Moneris Logo

Moneris

Identity and Access Management Specialist

Reposted 13 Days Ago
Be an Early Applicant
In-Office
Toronto, ON, CAN
Senior level
In-Office
Toronto, ON, CAN
Senior level
Design, operationalize, and govern enterprise cryptographic, HSM, PKI, and privileged access systems. Lead secrets and PAM modernization, enable code-signing and automated certificate/secret lifecycles, perform security design reviews, and ensure compliance with PCI standards while supporting audits and remediation. Provide hands-on maintenance and consulting for identity platforms (Entra ID, SailPoint, CyberArk) across cloud and on-prem environments.
The summary above was generated by AI

Your Moneris Career – The Opportunity

We are seeking an experienced IAM Specialist to secure and advance Moneris’s enterprise identity, cryptographic, and privileged access ecosystems. This role blends hands-on engineering with governance, architecture support, and controls alignment across cloud and on-premises environments.

Location: You will be based in our Toronto office, balancing in-office collaboration with remote flexibility.

Reporting Relationship: You will report to the Senior Manager, Identity, Access and Secret Management

Posting Type: Replacement Position

Salary Range: $113,000 - $153,000.

Total compensation may also include variable or discretionary incentive components, including but not limited to bonuses and commissions. Individual job offers are determined by various factors, including experience, education, skills, certifications, and other business needs.

Your Moneris Career – What you’ll do

  • Design, maintain, and operationalize cryptographic architecture across payment, cloud, and IAM ecosystems, including key lifecycle management (generation, rotation, archival, destruction) following dual-control and split-knowledge principles.

  • Integrate and support HSM infrastructure, developing utilities and workflows using HSM SDKs/APIs to enable CKMS functions and secure payment cryptographic operations including P2PE domain components.

  • Govern enterprise PKI platforms (CyberArk ZTPKI) and drive certificate lifecycle automation using Venafi or equivalent tooling.

  • Lead the adoption and governance of enterprise Secrets Hub capabilities, enabling centralized secret synchronization, policy enforcement, and automated secret distribution across multi-cloud platforms.

  • Champion code signing workflows to ensure software authenticity, integrity, and supply chain security across cloud and on-premises environments.

  • Support the modernization and ongoing operations of PAM and secrets management platforms, including CyberArk Privileged Cloud, Secrets Manager, and GitHub Actions integrations.

  • Perform security design reviews, maintain cryptographic patterns and guardrails, and provide crypto consulting to engineering, architecture, and compliance teams.

  • Ensure all cryptographic and access controls align with PCI DSS, PCI PIN, PCI P2PE, and PCI MPoC standards; support regulatory assessments, audit evidence collection, and control remediation activities.

  • Improve IAM operational processes including break-glass workflows, identity incident playbooks, and access remediation, with hands-on maintenance of identity platforms such as Entra ID, SailPoint, and CyberArk.

Your Moneris Career – What you bring

  • 5-7 years of hands-on experience in IAM, cryptography, or security engineering in a complex enterprise environment.

  • Proven experience with HSMs, cryptographic key management, and key ceremony documentation and procedures.

  • Working knowledge of IAM fundamentals: authentication, federation, SSO, directory services, privileged access, and secrets management.

  • Hands-on experience with relevant platforms such as CyberArk, Venafi, and HashiCorp Vault.

  • Solid understanding of PCI security standards (PCI DSS, PIN, P2PE, MPoC) and their operational implications.

  • Experience in payment cryptography or financial services environments is strongly preferred.

  • Familiarity with CI/CD pipelines, automated secrets patterns, and cloud IAM platforms (Azure Entra ID, AWS IAM, or GCP IAM).

  • Strong documentation discipline with the ability to translate technical designs into clear operational procedures and specifications.

  • Certifications such as CISSP, CCSP, PCI ISA, or equivalent IAM/cryptography-focused credentials are an asset.

Find out more about the work perks and benefits you get as a Moneris employee at Moneris.com/careers

#LI-Hybrid

Note: We welcome and encourage applications from Indigenous peoples, people of colour, people with disabilities, people of all genders, sexual orientation and intersectional identities.

AI Disclosure: We may use AI-enabled tools to screen, select, and assess applications. All AI outputs are reviewed and validated by our recruitment team.

We acknowledge that people from equity-deserving groups (including racialized individuals, women, gender diverse individuals, individuals with disabilities, neurodivergent individuals, members of 2SLGBTQIA+ communities and those born outside of Canada) are less likely to apply for jobs unless they feel they meet all the requirements posted. At Moneris, we believe candidates bring experience to their work in many ways. We encourage you to apply and share, in the application form, the transferrable experience you bring, and how this will support your success in this role.

Moneris Toronto, Ontario, CAN Office

3300 Bloor Street West, West Tower, Toronto, Ontario , Canada, M8X 2X2

Similar Jobs

9 Hours Ago
Hybrid
Junior
Junior
Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Validate end-to-end 5G RAN features through system, regression, and stability testing in lab and pre-customer environments. Analyze requirements, perform root-cause debugging using logs and protocol traces, assess KPIs, support customer validation and field trials, and improve test coverage, automation, and verification frameworks while collaborating with cross-functional teams.
Top Skills: 5G NrCi/CdContainersJenkinsKubernetesLinuxmacOSPdcpPhyQxdmRlcShell ScriptingTcp/IpTm500Wireshark
9 Hours Ago
Hybrid
Junior
Junior
Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Develop and maintain high-performance 5G L1/L2 baseband software using C/C++. Collaborate with global teams to design, debug, test, and integrate features, follow industry standards, participate in code and design reviews, and prepare systems for 6G readiness.
Top Skills: 3Gpp4G5G NrCC++Embedded SystemsLow-Level ProgrammingMulti-Core ProgrammingMulti-Threading
9 Hours Ago
In-Office
Expert/Leader
Expert/Leader
Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Lead design and delivery of AI and Generative AI solutions for telecom customers. Translate customer needs into scalable architectures, drive end-to-end implementation, support pre-sales, mentor teams, and provide thought leadership on AI strategy, governance, and deployment across CSP ecosystems.
Top Skills: Ai AgentsAi Orchestration FrameworksAWSAzureGCPGenerative AiLlmsRetrieval-Augmented Generation (Rag)Vector Databases

What you need to know about the Toronto Tech Scene

Although home to some of the biggest names in tech, including Google, Microsoft and Amazon, Toronto has established itself as one of the largest startup ecosystems in the world. And with over 2,000 startups — more than 30 percent of the country's total startups — Toronto continues to attract new businesses. Be it helping entrepreneurs manage their finances, simplifying business operations by automating payroll or assisting pharmaceutical companies in launching new drugs, the city's tech scene is just getting started.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account