Security Analyst II - IAM at Intact FC | Quebec | Rezi

Security Analyst II - IAM at Intact FC

Security Analyst II - IAM

Intact FC · Quebec

1 weeks ago

Security Analyst II - IAM

Intact FC · Quebec

14 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

We are looking for an IAM Analyst to join our Identity and Access Management team. This role is the analytical backbone of our IAM program, responsible for digging into data, mapping processes, and ensuring identity governance controls are well documented, understood, and functioning as intended. You do not need to be a developer, but must be analytically sharp, detail-oriented, and comfortable working with data and systems. You will be working on the analysis, documentation, and operational functions that keep our IGA program running smoothly across SailPoint IIQ, RBAC, access certifications, and broader IAM processes.

Responsibilities

  • Assist in the analysis, testing, and validation of SailPoint IIQ configurations, workflows, and provisioning logic.
  • Support the onboarding of new applications into SailPoint IIQ by gathering requirements, mapping entitlements, and documenting provisioning rules.
  • Analyze and reconcile identity data discrepancies between SailPoint IIQ and connected systems.
  • Support the maintenance and accuracy of identity lifecycle records across Joiner, Mover, and Leaver (JML) processes.
  • Conduct role mining and entitlement analysis to support the design and cleanup of role based access control (RBAC) models.
  • Analyze user access patterns and entitlement data to identify toxic combinations, outliers, and Separation of Duties (SoD) conflicts.
  • Maintain and regularly review the IT role catalogue.
  • Support the birthright access review process, validating baseline access assignments.
  • Document and maintain role definitions, ownership, and access justifications.
  • Generate and maintain IAM dashboards, metrics, and reports.
  • Assist in gathering and preparing audit evidence for compliance reviews.
  • Track and follow up on remediation actions arising from access reviews, audit findings, or risk assessments.
  • Maintain accurate and up to date process documentation, SOPs, and control narratives for IAM functions.
  • Act as a point of contact for business stakeholders on access-related queries.
  • Work closely with HR, IT, and business teams to ensure identity data quality and process adherence.

Requirements

  • University degree in Computer Science, Information Systems, Cybersecurity, or a related field.
  • 3 plus years of experience in an IAM, IT Security, IT Audit, or Systems Analysis role.
  • Strong ability to analyze large datasets and extract meaningful insights.
  • A structured, detail oriented approach to problem-solving.
  • Working knowledge of Active Directory / Entra ID (Azure AD) user accounts, groups, and permissions.
  • Understanding of core IAM concepts: user provisioning, access reviews, role-based access control, and identity lifecycle management.
  • Awareness of compliance and audit frameworks such as SOX, NIST, or ISO 27001.
  • Familiarity with Separation of Duties (SoD) and the risks associated with excessive or conflicting access.
  • Highly organized, managing multiple workstreams, deadlines, and stakeholders.
  • Clear communicator with ability to write crisp process documents or explain access risks.
  • Curious and proactive, asking the right questions and investigating anomalies.
  • Collaborative team player, working comfortably across engineering, security, audit, HR, and business teams.
  • Strong ethical principles and a genuine respect for data confidentiality and access governance.
  • For candidates located in Quebec, bilingualism is required.
  • Must be eligible to work in Canada.
  • No Canadian work experience required.

Skills

  • SailPoint IIQ
  • RBAC
  • Access certifications
  • Spreadsheets
  • Pivot tables
  • Data tools
  • Active Directory / Entra ID (Azure AD)
  • User provisioning
  • Access reviews
  • Role-based access control
  • Identity lifecycle management
  • SOX
  • NIST
  • ISO 27001
  • Separation of Duties (SoD)
  • SailPoint IdentityIQ
  • SailPoint IdentityNow
  • CompTIA Security+
  • CISM
  • SailPoint certifications

Location

  • Canada

Work Type

  • Hybrid
  • Full-time

Experience Level

  • 3 plus years of experience

Education Level

  • University degree in Computer Science, Information Systems, Cybersecurity, or a related field.

Salary/Compensations

  • 80,700 - 98,700 (based on a 35-hour workweek)

Benefits

  • Flexible work arrangements
  • Hybrid work model
  • Possibility to purchase up to 5 extra days off per year
  • Telemedicine
  • Wellness account
  • Share plan & other savings (up to 12% of salary or more)
  • Annual bonus target (10% with potential payout of up to double the target)
  • Employee Share Purchase Plan (ESPP) with Intact matching 50% of net shares
  • Defined benefit pension plan offering guaranteed income for life

About the Company

  • Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.
  • Our employee promise represents Intact’s commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career.
  • In return, we promise to provide support, opportunities and performance-led financial rewards at a workplace where you can shape the future, win as a team and grow with us.
  • Pay at Intact is about much more than just salary.
  • As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP).
  • Our pension offerings provide flexibility and long-term security for our employees beyond their careers.
  • We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.
  • Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc.
  • The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.
  • Il s'agit d'un nouveau rôle au sein de notre équipe en pleine croissance | This role is a new member of our growing team.
  • We have policies to ensure equal access and participation for people with disabilities, including providing workplace adjustments (accommodations).
  • Please note that Intact does not provide sponsorship or other support for immigration-related matters including but not limited to employer-specific closed work permits.
  • Candidates must be eligible to work in Canada from the anticipated start date and throughout their employment and are solely responsible for maintaining their work eligibility.
  • If you are an employee of Intact or belairdirect, please apply for this role on Internal Career Site.

Equal Opportunity

  • We are an equal opportunity employer.
  • At Intact, our Value of respect is founded on seeing diversity as a strength.
  • We strive to create an accessible workplace where employees feel valued, included and encouraged to share their unique perspectives.
  • We encourage applications from individuals who are members of equity-deserving groups, including but not limited to women, Indigenous peoples, persons with disabilities, Black people, and members of the 2SLGBTQI+ community.
  • As part of Intact’s commitment to reconciliation, we acknowledge that we work, meet and travel across the land currently called Canada, originally inhabited by First Nations, Metis and Inuit people.
  • This history extends through many centuries and continues to evolve today.
  • A copy of applicable policies is available on request.
  • If we can provide a specific adjustment to make the recruitment process more accessible for you, please let us know when we reach out about a job opportunity.
  • We’ll work with you to meet your needs.
  • Learn more about our recruitment process and your candidate journey here.