Director, Identity and Access Management

University of TorontoToronto, ON
CA$145,219 - CA$242,032Onsite

About The Position

As part of the Chief Information Security & Digital Trust Officer (CISDTO) leadership team, the Director, Identity and Access Management (IAM) provides strategic and operational leadership for the University's enterprise identity services. The Director is accountable for the vision, architecture, delivery, and continuous improvement of IAM capabilities serving the entire U of T community across three campuses. The Director leads a multi-disciplinary team organized across capability-based domains encompassing Identity Governance and Administration (IGA), Authentication and Access Management, Privileged Access Management (PAM), Directory Services, and IAM Operations. The portfolio includes enterprise platforms including but not limited to SailPoint, CyberArk, Microsoft Entra ID, and Active Directory, delivered within a complex, federated university environment. The Director serves as the University's strategic leader and senior subject matter authority on identity and access management, providing expert guidance to the CISDTO, ITS leadership, and academic and administrative stakeholders across the tri-campus. The Director will advance the University’s digital trust principles and identity trust framework, ensuring identity underpins UofT’s security posture and supports robust onboarding and access practices, including the use of modern authentication, passkeys, and digital credential solutions.

Requirements

  • University degree in Computer Science, Information Technology, Cybersecurity, or a related discipline, or an equivalent combination of education and progressively responsible experience
  • Professional certifications: CISSP, CISM, or equivalent
  • Minimum 15 years of progressively responsible experience in enterprise IT or cybersecurity
  • 7+ years in senior IAM roles with demonstrated ownership of enterprise identity platforms at significant organizational scale
  • 5+ years in a leadership role with direct accountability for team performance, budget, and organizational outcomes in a complex environment
  • Demonstrated experience delivering complex, multi-year IAM programs
  • Deep hands-on experience with enterprise IAM platforms including SailPoint (IGA), CyberArk (PAM), Microsoft Entra ID / Azure AD, Active Directory, and federation standards (SAML/OIDC/Shibboleth)
  • Proven experience with IAM governance frameworks, access certification programs, RBAC/ABAC, and identity lifecycle automation at scale
  • Demonstrated experience with Zero Trust architecture principles and their application to enterprise identity strategy
  • Strategic thinking: ability to translate complex identity and security requirements into executable roadmaps and communicate persuasively to senior leaders and non-technical stakeholders
  • Technical depth: strong architectural understanding across IAM domains; able to provide credible technical direction to specialist teams
  • Leadership: demonstrated ability to build, develop, and retain high-performing technical teams across multiple capability areas
  • Stakeholder management: proven ability to build collaborative relationships across a large, decentralized institution and influence without direct authority
  • Communication: excellent written and oral communication skills; able to produce concise executive briefings and detailed technical documentation
  • Familiarity with digital identity trust concepts including identity assurance, risk-based authentication, and privacy-by-design principles
  • Knowledge of the higher education technology landscape including federated identity (InCommon/CAF) and research computing access requirements
  • Familiarity with applicable privacy legislation (FIPPA, MFIPPA, PHIPA) and their implications for identity data management
  • Strong analytical and problem-solving skills with the ability to navigate complex organizational situations with sound judgment and discretion

Nice To Haves

  • Higher education or large public sector experience is a strong asset
  • Experience leading organizational design, classification reviews, and workforce planning in a unionized environment is an asset

Responsibilities

  • Provide strategic and operational leadership for the University's enterprise identity services.
  • Accountable for the vision, architecture, delivery, and continuous improvement of IAM capabilities.
  • Lead a multi-disciplinary team across IGA, Authentication and Access Management, PAM, Directory Services, and IAM Operations.
  • Serve as the University's strategic leader and senior subject matter authority on identity and access management.
  • Provide expert guidance to the CISDTO, ITS leadership, and academic and administrative stakeholders.
  • Advance the University’s digital trust principles and identity trust framework.
  • Ensure identity underpins UofT’s security posture and supports robust onboarding and access practices.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service