Overview
Skills
Job Details
We are seeking a security engineer to help build our client's next generation Policy Based Access Control (PBAC) solution. This role will reside within the firm s Cyber organization within the Identity & Access Management team. As part of IAM team, you will partner with internal infrastructure teams integrating on-premises/cloud/SaaS solutions with this firmwide PBAC solution.
Responsibilities:
- Collaborate with internal engineering teams to design PBAC (policy-based access control) solution for infrastructure platforms and services.
- Develop, test and deploy PBAC integration for both in-house developed and vendor products following policy-as-code and GitOps methodology.
- Build and maintain home-grown solutions built on Java and C++ supporting existing PBAC implementation
- Create detailed design documentation and present/articulate design decisions to internal governance forums.
Required Skills:
- Bachelor s degree in computer science/engineering, Information security or similar.
- 7+ years of development experience delivering full-stack, RESTful APIs and interactive user interfaces using Java, Python, Spring Boot and hands-on with CI/CD pipelines, containerization tools like docker/podman and deploying applications to Kubernetes (Openshift/AKS).
- Advanced scripting and SQL skills, including database schema design and using languages like PowerShell/Linux shell.
- Understanding of IAM cloud platforms such as those offered by Azure, AWS, Google Cloud Platform. Google Cloud Platform Preferred.
- Ability to manage multiple tasks and deliverables simultaneously in an organized and result oriented manner
Desired Skills (Nice to haves):
- Industry certifications (i.e. CISSP, CISM)
- Experience developing and implementing solutions using secure authentication protocols such as OIDC/ SAML and mTLS
- Savvy troubleshooting skills on a variety of different technologies (SQL, Linux OS utilities, PowerShell).
- Experience with implementation of PBAC solutions for application authorization.
- Experience with Sailpoint Identity Now or IdentityIQ IGA solutions.
- Excellent technical documentation skills.
Additional vendor information
-6+ month contract, likely to be extended
-3 days onsite in Montreal (if candidate is currently local to Montreal, will go onsite for 2nd round interview with client)
-must haves: 7+ yrs development experience (pref on java), advanced scripting w/ powershell or python, understanding of IAM cloud platforms (Google Cloud Platform preferred)