Cloud IAM Platform Engineer

20 hours ago


Toronto, Ontario, Canada Wipro Full time US$118,000 - US$220,000 per year

Job description:

Job Description:

  • Build and maintain GitHub Actions workflows for self-service provisioning of infrastructure, secrets, and IAM roles using Terraform.
  • Develop reusable Terraform modules that encapsulate compliant patterns for deploying GCP, Azure, and on-prem infrastructure (VMs, networks, K8s clusters, etc.).
  • Integrate with HashiCorp Vault to securely inject secrets into pipelines and support runtime retrieval for VMs and services.
  • Support the GitHub repository onboarding process by automating bindings between repositories, identity pools, and service accounts.
  • Enable secure OIDC-based pipeline authorization (e.g., GCP Workload Identity Federation, Azure Federated Credentials).
  • Drive automation for certificate-based authentication for on-prem VMs accessing Vault and other internal services.
  • Collaborate with platform, IAM, and security teams to implement compliant patterns for secrets, identity, and access governance.
  • Design self-service onboarding workflows for developers and application teams across environments (EDP-GT, EDP-XL, TD Universe).
  • Contribute to internal documentation and Confluence living strategies to ensure transparency and onboarding clarity.

Required Technical Skills:

  • Build and maintain GitHub Actions workflows for self-service provisioning of infrastructure, secrets, and IAM roles using Terraform.
  • Develop reusable Terraform modules that encapsulate compliant patterns for deploying GCP, Azure, and on-prem infrastructure (VMs, networks, K8s clusters, etc.).
  • Support the GitHub repository onboarding process by automating bindings between repositories, identity pools, and service accounts.
  • Enable secure OIDC-based pipeline authorization (e.g., GCP Workload Identity Federation, Azure Federated Credentials).
  • Drive automation for certificate-based authentication for on-prem VMs accessing Vault and other internal services.
  • Collaborate with platform, IAM, and security teams to implement compliant patterns for secrets, identity, and access governance.
  • Design self-service onboarding workflows for developers and application teams across environments (EDP-GT, EDP-XL, TD Universe).
  • Contribute to internal documentation and Confluence living strategies to ensure transparency and onboarding clarity.

Experience & Education:

  • Undergraduate degree or Technical Certificate (Graduate degree preferred)
  • Experience in DevOps, SRE, or Platform Engineering roles
  • Experienced with Terraform (including module design, state management, and CI integration)
  • Proficiency with GitHub Actions for CI/CD pipelines and automation workflows
  • Deep knowledge of cloud IAM models (especially GCP Workload Identity Federation and Azure Entra ID)
  • Understanding of cert-based authentication, secure software supply chain, and compliance automation
  • Familiarity with Kubernetes, container-based deployments, and cloud-native network/security controls
  • Comfortable working in multi-cloud environments (Azure, GCP) and hybrid setups (VMC2, on-prem)
  • Strong scripting skills (e.g., Bash, Python, or Go)

Experience: 5-8 Years

.

Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention.


  • IAM Engineer

    2 weeks ago


    Toronto, Ontario, Canada Smart IT Frame LLC Full time $120,000 - $180,000 per year

    Dear candidates,GreetingsWe have a contract role with one of our clients. Kindly find the below details and let me know if you are interested.Role: PingFederate EngineerLocation: Toronto, ONType: ContractIn this role, you will:· Design, implement, and maintain integrations with identity platforms such as PingFederate, Entra ID, and Azure Identity tools.·...

  • Cloud Engineer

    1 day ago


    Toronto, Ontario, Canada Spait Infotech Private Limited Full time

    Job Title: Cloud EngineerJob SummaryThe Cloud Engineer is responsible for designing, implementing, and maintaining cloud infrastructure to ensure scalability, security, and high availability. This role involves deploying and managing applications in the cloud, automating infrastructure, and collaborating with development, security, and operations teams to...


  • Toronto, Ontario, Canada S&P Global Full time US$125,000 - US$210,000 per year

    Director Cloud Engineering – Security & IAMThe Team: S&P Dow Jones Indices is seeking a Director, Cloud Engineering to join our Infrastructure Engineering team as a pivotal member, responsible for managing Identity and Access Management across Cloud and co-located infrastructure. This role demands a seasoned engineer who excels in both independent work and...

  • GCP Cloud Engineer

    1 day ago


    Toronto, Ontario, Canada Apexon Full time $120,000 - $180,000 per year

    Apexon is a digital-first technology services firm backed by Goldman Sachs Asset Management and Everstone Capital. It specializes in accelerating business transformation and delivering human-centric digital experiences. Apexon provides solutions in areas such as digital experience, analytics, AI, and cloud technologies. Additionally, it is recognized as a...


  • Toronto, Ontario, Canada Nets-international Communication Full time $66,171 - $153,517 per year

    Job OverviewThe Cybersecurity Engineer (PAM / IAM / Cloud Security) is responsible for implementing, managing, and securing identity and access systems across on-premises and cloud environments. This role ensures that privileged accounts, user access, and cloud resources are properly secured, monitored, and compliant with organizational policies and...

  • IAM Engineer I

    7 days ago


    Toronto, Ontario, Canada TD Full time $76,800 - $115,200 per year

    Work Location:Toronto, Ontario, Canada*Hours:*37.5*Line Of Business:*Technology Solutions*Pay Details:*$76,800 - $115,200 CADThis role is eligible for a discretionary variable compensation award that considers business and individual performance.TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities...


  • Toronto, Ontario, Canada League Full time $90,000 - $120,000 per year

    About LeagueFounded in 2014, League is the leading healthcare consumer experience (CX) platform, powered by artificial intelligence (AI), reaching more than 63 million people around the world and delivering the highest level of personalization in the industry. Payers, providers, and consumer health partners build on League's platform to deliver...


  • Toronto, Ontario, Canada Nue Careers Full time $120,000 - $180,000 per year

    Why you'll love this NUE opportunityAt , we're on a mission to revolutionize revenue operations for modern businesses.We're looking for a Platform Engineer who's passionate about building and scaling systems that drive meaningful business outcomes.In this role, you'll take ownership of the cloud infrastructure on AWS/k8s, Salesforce Platform Tooling & most...


  • Toronto, Ontario, Canada Nue Full time $120,000 - $180,000 per year

    Why you'll love this NUE opportunityAt, we're on a mission to revolutionize revenue operations for modern businesses.We're looking for aPlatform Engineerwho's passionate about building and scaling systems that drive meaningful business outcomes.In this role, you'll take ownership of the cloud infrastructure onAWS/k8s, Salesforce Platform Tooling& most...


  • Toronto, Ontario, Canada Epsilon Solutions Ltd. Full time $80,000 - $120,000 per year

    Job Role: Cloud Platform EngineeringLocation: Toronto, Ontario, CanadaJob Type: ContractJob Description:Must have -Azure cloud platform admin experience, creating resources using Terraform, network configuration, creating Azure instances etcPython, PySpark, SQL, ADF, Databricks, Fabrics, Function apps, webappsDatabricks admin and developer experience, power...