astra-north

Senior IAM Engineer - Okta, Azure AD, Governance

astra-north

Brampton, Ontario, CanadaContractPosted May 1, 2026

Job description

Job ID: Senior IAM Engineer -Okta, Azure AD, Governance Location: Brampton

  • Hybrid Role Descriptions
  • Design, implement, and support IAM solutions including authentication, authorization, and identity governance.
  • Manage user lifecycle processes provisioning, deprovisioning, role management, and access certifications.
  • Implement and support Single SignOn (SSO), MultiFactor Authentication (MFA), and federation (SAML, OAuth 2.0, OpenID Connect).
  • Administer directory services such as Active Directory, Azure AD Entra ID, LDAP.
  • Integrate IAM with enterprise and cloud applications.
  • Enforce privileged access management (PAM) controls for admin and service accounts.
  • Develop and maintain IAM policies, standards, and procedures.
  • Support security audits, access reviews, and compliance initiatives (SOX, ISO 27001, SOC, GDPR).
  • Monitor IAM systems, investigate access issues, and support incident response.
  • Collaborate with Cybersecurity, Infrastructure, Application, and Compliance teams.
  • Automate IAM processes using scripts or workflows where applicable.
  • Participate in IAM roadmap planning and security architecture reviews. Essential Skills Technical Skills
  • Strong understanding of IAM and security principles (least privilege, RBAC, ABAC).
  • Hands-on experience with IAM platforms such as Azure AD (Entra ID), Okta, Ping Identity, SailPoint, ForgeRock, CyberArk (any combination).
  • Expertise in SSO, MFA, Identity Federation (SAML, OAuth 2.0, OpenID Connect).
  • Experience with Privileged Access Management (PAM).
  • Working knowledge of Active Directory, LDAP, and directory synchronization.
  • Familiarity with cloud IAM (Azure, AWS, GCP). Experience
  • 5+ years of experience in IAM, cybersecurity, or infrastructure security.
  • Experience supporting enterprise-scale environments.
  • Proven experience with IAM integrations and access governance. Certifications (Preferred)
  • Microsoft Identity and Access Administrator (SC-300)
  • CIAM or IAM-specific certifications
  • CISSP, CISM, or Security certifications (nice to have) Desirable Skills
  • Cyber Security
  • Experience Required: 10 & Above