This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a Senior Identity Access Management (IAM) Consultant to lead the support and modernization of a large-scale Public Key Infrastructure (PKI) environment. This role focuses on mission-critical upgrades, including transitioning from obsolete Entrust CA versions to the latest releases and facilitating a migration to Managed Cloud Services. You will provide Tier-3 expertise to sustain complex identity services for a large number of users, ensuring high availability through robust disaster recovery planning and 24/7 on-call support.
Job Responsibility:
Infrastructure Modernization: Lead the upgrade of Entrust CA from legacy v8.2 to v10
manage the transition from Atos DirX to Oracle Unified Directory (OUD)
Disaster Recovery (DR): Design and implement DR sites for both Entrust and Microsoft ADCS Certificate Authorities
document operational DR procedures
HSM & Security: Configure Hardware Security Modules (HSM) and manage SSL/encryption technologies to protect cryptographic keys
Operational Sustainment: Monitor system health, performance, and status
perform patching, certificate renewals, and capacity tuning
Incident & Change Management: Act as a Tier-2/Tier-3 SME for the triage and resolution of complex PKI incidents
lead change impact assessments for system updates
Network Integration: Support application deployments across network components including Load Balancers, Firewalls, and Proxy Servers
Client Consultation: Analyze technical requirements for enterprise clients to integrate their applications with centralized PKI services using established patterns
Knowledge Leadership: Develop knowledge transfer plans and role descriptions to transition technical sustainment functions to internal staff
Requirements:
Senior IAM Experience: 10+ years sustaining COTS-based IAM systems, with at least 4 years supporting environments with 10,000+ users
Entrust Suite Expertise: 4+ years specifically with Entrust Security Manager (v8.x/v10), Security Manager Proxy, Admin Services, and AES
Microsoft Security Stack: 10+ years of experience with Active Directory Certificate Services (ADCS) and LDAP tools
Technical Breadth: Extensive experience with Oracle WebLogic, Oracle Database (11g/19c), IIS, Apache/NGINX, and multi-platform OS (Solaris, AIX, Linux, Windows)
Testing & Automation: Proficiency with automated testing tools such as TFS, Robot Framework, or VSTS
Service Management: Strong understanding of ITIL processes (Problem, Change, and Release Management)
Hardware Knowledge: Practical experience configuring HSM devices and managing secure data centers
What we offer:
Complex Technical Challenges: Drive high-value migrations from legacy on-premises infrastructure to modern cloud-managed services
Significant Cost Impact: Directly influence architectural changes (like the OUD transition) that result in massive licensing savings
Strategic Advisory: Move beyond maintenance to define future-state system management processes and disaster recovery frameworks
High-Visiblity Role: Serve as the primary technical contact for critical identity services across a diverse provincial organizational landscape