Role: Senior Business Analyst – Identity & Access Management (IAM) / MFA Enablement
Type: 1 Year Contract (Hybrid 1-2 days a week on-site)
Location: One York, Toronto
Job Summary
We are seeking an experienced Senior Business Analyst to support enterprise security and identity management initiatives, with a focus on Multi-Factor Authentication (MFA) enablement, Identity and Access Management (IAM), and security governance. The successful candidate will work closely with business stakeholders, application owners, security teams, and technical architects to assess applications, define requirements, manage risks, and support the implementation of secure access management solutions across the organization.
This role requires a strong combination of business analysis expertise, cybersecurity knowledge, stakeholder engagement, and project delivery experience. The ideal candidate can effectively translate complex technical concepts into business-focused recommendations and drive successful security transformation initiatives.
Key Responsibilities
- Lead application assessments and readiness reviews for MFA and identity management initiatives.
- Gather, analyze, and document business, technical, and security requirements.
- Review and validate application inventories, ownership details, and access management requirements.
- Facilitate workshops and meetings with business stakeholders, application owners, architects, and security teams.
- Develop implementation plans, identify dependencies, and manage project timelines.
- Analyze risks, exceptions, and remediation requirements, ensuring appropriate governance processes are followed.
- Track project deliverables, action items, issues, and risks through completion.
- Create dashboards, reports, presentations, and executive-level status updates.
- Perform data analysis to support decision-making and provide actionable recommendations.
- Support the implementation and transition of IAM and MFA governance processes into operational teams.
- Collaborate with cross-functional teams to improve security controls and compliance practices.
- Contribute to continuous process improvement initiatives related to identity and access management.
Required Qualifications
- 7+ years of experience as a Business Analyst, IAM Analyst, Security Analyst, Technology Risk Analyst, or related role.
- Strong understanding of Identity and Access Management (IAM) concepts and authentication technologies.
- Knowledge of security protocols and standards including:
Multi-Factor Authentication (MFA)
Single Sign-On (SSO)
Security Assertion Markup Language (SAML)
OpenID Connect (OIDC)
OAuth
Active Directory and directory services
- Experience supporting enterprise IAM, cybersecurity, or security transformation programs.
- Strong requirements gathering, business process analysis, and documentation skills.
- Advanced data analysis and reporting capabilities.
- Proficiency in Microsoft Excel, including data analysis, pivot tables, formulas, and data reconciliation.
- Experience building dashboards, metrics, and executive-level reporting.
- Strong stakeholder management, facilitation, and communication skills.
- Ability to translate technical concepts into clear business language.
- Excellent problem-solving, negotiation, and organizational skills.
Preferred Qualifications
- Experience with IAM and security platforms such as Entra ID, Okta, CyberArk, or similar solutions.
- Knowledge of security governance frameworks, industry standards, and compliance requirements.
- Experience using tools such as ServiceNow, Power BI, SharePoint, Azure DevOps, Jira, or equivalent platforms.
- Professional certifications such as CBAP, CISM, CISSP, CISA, or related credentials.
- Experience working within large enterprise or regulated environments, including financial services, insurance, healthcare, or government sectors.
- Familiarity with risk management, security governance, and access control frameworks.