Cybersecurity - Access Management - Manager (Toronto)
Toronto, ON, CA, M5H 0B3
EY
Tarjoamme palveluita, jotka auttavat ratkaisemaan asiakkaidemme vaikeimmat haasteetAt EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
As an Access Management (AM) consultant, you will be responsible for leading Access Management strategy, advisory, and implementation engagements, assisting clients in designing and deploying robust, secure, and scalable access management solutions across cloud and on-premises environments. The ideal candidate will have strong experience in implementing industry-leading AM tools such as Okta, ForgeRock, and Microsoft Entra ID, and will be well-versed in authentication protocols, risk-based access controls, and access policy enforcement. The candidate should be capable of driving access transformation initiatives, aligning with security frameworks, compliance requirements, and zero trust architecture principles.
Your Key Responsibilities:
- Lead design and implementation of Access Management solutions using Okta, ForgeRock, Entra ID, and other industry-standard platforms.
- Develop and architect scalable Single Sign-On (SSO), Multi-Factor Authentication (MFA), Adaptive Access, Federation, and API security solutions.
- Provide subject matter expertise in Access Management across hybrid, cloud and on-premises environments.
- Align access policies and identity federation strategies with enterprise architecture and business objectives.
- Define and implement security standards, governance models, and access policies that support regulatory compliance and mitigate access risks.
- Integrate AM solutions with third-party and custom applications, leveraging protocols such as SAML, OAuth, OIDC, and SCIM.
- Collaborate with business stakeholders to define access requirements and ensure secure access to enterprise applications and services.
- Manage delivery of AM roadmaps, technical implementations, and solution optimization projects.
- Evaluate and improve existing AM platforms through access reviews, authentication enhancements, and automation.
- Drive implementation of passwordless authentication and context-aware access controls.
- Participate in technical workshops and governance forums, advising on best practices and architecture improvements.
- Conduct assessments, audits, and remediations aligned with compliance standards like NIST, ISO, and CIS benchmarks.
- Develop collateral for sales pursuits and assist with business development activities.
Skills and Attributes for Success:
- 5+ years of hands-on experience with Access Management tools (e.g., Okta, ForgeRock, Microsoft Entra ID, Ping Identity).
- Proven experience with end-to-end AM solution implementation: Design, Build, Configure, and Test.
- Proficiency in configuring MFA, SSO, Federation, RBAC/ABAC models, access policies, and conditional access.
- Experience with integrating enterprise identity sources (e.g., Active Directory, Azure AD, Workday) and target applications (SaaS, custom, and legacy apps).
- Solid understanding of modern authentication standards – SAML, OAuth2.0, OpenID Connect, WS-Federation.
- Experience in access certification, governance enforcement, and audit controls within AM platforms.
- Familiarity with Zero Trust principles and their application in access enforcement and identity perimeter design.
- Knowledge of scripting or development languages (Java, JavaScript, PowerShell, REST APIs) for custom integrations.
- Experience working in cloud environments (Azure, AWS, GCP).
- Strong documentation and communication skills using MS Office tools.
- Certifications such as Okta Certified Professional, ForgeRock Certified Access Management Specialist, Azure Identity and Access Administrator (SC-300), CISSP, CISM, or TOGAF are a plus.
What We Look For
We’re interested in intellectually curious people with a genuine passion for cybersecurity. If you have the confidence in your technical abilities to grow into a leading expert here, this is the role for you.
What We Offer
At EY, our Total Rewards package supports our commitment to creating a leading people culture - built on high-performance teaming - where everyone can achieve their potential and contribute to building a better working world for our people, our clients and our communities. It's one of the many reasons we repeatedly win awards for being a great place to work.
We offer a competitive compensation package where you’ll be rewarded based on your performance and recognized for the value you bring to our business. In addition, our Total Rewards package allows you decide which benefits are right for you and which ones help you create a solid foundation for your future. Our Total Rewards package includes a comprehensive medical, prescription drug and dental coverage, a defined contribution pension plan, a great vacation policy plus firm paid days that allow you to enjoy longer long weekends throughout the year, statutory holidays and paid personal days (based on province of residence), and a range of exciting programs and benefits designed to support your physical, financial and social well-being. Plus, we offer:
- Support and coaching from some of the most engaging colleagues in the industry
- Learning opportunities to develop new skills and progress your career
- The freedom and flexibility to handle your role in a way that’s right for you
Diversity and Inclusion at EY
Diversity and inclusiveness are at the heart of who we are and how we work. We’re committed to fostering an environment where differences are valued, policies and practices are equitable, and our people feel a sense of belonging. We embrace diversity and are committed to combating systemic racism, advancing gender equity and women in leadership, advocating for the 2SLGBTQIA+ community, promoting our neuroinclusion and accessibility initiatives, and are dedicated to amplifying the voices of Indigenous peoples (First Nations, Inuit, and Métis) nationally as we strive towards reconciliation. Our diverse experiences, abilities, backgrounds, and perspectives make our people unique and help guide us. Because when people feel free to be their authentic selves at work, they bring their best and are empowered to build a better working world.
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory APIs Audits Automation AWS Azure CISM CISSP Cloud Compliance ForgeRock GCP Governance Java JavaScript NIST Okta OpenID PowerShell SaaS SAML Scripting SSO Strategy TOGAF Zero Trust
Perks/benefits: Career development Competitive pay Equity / stock options Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.