Jobs

    Security Analyst - Manitoba, Canada - IGM Financial

    IGM Financial
    IGM Financial Manitoba, Canada

    1 week ago

    Default job background
    Description
    Senior Security Platform Specialist (IAM
    Requisition ID Posted - Location (1) - Canada - Province of Job Posting (1) - Career Site (2)
    IGM Financial Inc.

    is one of Canada's leading diversified wealth and asset management companies with approximately $271 billion in total assets under managements.

    The company provides a broad range of financial planning and investment management services to help more than two million Canadians meet their financial goals.

    Its activities are carried out principally through IG Wealth Management, Mackenzie Investments and Investment Planning Counsel.
    Under IGM Financial's unique business model based on leading brands and multi-channel distribution strategy, we're IG Wealth Management. We are proud to be recognized as one of Canada's Top Employers by Mediacorp Canada Inc.

    for empowering our employees with the tools to thrive while working remotely, while also providing resources to ensure physical and mental wellness were put front and center.

    We encourage applications from all qualified candidates that represent the diversity present across Canada – including racialized persons, women, Indigenous persons, persons with disabilities, 2SLGBTQIA+ community, gender diverse and neurodiverse individuals, as well as all who may contribute to the further diversification of ideas.

    The Senior Security Platform Specialist is a member of the Identity and Access Management (IAM) team responsible for operating and maintaining Identity Management, Secrets Management and Privileged Access Management (PAM) platforms for the enterprise.

    The Senior IAM Architect will work with project teams to architect secure IAM and PAM solutions destined for multi-cloud and on-prem environments.

    Working with business, security, and other technical team members, the IAM Architect will assist with technical security architectural requirements, design, and delivery of the SailPoint IdentityNow, Active Directory, Secrets Management and Privileged Access Management platforms.

    This role will lead the development of toolsets that brings centralization, security, and timely access to resources and will work closely with IAM Engineering, Operations and DevOps team members.

    This is a deep technical, delivery and leadership-oriented role, and provides a unique opportunity to work closely with numerous business and functional areas across IGM.

    Define strategic security architectures across hybrid technology stacks and cloud hosted IAM, PAM and Secrets Management platforms
    Act as an SME in IAM and PAM platforms on evaluating, designing, and testing solutions and technologies, aligned with the enterprise security platforms, including SailPoint IdentityNow, CyberArk PAM, HashiCorp Vault for Secrets Management, Microsoft Active Directory and Azure Active Directory
    Deliver architectures and designs in both agile and iterative waterfall project delivery models, and propose and implement enhancements to improve the viability of the solutions to meet program timelines, budget, and quality measurements
    Be an authoritative and trusted partner with deep, practical experience in workforce and customer IAM, Secrets Management, PAM and solution architecture best practices to various business and functional areas across IGM, as well as to various risk management and governance functions
    Liaise with cloud, integration, data, digital, security and infrastructure architecture, development, and engineering teams to ensure that all solution architecture views are defined and elaborated
    Develop documentation, architectural, design and workflow diagrams, and test scripts
    Review solutions to ensure new and existing applications are implemented to the standards utilizing the RBAC and Zero Trust Security Frameworks
    Proactively identify security technology reuse goals and opportunities
    and ensure recommendations are based on business relevance, current standards and best practices, appropriate timing, and deployment
    Identify potential risks of projects, document and address those risks and work with other teams to resolve issues
    Implementation Experience
    Must have hands-on experience designing and deploying large-scale enterprise Identity Governance & Administration solutions, including Identity Management (Provisioning, Enrolment, De-provisioning), Access Management, Authentication, Authorization, Role Based Access Control (RBAC), Identity Governance (Attestation, Re-certification, Reconciliation), Identity Federation, Single Sign-On (Desktop SSO, Web SSO, eSSO), Privileged Access/User Management (PAM/PUM), Security and IAM management for cloud based solutions, including IaaS, PaaS, SaaS and IDaaS, Social Login, Identity Analytics, Identity Trust Frameworks

    Must have hands-on experience to install, configure, test, maintain and troubleshoot Identity, Access, Governance and Audit Management platforms, e.g.

    SailPoint IIQ IdentityNow, Azure Active Directory, Windows Active Directory, CyberArk
    Hands-on experience in designing and implementing integrations with ServiceNow and end-to-end workflow automation for full circle fulfillment
    Governance, planning, and delivery of enterprise-level IAM program based on zero-trust (Identity, access, privileged access, SSO federation, cloud, MFA)
    Experience in implementing security hardening in cloud-based systems, endpoint, and cloud infrastructure
    Maintain security, backup, and redundancy strategies for IAM platforms
    Lead in the creation and updates of technical project documentation (i.e. technical and configuration runbook, implementation plan, etc.)
    Experience in leading the team in supporting Level 2, 3 and/or 4 escalation for production incidents
    Windows Active Directory
    Microsoft M365
    A University degree plus at least 5 years' experience with IAM and PAM architectures and security
    Extensive knowledge and experience of IAM and PAM-related security capabilities (i.e.

    provisioning, birthright roles, entitlements, segregation of duties, authentication, authorization, human and non-human credential and role management, access certification, logging, analytics and reporting, privileged access management, etc.)

    5+ years of hands-on working experience in the participation of design and engineering of enterprise scale SailPoint IdentityNow and CyberArk PAM solutions

    Diverse solutioning experience in a variety of environments, platforms, and channels, including multi-cloud, SaaS, on-prem, off-prem, mainframe, web, mobile, call centre, public clients, etc.

    Hands-on experience in using a variety of protocols and standards in solutions, including SAML, OAuth, OIDC, XACML, SCIM, FIDO2, Human Workflow with ServiceNow, NIST 800-63, NIST Zero Trust Framework, etc.

    5+ years' experience with Microsoft Windows AD, Azure AD, and LDAP
    is an asset
    One or more industry recognized information security professional designations (e.g. is an asset
    Experience in Digital Applications, Salesforce Financial Services Cloud, Azure, GCP cloud services platforms is an asset
    Strategic thinker with strong organizational, project management and time management capabilities
    able to meet consistently high-quality standards while handling a variety of tasks and deadlines simultaneously

    If you require an accommodation or this information in an alternate format at any stage of the recruitment process, please reach out to the Talent Acquisition team who will work with you to meet your needs.

    #


  • IG Wealth Management Manitoba, Canada

    The Role · : As a member of our Corporate Solutions Technology team at IGM, you will be joining a highly collaborative group with experience in and passion for delivering innovative solutions for our clients, advisors, and employees using the latest technology and insights. · T ...


  • Winnipeg Regional Health Authority Manitoba, Canada Permanent

    Requisition ID: · Posting End Date: Open Until Filled · City: Flexible in Manitoba · Site: Shared Health · Work Location: Flexible in Manitoba · Department / Unit: Digital Health · Job Stream: Non-Clinical · Union: SH Exempt-OT · Anticipated Start Date: ASAP · FTE: 1.00 · An ...