Job Description
Overview
PrecisionERP/IT is searching for a Identity Governance Analyst (IGA) / Identity & Access Management (IAM) Consultant to lead the design and implementation of role-based access control (RBAC) across our priority systems. The consultant will drive role discovery, SoD controls, lifecycle automation, and policy-driven governance using our existing identity platforms. This is a 1 year contract starting in March with our partnered client in Saskatoon, SK.
Responsibilities
- RBAC Strategy & Design: Develop an enterprise RBAC strategy, methodology, and governance model aligned to client’s business units, functions, and applications.
- Role engineering: Lead role engineering (business roles, IT roles, entitlements) using data-driven methods; define birthright roles and application roles.
- SoD and controls: Establish SoD policies and conflict matrices, design mitigating controls and exception workflows.
- RBAC and JML automation: Lead implementation of RBAC and JML automation with authoritative sources (HRIS) and target systems.
- Stakeholder engagement: Facilitate workshops with business and application owners; validate role models and SoD with stakeholders.
- Operational readiness: Produce clear runbooks, RACI, operational procedures, and support models for ongoing operations.
- Knowledge transfer: Conduct knowledge transfer, training sessions, and handover to IT and GRC teams.
Qualifications
- 7+ years in Identity & Access Management (IAM) / Identity Governance & Administration (IGA), with 3+ years focused on RBAC implementations.
- CISA, Okta certifications and understanding of SOX controls and compliance frameworks
- Hands-on experience with Okta Identity Governance, ServiceNow and Active Directory.
- Proficient with RBAC frameworks, access certifications, and JML automation at enterprise scale
- Strong grasp of least privilege, policy-based access, and audit/readiness.
- Excellent facilitation, documentation, and stakeholder engagement skills.
- SAP GRC background or complex ERP SoD experience
- Hands-on experience with Okta platform, Active Directory, and ServiceNow, and has led at least one enterprise-scale RBAC rollout in a regulated environment
#J-18808-Ljbffr