Strategy Advisor, Identity & Access Management at Questrade Financial Group | CA | Rezi

Strategy Advisor, Identity & Access Management at Questrade Financial Group

Strategy Advisor, Identity & Access Management

Questrade Financial Group · CA

Today

Strategy Advisor, Identity & Access Management

Questrade Financial Group · CA

an hour ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Strategy Advisor, Identity & Access Management role.

Rezi rewrites your resume against Questrade Financial Group's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Strategy Advisor, Identity & Access Management posting at Questrade Financial Group — free, in seconds.

About the Role

Questrade Financial Group (QFG) is seeking a Strategy Advisor, Identity & Access Management to own the enterprise identity strategy across its regulated entities. This role involves setting direction, standards, and roadmaps for workforce identity, privileged access, identity governance, and non-human identity. The ideal candidate will leverage AI to transform customer experiences and empower teams, contributing to a future where AI drives innovation in financial services. This is a strategy and leadership role, with technical execution led by the IAM team.

Responsibilities

  • Owning enterprise identity strategy, standards, roadmap and governance for workforce identity life-cycle, privileged access, IGA and non-human identity across all QFG entities.
  • Delegating hands-on design and engineering execution to the Principal Engineer, IAM, and the IAM team, directing, prioritizing, and being accountable for outcomes.
  • Defining and representing security requirements, standards, and controls for client-facing identity platforms, and contributing to policy engine design.
  • Owning the Enterprise and Client IAM vision, strategy and multi-year roadmap across all QFG entities, aligning with business, technology and security strategy, and securing executive approval and funding.
  • Leading requirements-first selection of identity platforms and vendors, defining control requirements before evaluating products, running trade-off analysis, and recording decisions.
  • Owning the identity control and compliance posture of each QFG regulated entity separately, including entity-scoped design, evidence and reporting.
  • Maintaining the identity dimensions of OSFI Guideline B-13, third-party access expectations under OSFI Guideline B-10, resilience considerations under OSFI Guideline E-21, and CIRO cybersecurity expectations, producing evidence for auditors and regulators.
  • Supporting OSFI supervisory reviews, CIRO examinations, SOC 2 examinations and internal audits for identity domains; driving remediation of identity findings to closure.
  • Setting standards for access, authentication and authorization across the workforce: single sign-on, personal password management, MFA and authentication escalation, risk-based access, and the joiner-mover-leaver lifecycle.
  • Owning privileged access program outcomes: vault coverage, credential rotation, JIT/JEA, session accountability and emergency access, with measurable targets and quarterly reporting.
  • Owning the IGA strategy: authoritative attribute sourcing from HR systems, the role and entitlement model, automated provisioning and deprovisioning, and access certification across all enterprise platforms.
  • Owning governance of non-human identity: service accounts, agentic identities, workload identities, API keys and secrets across on-premises, GCP, AWS, Azure and Microsoft Entra, including inventory, ownership, rotation and least privilege.
  • Owning identity KPI and KRI targets and reporting to executive and Board audiences, using the measurement library maintained by the IAM team.
  • Leading, developing and retaining the IAM team; setting goals aligned to strategy; addressing performance in a timely manner.
  • Forecasting resourcing against the roadmap and presenting evidence-based cases for changes.
  • Acting as the team’s advocate: removing blockers and securing the tools, processes and organizational support the team needs.
  • Building succession depth and cross-training so that no identity capability depends on a single person.
  • Partnering with Enterprise Architecture, cloud and data leadership, DevSecOps, JSOC, Enterprise Fraud, GRC, Privacy, Legal, People & Culture and User Experience; resolving conflicting priorities and negotiating outcomes.
  • Sponsoring identity-related change programs across entities and building adoption through clear communication at executive and technical levels.

Requirements

  • 10+ years of experience in cybersecurity with substantial IAM leadership, including ownership of an enterprise IAM strategy and leadership of multidisciplinary teams in financial services.
  • Proven experience with end-to-end delivery of complex IAM programs — strategy through operationalization — in regulated environments.
  • Deep experience working across privileged access management (Delinea), identity governance and administration (SailPoint), Microsoft Entra and the EMS E5 security stack, and identity threat detection (CrowdStrike Identity Protection).
  • Demonstrated proficiency in Hybrid Identity Architecture: governing complex identity environments spanning Active Directory (AD), Microsoft Entra (formerly Azure AD), and GCP federation.
  • Experience governing non-human identity at scale: service accounts, secrets and workload identity across cloud providers.
  • Working knowledge of OSFI Guidelines B-13, B-10 and E-21, CIRO cybersecurity expectations, PIPEDA and Quebec Law 25, or demonstrated ability to learn a new prudential regime quickly.
  • Experience producing audit-ready evidence and interacting directly with auditors and regulators.
  • Strong experience with budget planning and financial management for technology programs.
  • Executive and Board-level verbal and written communication skills, at a standard suitable for regulator-facing documentation.
  • Strong stakeholder management skills in a matrixed organization with ability to influence without direct authority and hold people to committed dates.
  • Proven leadership experience to develop, coach and retain talent; addressing performance early; building morale, belonging and succession.
  • Comfortable navigating ambiguity, separating relevant trends from hype and making sound decisions with incomplete information.

Skills

  • Identity and Access Management (IAM)
  • Enterprise Identity Strategy
  • Workforce Identity
  • Privileged Access Management (PAM)
  • Identity Governance and Administration (IGA)
  • Non-human Identity
  • Agentic Identity
  • Client Identity Management (CIAM)
  • Hybrid Identity Architecture
  • Active Directory (AD)
  • Microsoft Entra (Azure AD)
  • GCP Federation
  • Cloud Identity Governance
  • Service Accounts
  • Workload Identity
  • API Keys
  • Secrets Management
  • OSFI Guidelines B-13
  • OSFI Guideline B-10
  • OSFI Guideline E-21
  • CIRO Cybersecurity Expectations
  • PIPEDA
  • Quebec Law 25
  • Audit-ready Evidence Production
  • Budget Planning
  • Financial Management
  • Stakeholder Management
  • Talent Development
  • Coaching
  • Performance Management
  • Team Leadership
  • Delinea
  • SailPoint
  • Microsoft Entra
  • EMS E5 Security Stack
  • CrowdStrike Identity Protection
  • Bilingual (English and French)
  • CISSP
  • CISM
  • IDPro CIDPRO

Location

  • Canada

Work Type

  • Hybrid
  • Full-Time Permanent

Experience Level

  • 10+ years of experience in cybersecurity
  • Substantial IAM leadership
  • Leadership of multidisciplinary teams
  • Experience with end-to-end delivery of complex IAM programs
  • Experience governing non-human identity at scale
  • Strong experience with budget planning and financial management
  • Proven leadership experience

Education Level

  • CISSP
  • CISM
  • IDPro CIDPRO
  • Vendor certifications (Delinea, SailPoint, Microsoft Entra)

Salary/Compensations

  • Base salary range: $170,000 - $185,000
  • The final compensation package will be commensurate with the successful candidate's experience, skills, and geographic location (Canada).

Benefits

  • Comprehensive benefits plan
  • Competitive incentive (bonus) program

About the Company

  • Questrade Financial Group (QFG) comprises companies including Questrade, Questbank, Questrade Wealth Management, Community Trust Company, Zolo, and Flexiti, offering a range of financial services such as securities and foreign currency investment, managed investment portfolios, mortgages, and real estate services.
  • QFG utilizes cutting-edge technology to enhance the financial success and security of Canadians.
  • The company combines human-centric collaboration with AI-driven innovation to redefine financial services.
  • QFG fosters a diverse, inclusive, and hybrid workplace where creativity and curiosity are encouraged.
  • The company's team reflects the diversity of the communities it serves, driving innovation in fintech for the benefit of customers and employees.
  • Questrade Financial Group of companies Applicant Tracking System utilizes artificial intelligence (AI) for application screening.

Equal Opportunity

  • At Questrade Financial Group of Companies, with multiple office locations around the world, we are committed to fostering a diverse, inclusive and accessible work environment.
  • This is an environment where individuals are treated with dignity and respect.
  • Here, the unique skills and experience you bring will be valued.
  • You will be supported and motivated, so that you can harness your unlimited potential.
  • Our team reflects the diversity of the communities we serve and operate in.
  • Having a collaborative and diverse team helps us push boundaries to bring the future of fintech into existence—not only for the benefit of our customers, but for those who build their career with us.
  • Candidates selected for an interview will be contacted directly.
  • If you require accommodation during the recruitment/selection process, please let us know and we will work with you to meet your needs.