We are seeking a highly accomplished Senior Identity Access Management Consultant for an enterprise-level contract opportunity based in Toronto. In this role, you will take on a premier architectural and technical leadership capacity within identity governance and administration streams, specializing in the design, construction, and deployment of complex access governance frameworks.
...
As a principal IAM authority, you will bridge the gap between enterprise security standards, regulatory compliance controls, and technical execution across large-scale ecosystems. Operating on-site in Toronto, you will define target-state architecture for identity lifecycles, establish application onboarding patterns, build custom identity orchestration layers, and design automated Segregation of Duties (SoD) frameworks. This role demands an expert who can confidently lead architecture walkthroughs, review end-to-end technical designs, and enforce full audit traceability across hybrid application environments.
Location: Toronto, ON
Assignment Type: Onsite (5 days per week)
Contract Duration: 7 months (with potential for extension)
Advantages
Strategic Enterprise Architecture: Drive end-to-end architectural vision and target-state designs for complex, multi-tenant enterprise identity platforms.
Cutting-Edge Oracle Cloud Stack: Lead architectural deployments leveraging Oracle Access Governance (OAG) core, streaming services, and REST APIs.
Advanced Orchestration & SoD Scope: Build custom Identity Orchestration Layers, React UI intake components, and automated Segregation of Duties (SoD) risk engines.
High-Visibility Executive Leadership: Lead client-facing architecture walkthroughs, approve technical designs, and establish enterprise-wide application onboarding patterns.
Responsibilities
Define target-state architectures for identity data, account structures, entitlement models, request management workflows, approvals, certifications, and reporting pipelines.
Establish standardized application onboarding patterns, identity collections, access collections, and access bundle strategies across enterprise systems.
Build robust approval architectures across manager, business owner, application owner, compliance, fixed approver, and delegated approver models.
Design certification campaign frameworks, defining review scopes, certifier assignments, automated remediation logic, and evidence collection requirements.
Design and construct an Identity Orchestration Layer interfacing with Oracle Access Governance (OAG) to provide intelligent rulemaking, SoD management, and dynamic user hierarchy decisions.
Architect end-to-end provisioning and deprovisioning models, including custom REST connectors, status tracking, and automated reconciliations for non-standard or legacy systems.
Implement enterprise Segregation of Duties (SoD) frameworks featuring automated violation detection, preventive access guardrails, and integration with Oracle Risk Management Cloud (RMC).
Define boundary interfaces between standard platform capabilities, custom React user interfaces, middleware, and downstream target applications to preserve audit controls.
Author and approve functional specifications, technical designs, integration blueprints, data flow diagrams, sequence models, and solution decision records.
Lead client-facing architecture walkthroughs, facilitate design sign-off sessions, and ensure complete audit traceability across the entire access lifecycle.
Qualifications
Core Requirements & Architectural Experience
Identity Governance Tenure: 10+ years of progressive experience in Identity Governance and Administration (IGA), with strong hands-on architecture experience across Oracle Identity Management and Oracle Access Governance.
Oracle Access Governance (OAG) Architecture: 4+ years of dedicated experience architecting and deploying Oracle Access Governance solutions within large-scale enterprise environments (supporting 60,000+ user identities).
Identity Orchestration & API Depth: Strong Java, REST API, and identity orchestration experience building automated workflows, custom REST connectors, and secure React-based intake portals.
SoD & Risk Management: Practical experience implementing enterprise Segregation of Duties (SoD) frameworks, custom risk policies, automated violation remediations, and high-risk entitlement certifications.
Event Streaming & Reporting: Experience designing end-to-end OAG reporting solutions leveraging high-volume event streaming services.
Documentation & Governance: Proven ability to create architectural diagrams, sequence flows, data models, and lead design review boards.
Preferred Assets
Architecture experience with Oracle Identity Governance (OIG), Oracle Identity Manager (OIM), or Oracle IAM suites.
Practical understanding of Oracle EBS or enterprise ERP access structures.
Experience with REST API middleware, Oracle Cloud Infrastructure (OCI), or custom request intake layers.
Prior experience in public sector or large government-scale agency deployments.
Soft Skills & Leadership
Consultative Facilitation: Excellent written and verbal communication skills, with absolute confidence when presenting complex technical architectures to senior leaders and stakeholders.
Analytical Problem Solving: Superior critical thinking, architectural reasoning, and diagnostic capabilities to solve complex integration blocks.
Collaborative Leadership: A detail-oriented, self-motivated leader who operates effectively across multi-disciplinary engineering and business teams.
Summary
If you're interested in the "Senior Identity Access Management Consultant" role based in Toronto, we encourage you to apply online at www.randstad.ca.
Only qualified candidates will be contacted for the next steps. We look forward to hearing from you!
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more
We are seeking a highly accomplished Senior Identity Access Management Consultant for an enterprise-level contract opportunity based in Toronto. In this role, you will take on a premier architectural and technical leadership capacity within identity governance and administration streams, specializing in the design, construction, and deployment of complex access governance frameworks.
As a principal IAM authority, you will bridge the gap between enterprise security standards, regulatory compliance controls, and technical execution across large-scale ecosystems. Operating on-site in Toronto, you will define target-state architecture for identity lifecycles, establish application onboarding patterns, build custom identity orchestration layers, and design automated Segregation of Duties (SoD) frameworks. This role demands an expert who can confidently lead architecture walkthroughs, review end-to-end technical designs, and enforce full audit traceability across hybrid application environments.
Location: Toronto, ON
Assignment Type: Onsite (5 days per week)
Contract Duration: 7 months (with potential for extension)
Advantages
...
Strategic Enterprise Architecture: Drive end-to-end architectural vision and target-state designs for complex, multi-tenant enterprise identity platforms.
Cutting-Edge Oracle Cloud Stack: Lead architectural deployments leveraging Oracle Access Governance (OAG) core, streaming services, and REST APIs.
Advanced Orchestration & SoD Scope: Build custom Identity Orchestration Layers, React UI intake components, and automated Segregation of Duties (SoD) risk engines.
High-Visibility Executive Leadership: Lead client-facing architecture walkthroughs, approve technical designs, and establish enterprise-wide application onboarding patterns.
Responsibilities
Define target-state architectures for identity data, account structures, entitlement models, request management workflows, approvals, certifications, and reporting pipelines.
Establish standardized application onboarding patterns, identity collections, access collections, and access bundle strategies across enterprise systems.
Build robust approval architectures across manager, business owner, application owner, compliance, fixed approver, and delegated approver models.
Design certification campaign frameworks, defining review scopes, certifier assignments, automated remediation logic, and evidence collection requirements.
Design and construct an Identity Orchestration Layer interfacing with Oracle Access Governance (OAG) to provide intelligent rulemaking, SoD management, and dynamic user hierarchy decisions.
Architect end-to-end provisioning and deprovisioning models, including custom REST connectors, status tracking, and automated reconciliations for non-standard or legacy systems.
Implement enterprise Segregation of Duties (SoD) frameworks featuring automated violation detection, preventive access guardrails, and integration with Oracle Risk Management Cloud (RMC).
Define boundary interfaces between standard platform capabilities, custom React user interfaces, middleware, and downstream target applications to preserve audit controls.
Author and approve functional specifications, technical designs, integration blueprints, data flow diagrams, sequence models, and solution decision records.
Lead client-facing architecture walkthroughs, facilitate design sign-off sessions, and ensure complete audit traceability across the entire access lifecycle.
Qualifications
Core Requirements & Architectural Experience
Identity Governance Tenure: 10+ years of progressive experience in Identity Governance and Administration (IGA), with strong hands-on architecture experience across Oracle Identity Management and Oracle Access Governance.
Oracle Access Governance (OAG) Architecture: 4+ years of dedicated experience architecting and deploying Oracle Access Governance solutions within large-scale enterprise environments (supporting 60,000+ user identities).
Identity Orchestration & API Depth: Strong Java, REST API, and identity orchestration experience building automated workflows, custom REST connectors, and secure React-based intake portals.
SoD & Risk Management: Practical experience implementing enterprise Segregation of Duties (SoD) frameworks, custom risk policies, automated violation remediations, and high-risk entitlement certifications.
Event Streaming & Reporting: Experience designing end-to-end OAG reporting solutions leveraging high-volume event streaming services.
Documentation & Governance: Proven ability to create architectural diagrams, sequence flows, data models, and lead design review boards.
Preferred Assets
Architecture experience with Oracle Identity Governance (OIG), Oracle Identity Manager (OIM), or Oracle IAM suites.
Practical understanding of Oracle EBS or enterprise ERP access structures.
Experience with REST API middleware, Oracle Cloud Infrastructure (OCI), or custom request intake layers.
Prior experience in public sector or large government-scale agency deployments.
Soft Skills & Leadership
Consultative Facilitation: Excellent written and verbal communication skills, with absolute confidence when presenting complex technical architectures to senior leaders and stakeholders.
Analytical Problem Solving: Superior critical thinking, architectural reasoning, and diagnostic capabilities to solve complex integration blocks.
Collaborative Leadership: A detail-oriented, self-motivated leader who operates effectively across multi-disciplinary engineering and business teams.
Summary
If you're interested in the "Senior Identity Access Management Consultant" role based in Toronto, we encourage you to apply online at www.randstad.ca.
Only qualified candidates will be contacted for the next steps. We look forward to hearing from you!
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more