×
Register Here to Apply for Jobs or Post Jobs. X

Identity and Access Management Specialist

Job in Toronto, Ontario, M5A, Canada
Listing for: Moneris
Full Time position
Listed on 2026-02-27
Job specializations:
  • IT/Tech
    Cybersecurity, Data Security, Information Security, Security Manager
Salary/Wage Range or Industry Benchmark: 113000 - 149000 CAD Yearly CAD 113000.00 149000.00 YEAR
Job Description & How to Apply Below

Your Moneris Career – The Opportunity

We are seeking an experienced IAM Specialist to secure and advance Moneris’s enterprise identity, cryptographic, and privileged access ecosystems. This role blends hands-on engineering with governance, architecture support, and controls alignment across cloud and on-premises environments.

Location: You will be based in our Toronto office, balancing in-office collaboration with remote flexibility.

Reporting Relationship: You will report to the Senior Manager, Identity, Access and Secret Management

Posting Type: Replacement Position

Salary Range: $113,000 - $149,000.

Total compensation may also include variable or discretionary incentive components, including but not limited to bonuses and commissions. Individual job offers are determined by various factors, including experience, education, skills, certifications, and other business needs.

Your Moneris Career – What you’ll do

  • Design, maintain, and operationalize cryptographic architecture across payment, cloud, and IAM ecosystems, including key lifecycle management (generation, rotation, archival, destruction) following dual-control and split-knowledge principles.

  • Integrate and support HSM infrastructure, developing utilities and workflows using HSM SDKs/APIs to enable CKMS functions and secure payment cryptographic operations including P2PE domain components.

  • Govern enterprise PKI platforms (Cyber Ark ZTPKI) and drive certificate lifecycle automation using Venafi or equivalent tooling.

  • Lead the adoption and governance of enterprise Secrets Hub capabilities, enabling centralized secret synchronization, policy enforcement, and automated secret distribution across multi-cloud platforms.

  • Champion code signing workflows to ensure software authenticity, integrity, and supply chain security across cloud and on-premises environments.

  • Support the modernization and ongoing operations of PAM and secrets management platforms, including Cyber Ark Privileged Cloud, Secrets Manager, and Git Hub Actions integrations.

  • Perform security design reviews, maintain cryptographic patterns and guardrails, and provide crypto consulting to engineering, architecture, and compliance teams.

  • Ensure all cryptographic and access controls align with PCI DSS, PCI PIN, PCI P2PE, and PCI MPoC standards; support regulatory assessments, audit evidence collection, and control remediation activities.

  • Improve IAM operational processes including break-glass workflows, identity incident playbooks, and access remediation, with hands-on maintenance of identity platforms such as Entra , SailPoint, and Cyber Ark.

Your Moneris Career – What you bring

  • 5-7 years of hands-on experience in IAM, cryptography, or security engineering in a complex enterprise environment.

  • Proven experience with HSMs, cryptographic key management, and key ceremony documentation and procedures.

  • Working knowledge of IAM fundamentals: authentication, federation, SSO, directory services, privileged access, and secrets management.

  • Hands-on experience with relevant platforms such as Cyber Ark, Venafi, and Hashi Corp Vault.

  • Solid understanding of PCI security standards (PCI DSS, PIN, P2PE, MPoC) and their operational implications.

  • Experience in payment cryptography or financial services environments is strongly preferred.

  • Familiarity with CI/CD pipelines, automated secrets patterns, and cloud IAM platforms (Azure Entra , AWS IAM, or GCP IAM).

  • Strong documentation discipline with the ability to translate technical designs into clear operational procedures and specifications.

  • Certifications such as CISSP, CCSP, PCI ISA, or equivalent IAM/cryptography-focused credentials are an asset.

Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary