deliver secure identity outcomes. Drive continuous improvement through process standardization and Zero Trust best practices. Support compliance with internal policies, regulatory obligations, and industry frameworks.

Required Qualifications

  • 5+ years of hands-on experience in identity and access management, privileged access management, security administration, infrastructure security, or related cybersecurity functions
  • Practical experience with directory services Active Directory and cloud identity platforms Microsoft Entra ID, including users, groups, roles, access policies, conditional access, and hybrid identity directory services
  • Hands-on experience supporting PAM or IAM platforms (Examples CyberArk, Saviyant, Delinea, etc) or comparable privileged access management technologies
  • Strong understanding of IAM and PAM principles, including least privilege, segregation of duties, role-based access control, single sign-on, privileged access governance, and identity lifecycle management
  • Ability to assess identity risks, identify control gaps, track remediation activities, and provide clear recommendations to technical and non-technical stakeholders
  • Experience producing operational documentation, procedures, reports, and audit evidence to support business continuity and control compliance
  • Strong analytical skills, attention to detail, and ability to organize, prioritize, and track multiple operational and project activities
  • Effective verbal and written communication skills with the ability to explain complex identity risks and technical issues clearly across all levels of the organization
  • Working knowledge of enterprise IT operations, including change management, incident management, project delivery, and cross-functional collaboration
  • Ability to use reporting, scripting, or analysis tools such as PowerShell, Excel, and PowerPoint to support access reviews, control reporting, and remediation tracking

Desired Qualifications

  • Experience supporting identity controls in large, complex, hybrid, manufacturing, plant, or operational technology environments
  • Exposure to identity governance, access certification, entitlement management, or user access review platforms and processes
  • Experience with automation, process improvement, and standardized access patterns for repeatable IAM and PAM delivery
  • Familiarity with Zero Trust principles, especially identity as the control plane, continuous verification, conditional access, and privileged access protection
  • Experience working with architecture teams to create reusable implementation patterns, connection kits, and secure design standards
  • Project delivery experience, including proactively identifying, tracking, and closing risks, issues, dependencies, and action items
  • Ability to build trust and alignment across technical, business, security, and audit stakeholders while balancing security, usability, and operational needs
  • Certifications related to identity and access management, privileged access management, cloud identity, or cybersecurity
  • Relevant certifications may include CyberArk, Delinea, SailPoint, Microsoft identity/security certifications, CISSP, CISM, CRISC, CCSP, ISO 27001, CompTIA Security+, ISC2 CC, or equivalent credentials
  • Bachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related discipline, or equivalent practical experience
  • Microsoft certifications related to directory services, cloud identity, Active Directory, Microsoft Entra ID, security, or identity

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce