Being part of Air Canada is to become part of an iconic Canadian symbol, recently ranked the best Airline in North America. Let your career take flight by joining our diverse and vibrant team at the leading edge of passenger aviation.The Specialist, Cybersecurity (IAM) will be working in a fast paced and innovative environment for one of North America’s top airlines. Air Canada’s cyber security systems are foundational to protecting the data and systems that allow its customers to fly safely. Air Canada is making significant investments to enhance its Identity and Access Management (IAM) capabilities through process maturity, and technology enablement. In this role, the IAM Specialist will support, administer, and continuously enhance Air Canadas Identity Governance and Administration (IGA) capabilities, with a primary focus on SailPoint IdentityIQ (IIQ) as a cornerstone of the organizations security and access strategy. Success in this position requires close collaboration across multiple departments to deliver scalable, resilient, and secure IAM services that support Air Canadas enterprise environment and strengthen internal controls.
Responsibilities:Administer, support and maintain Air Canada’s SailPoint IIQ platform and supporting infrastructure, ensuring stable, secure, and reliable operations across environments.Oversee configuration and ongoing administration of SailPoint IIQ capabilities, including identity lifecycle management, provisioning/deprovisioning, access requests, access certifications, and segregation of duties controls.Support and improve identity lifecycle management (joiner/mover/leaver), including authoritative source processing, downstream provisioning, and deprovisioning workflows to reduce manual effort and improve consistency.Troubleshoot complex IAM-related technical issues, including identity data problems, provisioning failures, connector/integration issues, workflow errors, and performance bottlenecks, and drive issues to resolution.Analyze business processes and workflows, and recommend IAM solutions that promote enterprise security, operational efficiency, and improved user experienceParticipate and contribute to IAM projects and initiatives (e.g. IAM program)Lead efforts to reduce and mitigate Air Canada IAM risksCreate, support, and maintain IAM documentation (IAM processes, Standard Operating Procedures)Enforce compliance of Air Canada IAM policy and proceduresDevelop, manage, measure and report on key service-level metrics showcasing the effectiveness of Air Canada’s IAM practiceDefine and maintain methods and techniques to improve IAM operational processesBe a senior technical resource and subject matter expert on matters related to IAMBuild relationships throughout the organization to enhance and support our focus on safe, secure, and reliable operationsDevelop and communicate IAM objectives; inspire, motivate and train team members to follow and achieve organizational IAM standardsMaintain up-to-date understanding of IAM processes, principles, best practices, and technologies, with a strong emphasis on SailPoint IIQ administration and enterprise IGA operations.Stay current with IAM trends and advancements, participating in continuous improvement initiatives for the organizations identity governance program
QualificationsA relevant University degree/technical certification, and/or relevant experience commensurate to the role5+ years of experience supporting and maturing IAM solutions in large enterprise environments, with at least 3+ years of hands-on SailPoint IdentityIQ (IIQ) administration experience (IIQ 8.x preferred).Expertise in SailPoint IIQ concepts and operations, including directory services integration, identity aggregation and correlation concepts, lifecycle management, provisioning and deprovisioning, approval workflows, and access certificationsExpertise with RBAC (Role-Based Access Control) and SoD (Segregation of Duties) concepts.Experience with enterprise directories and identity sources & targets (Active Directory, Entra ID)Strong understanding of modern authentication and identity concepts (SAML, OAuth, OpenID Connect, SCIM, MFA, SSO).Experience integrating or supporting integrations with cloud and hybrid environments (e.g., Azure/Entra ID, AWS).Experience with programming and scripting used in IAM/IGA customization and automation such as Java, BeanShell, PowerShell, JavaScript, Python, C and .NETStrong understanding of integration patterns commonly used in enterprise IAM (REST/SOAP APIs, secure connectivity, certificates, and basic troubleshooting of integration endpoints).Experience with Microsoft SQL Server (MSSQL) administration and performance troubleshooting (database management concepts, SQL queries, stored procedures, runtime optimizations) in support of enterprise applications, including SailPoint IIQ.Knowledge of compliance, audit, and risk principles relevant to IAM and Identity Governance, particularly in environments where access certifications and strong internal controls are required.Strong interpersonal skills with the ability to effectively present information.Demonstrated experience (5 years +): Incident/Major Incident, ITIL process concepts and execution (Incident Management, Problem Management, and Change Management)In-depth knowledge of cybersecurity control frameworks (NIST, ISO, etc).Demonstrated teamwork and leadership, with the ability to mentor junior staff and work effectively across technology and business teams.Able to communicate effectively and to work collaboratively with all levels of the organization with superior verbal and written skillsDemonstrate punctuality and dependability to support overall team success in a fast-paced environment.Ability to work effectively under pressure and in rapidly changing environments or uncertain conditions.Nice To have:SailPoint professional certification.Familiarity with DevOps pipelines and CI/CD best practices for IAM solution delivery.Experience delivering IAM solutions in hybrid or cloud-native environments.Experience supporting access certification programs in regulated environments, including preparation of audit evidence and support of control testing activities.
Conditions of Employment:Candidates must be eligible to work in the country of interest at the time any offer of employment is made and are responsible for obtaining any required work permits, visas, or other authorizations necessary for employment. Prior to their start date, candidates will also need to provide proof of their eligibility to work in the country of interest.
Linguistic RequirementsBased on equal qualifications, preference will be given to bilingual candidates.
Diversity and InclusionAir Canada is strongly committed to Diversity and Inclusion and aims to create a healthy, accessible and rewarding work environment which highlights employees’ unique contributions to our company’s success.
As an equal opportunity employer, we welcome applications from all to help us build a diverse workforce which reflects the diversity of our customers, and communities, in which we live and serve.Air Canada thanks all candidates for their interest; however only those selected to continue in the process will be contacted.