Manager, Identity

1 week ago

Toronto ON, Toronto Census Division, ON; Ontario, Canada GreenShield Full-time

GreenShield is a proudly Canadian, national non-profit health care and insurance organization, driven by our mission of Better Health for All. We believe health care is a right, not a privilege, and we are committed to improving health outcomes, advancing health equity, and building a future where every Canadian can reach their full health and well-being potential.

Through our unique integrated payer-provider ("payvider") model, we offer insurance, administer benefits, and pay claims as a ‘payer’ while offering health care services such as mental health, pharmacy, telemedicine, and chronic disease management as a ‘provider’. As a non-profit social enterprise without shareholders, we reinvest our excess earnings to directly support underserved communities. Through GreenShield Cares, we positively impacted the health and well-being of over one million Canadians between 2020 and 2025. What’s driving us now is the commitment to measurably impact an additional three million Canadians by 2030 – across mental health, essential medicines, and chronic disease management – through scalable initiatives that deliver meaningful change in pursuit of our mission of Better Health for All.

At GreenShield, our culture is where purpose meets passion and performance. Our teams work as one to deliver meaningful, measurable impact for the people and communities we serve.

THE ROLE IN A NUTSHELL

Lead and manage the Identity and Access Management (IAM) team to ensure secure and efficient operations. Oversee IAM strategy, operations, technical implementations, and align IAM initiatives with enterprise goals.

Responsibilities:

  • Responsible for developing and executing a 3-year IAM strategy.
  • Provide IAM related project support through direct participation and collaboration with all Security and IT teams as appropriate.
  • Work with all business units to regularly develop, review, and integrate business roles with access groups and permissions in applications.
  • Provide regular operational and trending reports on tickets and recommendations.
  • Ability to leverage existing ITSM system to manage requests efficiently with the team
  • Perform root cause analysis and recommendations for process and IAM technology improvement, ensuring documentation of team processes and procedures
  • Responsible for IAM-related escalations and resolutions (onboarding, offboarding, access requests).
  • Working with manager and CISO to align IAM strategy to enterprise strategy.
  • Strong working knowledge with IAM technologies (Saviynt, SailPoint, Okta, Auth0, Microsoft Azure AD, OIM).
  • Experience with cloud IAM solutions (Azure, GCP, AWS)
  • Enforce IAM policies and compliance with regulatory requirements.
  • Adherence to IAM best practices, including segregation of duties, least privilege, functional ID management, privileged account management, and provisioning.
  • Support Information Security Governance team in regular access reviews and audits.
  • Strong written and verbal communication skills.
  • Develop and present IAM and information security status to senior management.
  • Responsible for adherence and management of IAM related OKRs and SLAs.
  • Responsible for monitoring, managing, and forecasting resource load vs capacity.
  • Train and mentor IAM team members. Provide regular coaching via ad-hoc engagements and established one-to-ones. Develop suitable succession plans.
  • Collaborate with IT and security teams to ensure seamless integration of IAM solutions with user experience as a focus.
  • Support IAM tool lifecycle (procurement, testing, implementation, licensing)

WHO WE'RE LOOKING FOR

  • Bachelor's degree or diploma in cybersecurity, IT management, technology, computer science.
  • Preferred certifications: CISSP, CISA, CISM, CIAM.
  • Experience with IAM technologies (Saviynt, SailPoint, Okta, Auth0, Microsoft Azure AD, OIM).
  • Strong leadership and management skills.
  • Knowledge of industry regulatory and compliance requirements (OSFI, PCI, ISO27001, SOC2, NIST-CSF, CSA)
  • Strong technical background in Microsoft Active Directory, File and Operating Systems
  • Excellent communication and presentation skills.
  • Ability to perform root cause analysis and provide recommendations.
  • Experience in developing and executing IAM strategies.

NICE TO HAVE

  • Knowledge of scripting languages (Python, PowerShell).
  • Familiarity with Zero Trust architecture.
  • Security Operations and Security Governance background.
  • Prior management experience with an information technology access provisioning team.
  • Understanding of web proxy technologies (ZScaler)
  • Folder Access monitoring and