This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Specialist, Cybersecurity (IAM) will be working in a fast paced and innovative environment for one of North America’s top airlines. Air Canada’s cyber security systems are foundational to protecting the data and systems that allow its customers to fly safely. Air Canada is making significant investments to enhance its Identity and Access Management (IAM) capabilities through process maturity, and technology enablement. In this role, the IAM Specialist will support, administer, and continuously enhance Air Canada's Identity Governance and Administration (IGA) capabilities, with a primary focus on SailPoint IdentityIQ (IIQ) as a cornerstone of the organization's security and access strategy. Success in this position requires close collaboration across multiple departments to deliver scalable, resilient, and secure IAM services that support Air Canada's enterprise environment and strengthen internal controls.
Job Responsibility
Administer, support and maintain Air Canada’s SailPoint IIQ platform and supporting infrastructure, ensuring stable, secure, and reliable operations across environments
Oversee configuration and ongoing administration of SailPoint IIQ capabilities, including identity lifecycle management, provisioning/deprovisioning, access requests, access certifications, and segregation of duties controls
Support and improve identity lifecycle management (joiner/mover/leaver), including authoritative source processing, downstream provisioning, and deprovisioning workflows to reduce manual effort and improve consistency
Troubleshoot complex IAM-related technical issues, including identity data problems, provisioning failures, connector/integration issues, workflow errors, and performance bottlenecks, and drive issues to resolution
Analyze business processes and workflows, and recommend IAM solutions that promote enterprise security, operational efficiency, and improved user experience
Participate and contribute to IAM projects and initiatives (e.g. IAM program)
Lead efforts to reduce and mitigate Air Canada IAM risks
Create, support, and maintain IAM documentation (IAM processes, Standard Operating Procedures)
Enforce compliance of Air Canada IAM policy and procedures
Develop, manage, measure and report on key service-level metrics showcasing the effectiveness of Air Canada’s IAM practice
Define and maintain methods and techniques to improve IAM operational processes
Be a senior technical resource and subject matter expert on matters related to IAM
Build relationships throughout the organization to enhance and support our focus on safe, secure, and reliable operations
Develop and communicate IAM objectives
inspire, motivate and train team members to follow and achieve organizational IAM standards
Maintain up-to-date understanding of IAM processes, principles, best practices, and technologies, with a strong emphasis on SailPoint IIQ administration and enterprise IGA operations
Stay current with IAM trends and advancements, participating in continuous improvement initiatives for the organization's identity governance program
Requirements
A relevant University degree/technical certification, and/or relevant experience commensurate to the role
5+ years of experience supporting and maturing IAM solutions in large enterprise environments, with at least 3+ years of hands-on SailPoint IdentityIQ (IIQ) administration experience (IIQ 8.x preferred)
Expertise in SailPoint IIQ concepts and operations, including directory services integration, identity aggregation and correlation concepts, lifecycle management, provisioning and deprovisioning, approval workflows, and access certifications
Expertise with RBAC (Role-Based Access Control) and SoD (Segregation of Duties) concepts
Experience with enterprise directories and identity sources & targets (Active Directory, Entra ID)
Strong understanding of modern authentication and identity concepts (SAML, OAuth, OpenID Connect, SCIM, MFA, SSO)
Experience integrating or supporting integrations with cloud and hybrid environments (e.g., Azure/Entra ID, AWS)
Experience with programming and scripting used in IAM/IGA customization and automation such as Java, BeanShell, PowerShell, JavaScript, Python, C# and .NET
Strong understanding of integration patterns commonly used in enterprise IAM (REST/SOAP APIs, secure connectivity, certificates, and basic troubleshooting of integration endpoints)
Experience with Microsoft SQL Server (MSSQL) administration and performance troubleshooting (database management concepts, SQL queries, stored procedures, runtime optimizations) in support of enterprise applications, including SailPoint IIQ
Knowledge of compliance, audit, and risk principles relevant to IAM and Identity Governance, particularly in environments where access certifications and strong internal controls are required
Strong interpersonal skills with the ability to effectively present information
Demonstrated experience (5 years +): Incident/Major Incident, ITIL process concepts and execution (Incident Management, Problem Management, and Change Management)
In-depth knowledge of cybersecurity control frameworks (NIST, ISO, etc)
Demonstrated teamwork and leadership, with the ability to mentor junior staff and work effectively across technology and business teams
Able to communicate effectively and to work collaboratively with all levels of the organization with superior verbal and written skills
Demonstrate punctuality and dependability to support overall team success in a fast-paced environment
Ability to work effectively under pressure and in rapidly changing environments or uncertain conditions
Nice to have
SailPoint professional certification
Familiarity with DevOps pipelines and CI/CD best practices for IAM solution delivery
Experience delivering IAM solutions in hybrid or cloud-native environments
Experience supporting access certification programs in regulated environments, including preparation of audit evidence and support of control testing activities