Security Architect – SAP & Enterprise Platforms, Identity & Access Management
CAD 117K-154K Senior-level Full Time
Tasks
- Advise on SAP GRC access controls
- Align security architecture with enterprise risk frameworks
- Architect JML provisioning and deprovisioning
- Architect MFA and passwordless mechanisms
- Architect PAM for administrative service and privileged accounts
- Architect RBAC and ABAC controls
- Architect access governance controls
- Architect security controls for non SAP applications
- Define SAP logging and monitoring standards
- Define SAP user lifecycle processes
- Define encryption and secrets management standards
- Define identity lifecycle standards
- Define privileged access standards
- Define security standards and reference architectures
- Design SAP security roles and authorizations
- Design SSO and federation integrations
- Design cloud IAM controls
- Design conditional access policies
- Design end to end security architecture
- Design enterprise IAM architecture
- Design secure authentication and authorization
- Design secure integration patterns
- Design segregation of duties controls
- Design session monitoring for privileged users
- Design user access reviews
- Embed security-by-design
- Enforce least privilege
- Establish authentication standards
- Establish authorization standards
- Integrate IAM with HR ITSM and GRC
- Integrate IAM with enterprise applications
- Integrate PAM with vaulting and just in time access
- Perform threat modeling and control gap analysis
- Review solution designs for security sign off
Perks/Benefits
- Employer insurance
- Flexible work environment
- Paid parental leave
- Paid time off
- Retirement plan
- Telemedicine
- Training and development
Skills/Tech-stack
ABAC | APIs | AWS | Access Management | Active Directory | Azure | Azure AD | Cloud IAM | Encryption | Entra ID | Federation | GCP | GDPR | IAM architecture | ISO 27001 | Identity and Access Management | Identity and access | Identity-first security | Incident Response | Integration Patterns | Joiner-Mover-Leaver | LDAP | Logging | MFA | Monitoring | OAuth 2.0 | OpenID Connect | PAM | Privileged Access | Privileged Access Management | RBAC | REST | SAML | SAP | SAP Fiori | SAP GRC | SAP S4HANA | SDLC | SOX | SSO | Secrets management | Secure integration | Secure integration patterns | Threat modeling | Zero Trust
Education
Roles
Architect | Engineer | Security | Security Architect | Security Engineer
Related jobs
-
Application Security | Cloud Security | Code review | Exploit Development | External Network SecuritySenior-level Full TimeOttawa, ON, Canada13h ago
-
Audit Readiness | Cloud Computing | Compliance Monitoring | Cybersecurity | Cybersecurity complianceSenior-level Full TimeMontréal, QC, CA, H3B 1S61d ago
-
Sr Technology Architect CAD 104K-134KAudit preparation | Cloud Computing | Compliance Management | Cybersecurity | Governance RiskRemote workSenior-level Full TimeMontréal, QC, CA, H3B 1S6 R1d ago
-
Senior Product Owner - SIEM Engineer CAD 109K-134KAWS | Agile | Audit management | Cloud platform | CybersecurityEmployee share purchase plan | Extra days off | Flexible work arrangements | Hybrid work model | Pension planSenior-level Full TimeMontréal, 2020 Robert-Bourassa, Canada1d ago
-
Senior Security Engineer, GRC Automation USD 144K-214K800-53 | AI | APIs | AWS IAM | Automation401k | Dental insurance | Equity grant | Health insurance | Paid time offSenior-level Full TimeRemote (United States | Canada) R1d ago
-
CVE | CVSS | Cloud platform | ISO 27001 | Jira3 weeks vacation | 5 personal days | Collective insurance | Company stock options | Employee assistance programMid-level Full TimeMontréal, QC, CA | Quebec, QC, …1d ago
-
Cybersecurity System Engineering, Air & Naval CAD 100K-145K800-171 | 800-172 | CVE | CWE | Container Security24/7 virtual care | Educational assistance | Emergency travel insurance | Employee & Family Assistance Program | Employee discountsMid-level Full TimeOttawa, ON, Canada1d ago
-
AWS | Access Control | Alerting | DAST | Detection engineeringHybrid work | Paid time offSenior-level Full TimeToronto, Ontario1d ago
-
API Clients | Access Management | Adaptive Authentication | Attribute Transformation | Azure EntraEmployee assistance program | Flexible working environment | LinkedIn Learning | Volunteer time offSenior-level Full TimeToronto, ON, Canada1d ago
-
Senior Software Security Engineer USD 159K-198KAPI Development | AWS | Application Security | Authentication | AuthorizationSenior-level Full TimeToronto, ON1d ago
-
Director, Cybersecurity CAD 130K-160KAudit management | Barracuda | Cybersecurity | Data Loss Prevention | Data lossExecutive-level Full TimeToronto, ON, Canada1d ago
-
Senior Software Engineer USD 160K-210KAPI Integration | C# | C++ | Certificate validation | Code optimizationCompany non profit matching | Competitive time off | Global volunteer day | Mindfulness app membership | Paid parental leaveSenior-level Full TimeUnited States; Remote or Canada R1d ago
-
Access Management | Cloud Governance | Cloud Monitoring | Cloud Security | IAMMid-level Full TimeRive-Sud de Montréal, Canada1d ago
-
Software Development Engineer, Security - Evisort CAD 112K-168KAI Security | AWS | Ansible | Application Security | Automated testingFlexible workMid-level Full TimeCanada, BC, Vancouver2d ago
-
Sr. Cyber Security Incident Response Communications CAD 140K-190KCloud Computing | Compliance | Crisis Communications | Crisis management | CybersecuritySenior-level Full TimeCalgary, AB, CA, T2P 5E92d ago
-
Azure Architect & Administrator CAD 100K-137KARM | Azure Architecture | Azure Backup | Azure CLI | Azure EntraEmployee recognition | Flexible benefits | Generous time off | Hybrid working culture | Training and professional developmentSenior-level Full TimeCA.ON.Mississauga.2251 Speakman Drive, Canada R2d ago
-
SecOps Business Development Solution Consultant CAD 207K-253K802.11 | 802.1x | Active Directory | BGP | CMMCritical illness insurance | Disability insurance | Employee and family assistance program | Group Registered Retirement Savings Plan | Health spending accountSenior-level Full TimeVancouver, BC, Canada2d ago
-
Access Management | Active Directory | Cloudflare | DNS | LinuxFlexible working | Global career development | Hybrid work | Referral bonus | Social eventsSenior-level Full TimeCanada2d ago
-
Manager, Incident Response CAD 81K-115KCrisis management | Incident Response | Law enforcement | Law enforcement coordination | Operational RiskCareer development opportunities | Employee share ownership program | Health benefits | Pension plan matchingMid-level Full TimeToronto, ON, CA, M5H1H13d ago
-
API | AWS | Active Directory | Amazon Elastic Kubernetes Service | AnsibleMid-level ContractDowntown Toronto (Ryerson), Canada4d ago
-
Security Architect, CIAM CAD 153K-197KAccess Management | Behavioral analytics | CIAM | Cloud Architecture | Cloud NativeCareer coaching | Disability insurance | Employee assistance program | Health insurance | Life insuranceSenior-level Full TimeCanada - Toronto5d ago
-
Security Software Engineer, AI & Automation - Canada CAD 123K-188KAWS | Agent systems | Application Security | Authentication | AuthorizationCell phone stipend | Healthcare stipend | Paid public holidays | Paid sabbatical | RRSP matchMid-level Full TimeNerdWallet Canada R5d ago
-
Senior Manager, Infrastructure & Security CAD 135K-180KAWS ECS | AWS EKS | AWS Lambda | AWS S3 | AWS SQSSenior-level Full TimeUSA (remote), Canada (remote) R5d ago
-
Access Management | Accreditation support | Defense in Depth | Endpoint protection | Identity and Access ManagementSenior-level Full TimeGatineau, QC5d ago
-
Access Management | By Design | Compliance | Cryptography | EncryptionAccommodation during recruitment upon request | Hybrid work | Onsite workSenior-level Full TimeGatineau, QC5d ago