Senior Staff Engineer, PAM and AD

Posted 6 Days Ago
Be an Early Applicant
Toronto, ON
Hybrid
Expert/Leader
Fintech • Payments • Financial Services
The Role
The PAM Engineer will design and manage PAM solutions, integrate with Active Directory, enforce security policies, and mentor junior staff. Responsibility includes monitoring access attempts and collaborating with cybersecurity teams to enhance overall security posture.
Summary Generated by Built In

Join a Challenger


Being a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing things. If you’re not afraid of taking on big challenges and redefining the future, you belong with us. You’ll get to work with people who will encourage you to reach new heights. We like to keep things fun, ask questions and learn together.

 

We are a big (and growing!) family. Overall we serve more than 670,000 people across Canada through Equitable Bank, Canada's Challenger Bank™, and have been around for more than 50 years. Equitable Bank's wholly-owned subsidiary, Concentra Bank, supports credit unions across Canada that serve more than six million members. Together we have over $125 billion in combined assets under management and administration, with a clear mandate to drive change in Canadian banking to enrich people's lives. Our customers have named our EQ Bank digital platform (eqbank.ca) one of the top banks in Canada on the Forbes World's Best Banks list since 2021. 

 



The Work


This position is a senior-level role requiring at least 10 years of work experience. The Privileged Access Management (PAM) Engineer is responsible for designing, implementing, and administering EQ Bank’s PAM solutions, with a primary focus on integrating PAM capabilities with Active Directory (AD) and Microsoft Entra ID (formerly Azure AD). This role is crucial in securing privileged accounts, implementing least-privilege access, and enhancing the organization’s security posture across hybrid environments. Additionally, the PAM Engineer will mentor intermediate and junior staff, helping them become more knowledgeable and effective in their roles.

The Core Responsibilities!

  • Design, implement, and manage PAM solutions to secure privileged accounts across on-premises and cloud environments.
  • Integrate PAM systems with AD, Entra ID, and other identity sources for seamless authentication and access management.
  • Develop and enforce least-privilege access policies and ensure proper segregation of duties. 
  • Configure and manage privileged access workflows for user provisioning, deprovisioning, and access requests.
  • Monitor and audit privileged sessions to detect and respond to unauthorized access attempts.
  • Collaborate with cybersecurity teams to align PAM practices with the organization’s overall security strategy.
  • Conduct regular health checks and maintenance of PAM systems to ensure high availability and performance.
  • Implement and maintain Multi-Factor Authentication (MFA) policies for privileged accounts.
  • Develop and maintain detailed documentation for PAM processes, configurations, and policies.
  • Work with the IT team to ensure secure remote access for privileged users.
  • Lead PAM-related projects, including upgrades, migrations, and integration with other security tools.

Let's Talk About!

  • Minimum of 10 years of experience in an IT support and/or engineering role for corporate applications.
  • Strong knowledge of Privileged Access Management (PAM) solutions, such as Hashicorp’s Vault/Boundary, CyberArk or BeyondTrust.
  • Deep understanding of Active Directory and Microsoft Entra ID, including hybrid identity integration.
  • Familiarity with Multi-Factor Authentication (MFA) and conditional access policies for privileged accounts.
  • Proficiency in scripting languages, such as PowerShell and/or Power Automate for automating PAM tasks and integrations.
  • Knowledge of identity governance principles, including least privilege and Role-Based Access Control (RBAC).
  • Experience with PAM-related protocols and technologies, such as RDP, SSH, and VPN.
  • Ability to educate and influence non-technical stakeholders on PAM best practices.
  • High attention to detail and ability to adhere to strict security protocols.
  • Ability to work effectively within a team and independently as required.

What we offer [For full-time permanent roles]

 

💰 Competitive discretionary bonus 

✨ Market leading RRSP match program

🩺  Medical, dental, vision, life, and disability benefits

📝  Employee Share Purchase Plan

👶🏽 Maternity/Parental top-up while you care for your little one

🏝 Generous vacation policy and personal days

🖥  Virtual events to connect with your fellow colleagues

🎓  Annual professional development allowance and a comprehensive Career Development program

💛  A fulfilling opportunity to join one of the top FinTechs and help create a new kind of banking experience


  

Equitable Bank is deeply committed to inclusion. Our organization is stronger and our employees thrive when we honour and celebrate everyone’s diverse experiences and perspectives. In tandem with that commitment, we support and encourage our staff to grow not just in their career path, but personally as well. 


We commit to providing a barrier-free recruitment process and work environment for all applicants. Please let us know of any accommodations needed so that you can bring your best self to the application process and beyond. All candidates considered for hire must successfully pass a criminal background check and credit check to qualify for hire. While we appreciate your interest in applying, an Equitable recruiter will only contact leading candidates whose skills and qualifications closely match the requirements of the position.

 

We can’t wait to get to know you! 

Top Skills

Active Directory
Beyondtrust
Cyberark
Hashicorp Vault
Microsoft Entra Id
Multi-Factor Authentication (Mfa)
Power Automate
Powershell
Privileged Access Management (Pam)
Rdp
Ssh
Vpn
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Toronto, Ontario
1,529 Employees
On-site Workplace
Year Founded: 1970

What We Do

MakeBank on everyday banking: Earn high interest on every dollar Say no to fees No minimum balances Powered by Equitable Bank, a Schedule I Canadian Bank EQB Inc. (formerly Equitable Group Inc.) trades on the Toronto Stock Exchange (TSX: EQB and EQB.PR.C), directly serves over 607,000 Canadians through its wholly owned subsidiary Equitable Bank, Canada's Challenger Bank™, and serves over 200 Canadian credit unions that serve over 6 million of their members with products and services. Equitable Bank has grown to become Canada's 7th largest independent Schedule I bank with over a $119 billion in assets under management and assets under administration, and a clear mandate to drive real change in Canadian banking to enrich people's lives. At Equitable Bank, we are as invested in our employees as we are in our business. That’s why we are consistently recognized as one of Canada's Top Employers – a rating that comes from our 1,800 employees. Equitable Bank’s inclusive, welcoming, and pride-inducing workplace earned it the honour of being recognized as one of the top 50 organizations on the 2023 list of Canada’s Best Workplaces™. Founded over 50 years ago, Equitable Bank provides diversified personal and commercial banking, and through its EQ Bank platform (eqbank.ca), which has been named #1 Bank in Canada for three consecutive years on the Forbes World's Best Banks list for 2021, 2022, and 2023. Equitable Bank website: www.equitablebank.ca EQ Bank website: www.eqbank.ca Specialties Lending, Mortgages, Residential Lending, Commercial Lending, Reverse mortgages, Insurance lending, Equipment leasing , Credit Union, Trust, and Funds Management

Similar Jobs

Toast Logo Toast

Software Engineer II, Android (FSR)

Cloud • Fintech • Food • Information Technology • Software • Hospitality
Toronto, ON, CAN
5000 Employees
88K-141K Annually

CrowdStrike Logo CrowdStrike

Manager, Engineering - Cloud (Remote, CAN)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote
Hybrid
6 Locations
10000 Employees
150K-225K Annually

General Motors Logo General Motors

Senior System Test Specialist - Propulsion Thermal Management

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Hybrid
Markham, ON, CAN
165000 Employees

CrowdStrike Logo CrowdStrike

Engineering Manager - NGSIEM (Remote, CAN)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote
Hybrid
6 Locations
10000 Employees
150K-225K Annually

Similar Companies Hiring

Bectran, Inc Thumbnail
Software • Machine Learning • Information Technology • Fintech • Automation • Artificial Intelligence
Schaumburg, IL
51 Employees
Energy CX Thumbnail
Utilities • Professional Services • Greentech • Financial Services • Energy • Consulting • Business Intelligence
Chicago, IL
55 Employees
MassMutual India Thumbnail
Insurance • Information Technology • Fintech • Financial Services • Big Data
Hyderabad, Telangana

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account