Overview
Permanent Full‑time position. This role is part of the Identity and Access Management group, responsible for designing, implementing, and operating privileged access management (PAM) solutions across Canada Life.
Responsibilities
- Design, implement, and maintain enterprise PAM solutions (e.g., CyberArk, BeyondTrust, Delinea, Microsoft Entra ID PIM).
- Develop secure architectures for privileged identity lifecycle management, credential vaulting, session management, and least privilege enforcement.
- Lead PAM platform upgrades, integrations, and modernization initiatives across on‑premises and cloud environments.
- Implement role‑based, just‑in‑time (JIT) and Zero Standing Privileges (ZSP) access models to minimize standing privileges.
- Define and enforce PAM standards, patterns, and best practices.
- Develop and maintain automation workflows (scripts, APIs, pipelines) for onboarding accounts, crede...