Identity Access Management Consultant
This job has expired.
The closing date for this job has passed. Please visit our job listings page to explore current opportunities.
View Job ListingsOverview
The Ministry of Public and Business Service Delivery and Procurement is seeking two Senior Identity Access Management (IAM) Consultants to join the Government Services Integration Cluster in Toronto. In this role, you will define and build the target-state architecture for Oracle Access Governance (OAG) across enterprise-scale identity and access management programs. You will lead architectural design, client-facing walkthroughs, and end-to-end governance processes for an environment supporting 60,000+ user identities.
Key Responsibilities
- Define target-state architecture for identity data, account data, entitlement data, request management, approvals, certifications, provisioning, and reporting
- Establish application onboarding patterns for enterprise applications and define identity collection, access collection, and access bundle strategy
- Design and build approval architecture across manager, business owner, application owner, compliance, fixed approver, and delegated approver models
- Define certification campaign architecture including review scope, certifier ownership, remediation behavior, and evidence requirements
- Define the boundary between standard platform capability, custom UI, middleware, identity orchestration layer, and downstream target systems
- Ensure custom UI or external workflow components do not bypass governance, approval, audit, or certification controls
- Build provisioning and deprovisioning architecture, including integration points and status tracking
- Review and approve functional designs, technical designs, integration designs, and testing strategies
- Lead client-facing architecture walkthroughs and facilitate design sign-off discussions with stakeholders
- Design end-to-end access request, approval, fulfillment, review, and lifecycle governance processes
- Implement enterprise Segregation of Duties (SoD) frameworks with custom risk policies, automated violation detection and remediation, and integration with Oracle Risk Management Cloud (RMC)
- Build and secure a React-based user interface integrated with Oracle Access Governance, ensuring user security, context-driven workflows, and auditability
Must-Have Requirements
- 10+ years of experience in Identity Governance and Administration, with strong expertise in Oracle Identity Management and Oracle Access Governance
- 4+ years of hands-on experience deploying Oracle Access Governance at enterprise customers with 60,000+ user identities
- Deep understanding of Oracle Access Governance concepts including identities, accounts, entitlements, roles, permissions, access bundles, request catalogs, approvals, and certifications
- Experience designing and deploying an Identity Orchestration Layer that interfaces with Oracle Access Governance (OAG) for intelligent rule-making, SoD management, and user hierarchy decisions
- Experience with end-to-end design and deployment of an Oracle Access Governance reporting solution leveraging Oracle streaming services
- Strong Java and API expertise supporting complex user lifecycle management operations with Oracle Access Governance
- Experience building and securing a React-based user interface integrated with Oracle Access Governance
- Expert-level development of custom connectors and adapters using Oracle Access Governance Generic REST connectors, including full reconciliation and provisioning for non-standard systems
- Hands-on implementation of Oracle Access Governance APIs for full automation, including programmatic access requests/approvals, policy enforcement, and identity orchestration
- Experience implementing enterprise SoD frameworks with custom risk policies, automated violation detection/remediation, and integration with Oracle Risk Management Cloud (RMC)
- Experience defining application onboarding strategy for complex enterprise systems
- Strong understanding of audit, compliance, access review, and traceability requirements
- Ability to create architecture diagrams, data flow diagrams, sequence diagrams, and solution decision records
- Architecture experience with OAG core, application, and architecture design
Nice-to-Have Skills
- Experience deploying Oracle Access Governance within a government agency and its various ministries and divisions
- Oracle Identity Governance (OIM) or broader Oracle IAM architecture experience
- Oracle EBS or ERP access model experience
- REST API, middleware, OCI, or integration architecture experience
- Experience designing governance solutions involving custom portals or request intake layers
- Knowledge of maintaining audit traceability across request, approval, provisioning, and review workflows
- Prior Ontario Public Service (OPS) or public sector experience
Work Environment
This is a fully onsite role based at 222 Jarvis St., Toronto, five days per week. Candidates must be eligible for a Criminal Record and Judicial Matters Check (CRJMC) security clearance. The engagement supports the Government Services Integration Cluster under the Ministry of Public and Business Service Delivery and Procurement, with 2 openings available at 100% allocation.