Cybersecurity Engineer – DevSecOps, IAM, PAM (Toronto)

Cybersecurity Engineer – DevSecOps, IAM, PAM (Toronto)

31 Aug
|
Astra North Infoteck
|
Toronto

31 Aug

Astra North Infoteck

Toronto

Job Description Job Description: Cybersecurity Engineer Dev

SecOps / IAM / PAM Location: Toronto, ON Work Arrangement: Hybrid 4 Days Work From Office (WFO) Duration: 612 Months Role Overview We are seeking an experienced Cybersecurity Engineer with strong expertise in IAM, PAM, Cyber

Ark, Active Directory, Entra ID, Python, and Dev

SecOps .

The successful candidate will support and enhance RBC''s cybersecurity posture by managing identity and access lifecycles, Non-Personal IDs (NPIDs), risk and control frameworks, and Dev

SecOps security integration, while driving process automation through Python-based tooling.

Key Responsibilities 1.

Identity & Access Management (IAM) Onboard applications and services into IAM platforms, including Sail

Point, Cyber

Ark, and Active Directory .

Manage access provisioning, recertification, and deprovisioning workflows.

Enforce Least Privilege and Role-Based Access Control (RBAC) policies.

Support Privileged Access Management (PAM) onboarding and credential vaulting.

Manage identity lifecycle processes in Azure AD / Microsoft Entra ID . 2.

Non-Personal ID (NPID) Management Create, maintain, and retire Non-Personal IDs, including service accounts, shared accounts, and system IDs.

Ensure NPIDs comply with password policies, rotation schedules, and ownership requirements.

Conduct periodic reviews and attestations of NPID inventories.

Identify and remediate orphaned, stale, or non-compliant NPIDs.

Support audit and compliance activities related to service-account governance. 3.

Dev

SecOps Security Embed security controls into CI/CD pipelines using tools such as: Jenkins Azure Dev

Ops Git





Hub Actions Advise development teams on secrets management using: Hashi

Corp Vault Azure Key Vault Support integration and implementation of: SAST DAST SCA Work with security and development teams on tools such as Veracode, Snyk, and Checkmarx .

Participate in secure code reviews and threat modeling for new applications and services. 4.

Risk & Controls Management Own and track cybersecurity risk controls across assigned application portfolios.

Identify, raise, manage, and remediate security risk findings and exceptions.

Monitor compliance with cybersecurity policies and control requirements.

Prepare risk and control reporting for audits, regulators, and senior management.

Support evidence collection and remediation activities for internal and external audits. 5.

Automation & Tooling Develop Python-based automation to streamline IAM workflows, NPID audits, vulnerability reporting, and other security operations.

Develop integrations with internal APIs and platforms such as: Confluence Service

Now Tableau Maintain and enhance automation pipelines for recurring security operations tasks.

Use Python libraries such as pandas, requests, openpyxl, and Selenium .

Develop scheduled jobs, automated data extraction, and reporting solutions to reduce manual effort.





Required Skills & Qualifications Solid experience in Cybersecurity Engineering, IAM, PAM, and Dev

SecOps .

Hands-on experience with: Cyber

Ark Active Directory Microsoft Entra ID / Azure AD Sail

Point Strong understanding of Identity & Access Management (IAM) and Privileged Access Management (PAM) .

Experience with Non-Personal IDs (NPIDs), service accounts, and identity governance .

Strong scripting and automation skills using Python .

Experience with Python libraries including pandas, requests, openpyxl, and Selenium .

Working knowledge of Power

Shell .

Familiarity with Dev

SecOps practices and CI/CD security.

Knowledge of Jenkins, Azure Dev

Ops, and Git

Hub Actions .

Experience with application security tools such as Veracode, Snyk, and Checkmarx .

Knowledge of secrets-management technologies such as Hashi

Corp Vault and Azure Key Vault .

Understanding of cybersecurity risk, controls, compliance, and audit requirements.

Strong analytical, communication, and problem-solving skills.

Ability to work effectively with cybersecurity, infrastructure, application development, and Dev

Ops teams.

Key Technology Stack IAM / PAM: Sail

Point, Cyber

Ark, Active Directory, Microsoft Entra ID Automation: Python, pandas, requests, openpyxl, Selenium, Power

Shell Dev

SecOps: Jenkins, Azure Dev

Ops, Git

Hub Actions Secrets Management: Hashi

Corp Vault, Azure Key Vault Application Security: Veracode, Snyk, Checkmarx Enterprise Tools: Service

Now, Confluence, Tableau Requirements 60-70

📌 Cybersecurity Engineer – DevSecOps, IAM, PAM (Toronto)
🏢 Astra North Infoteck
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: cybersecurity engineer – devsecops, iam, pam (toronto) / toronto

Subscribe to this job alert:

Get the latest job offers by email for: cybersecurity engineer – devsecops, iam, pam (toronto) / toronto