Hybrid (3 days onsite) :: Edmonton (First Preference), Second Preference (Calgary)
Experience Required: 10+ Years
We are seeking a highly experienced Access Management / Privileged Access Management (PAM) Engineer with deep, hands-on expertise in Centrify (now Delinea) platforms. The ideal candidate will have a strong background in designing, implementing, and administering identity and access solutions, with a specific focus on integration with Active Directory (AD) and enterprise-wide access governance.
Key Responsibilities
- Design, deploy, configure, and administer Centrify-Delinea solutions (Delinea Platform, Server Suite, Secret Server, Privilege Manager, etc.) across the enterprise environment.
- Lead integration of Centrify-Delinea with Active Directory, including AD-bridging, Zone provisioning, Group Policy management, and Kerberos/LDAP authentication flows.
- Architect and implement Privileged Access Management (PAM) and Identity Access Management (IAM)strategies aligned with organizational security policies and compliance requirements.
- Manage onboarding/offboarding of privileged accounts, service accounts, and system credentials within Centrify-Delinea vaults.
- Configure and maintain role-based access control (RBAC), least-privilege policies, and just-in-time (JIT) access workflows.
- Troubleshoot authentication, authorization, and directory-integration issues across Windows, Linux/Unix, and hybrid environments.
- Perform upgrades, patching, and lifecycle management of the Centrify-Delinea infrastructure.
- Collaborate with Security, IT Operations, and Compliance teams to support audits, risk assessments, and access certification cycles.
- Develop and maintain technical documentation, runbooks, and standard operating procedures (SOPs).
- Provide L3/expert-level support and mentor junior engineers on PAM/IAM best practices.
- Evaluate and recommend enhancements to access management architecture based on emerging threats and industry standards.
Required Skills & Qualifications
- 10+ years of overall IT experience, with a minimum of 5+ years dedicated to Privileged/Identity Access Management.
- Strong hands-on expertise with Centrify / Delinea suite of products (Server Suite, Privilege Manager, Secret Server, Cloud Suite/Platform).
- Proven experience integrating PAM solutions with Active Directory (AD Bridging, Zones, GPOs, trust relationships, Kerberos, LDAP/LDAPS).
- Solid understanding of Access Management concepts: authentication, authorization, SSO, MFA, RBAC, and privileged session management.
- Experience with Windows Server, Linux/Unix system administration in a hybrid identity environment.
- Familiarity with compliance frameworks (SOX, HIPAA, PCI-DSS, ISO 27001) as they relate to access controls and auditing.
- Scripting/automation experience (PowerShell, Bash, Python) for identity workflows is a plus.
- Strong analytical, troubleshooting, and problem-solving skills.
- Excellent communication skills with the ability to work cross-functionally with security, compliance, and infrastructure teams.
Preferred Qualifications
- Delinea/Centrify certification(s).
- Experience with other IAM/PAM tools (CyberArk, BeyondTrust, SailPoint) for comparative or migration projects.
- Knowledge of cloud identity platforms (Azure AD/Entra ID, AWS IAM).
- Prior experience leading PAM implementation or migration projects end-to-end.
#INDCAN