- Company Name
- EY
- Job Title
- Cybersecurity - Access Management - Senior Consultant (Toronto)
- Job Description
-
**Job title:** Cybersecurity – Access Management – Senior Consultant
**Role Summary:**
Lead design, implementation, and optimization of access‑management (AM) solutions for enterprise clients, primarily using Okta, ForgeRock, and Microsoft Entra ID. Drive secure, scalable access strategies across cloud and on‑premises environments, ensuring alignment with security frameworks, compliance requirements, and Zero‑Trust principles.
**Expections:**
* Deliver end‑to‑end AM projects (design, build, configure, test, and roll‑out).
* Provide subject‑matter expertise to stakeholders, guiding architecture and governance decisions.
* Maintain up‑to‑date knowledge of authentication standards, regulatory benchmarks, and industry best practices.
**Key Responsibilities:**
1. Lead design and implementation of AM solutions using Okta, ForgeRock, Entra ID, and other platforms.
2. Architect Single Sign‑On (SSO), Multi‑Factor Authentication (MFA), Adaptive Access, Federation, and API security.
3. Integrate AM with third‑party and custom applications via SAML, OAuth, OIDC, SCIM.
4. Align access policies, identity federation strategies, and governance models with enterprise objectives.
5. Conduct access reviews, authentication enhancements, and automation for platform improvement.
6. Drive passwordless and context‑aware access initiatives.
7. Perform compliance audits aligned with NIST, ISO, CIS, and similar standards.
8. Create collateral for sales pursuits and support business development activities.
9. Participate in workshops, governance forums, and architecture improvement discussions.
**Required Skills:**
* 3+ years of hands‑on experience with Okta, ForgeRock, Microsoft Entra ID, or equivalent AM tools.
* Proven end‑to‑end AM implementation experience (design, build, configure, test).
* Deep knowledge of MFA, SSO, Federation, RBAC/ABAC, conditional access, and access policy management.
* Proficiency with authentication standards: SAML, OAuth2.0, OIDC, WS‑Federation.
* Experience integrating identity sources (Active Directory, Azure AD, Workday) and target applications (SaaS, custom, legacy).
* Familiarity with Zero‑Trust concepts and application in access enforcement.
* Scripting/development skills (Java, JavaScript, PowerShell, REST APIs) for custom integrations.
* Experience in cloud platforms (Azure, AWS, GCP).
* Strong documentation and communication skills with MS Office.
**Required Education & Certifications:**
* Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent experience).
* Preferred certifications: Okta Certified Professional, ForgeRock Certified Access Management Specialist, Azure Identity and Access Administrator (SC‑300), CISSP, CISM,TOGAF.