Synced from SAP SuccessFactors · Aug 6

Director, Identity and Access Management

University of TorontoToronto, ON, CAPosted Aug 6, 2026
Director of EngineeringExecutive
Apply with one profileSave & get alerts

Mirrored from University of Toronto's own SAP SuccessFactors careers system · refreshed hourly

$145k–$169k
Compensation
168
Other open University of Toronto roles
Aug 6
Posted
SAP SuccessFactors
Applicant system
Job descriptionReq 604998817

Date Posted: 08/06/2026
Req ID: 49685
Faculty/Division: VP-People, Finance & Digital Services
Department: Information Security
Campus: St. George (Downtown Toronto)
Existing Vacancy: Yes

 

Description:

 

Position Summary: 

 

As part of Chief Information Security & Digital Trust Officer (CISDTO) leadership team, the Director, Identity and Access Management (IAM) provides strategic and operational leadership for the University's enterprise identity services. The Director is accountable for the vision, architecture, delivery, and continuous improvement of IAM capabilities serving the entire U of T community across three campuses.

 

The Director leads a multi-disciplinary team organized across capability-based domains encompassing Identity Governance and Administration (IGA), Authentication and Access Management, Privileged Access Management (PAM), Directory Services, and IAM Operations. The portfolio includes enterprise platforms including but not limited to SailPoint, CyberArk, Microsoft Entra ID, and Active Directory, delivered within a complex, federated university environment.

 

The Director serves as the University's strategic leader and senior subject matter authority on identity and access management, providing expert guidance to the CISDTO, ITS leadership, and academic and administrative stakeholders across the tri-campus.

 

The Director will advance the University’s digital trust principles and identity trust framework, ensuring identity underpins UofT’s security posture and supports robust onboarding and access practices, including the use of modern authentication, passkeys, and digital credential solutions.

 

Qualifications Required:

 

Education:

 

  • University degree in Computer Science, Information Technology, Cybersecurity, or a related discipline, or an equivalent combination of education and progressively responsible experience
  • Professional certifications: CISSP, CISM, or equivalent

 

Experience:

 

  • Minimum 15 years of progressively responsible experience in enterprise IT or cybersecurity, of which: 7+ years in senior IAM roles with demonstrated ownership of enterprise identity platforms at significant organizational scale and 5+ years in a leadership role with direct accountability for team performance, budget, and organizational outcomes in a complex environment.
  • Demonstrated experience delivering complex, multi-year IAM programs; higher education or large public sector experience is a strong asset
  • Deep hands-on experience with enterprise IAM platforms including SailPoint (IGA), CyberArk (PAM), Microsoft Entra ID / Azure AD, Active Directory, and federation standards (SAML/OIDC/Shibboleth)
  • Proven experience with IAM governance frameworks, access certification programs, RBAC/ABAC, and identity lifecycle automation at scale
  • Experience leading organizational design, classification reviews, and workforce planning in a unionized environment is an asset
  • Demonstrated experience with Zero Trust architecture principles and their application to enterprise identity strategy

 

Skills:

 

  • Strategic thinking: ability to translate complex identity and security requirements into executable roadmaps and communicate persuasively to senior leaders and non-technical stakeholders
  • Technical depth: strong architectural understanding across IAM domains; able to provide credible technical direction to specialist teams
  • Leadership: demonstrated ability to build, develop, and retain high-performing technical teams across multiple capability areas
  • Stakeholder management: proven ability to build collaborative relationships across a large, decentralized institution and influence without direct authority
  • Communication: excellent written and oral communication skills; able to produce concise executive briefings and detailed technical documentation
  • Familiarity with digital identity  trust concepts including identity assurance, risk-based authentication, and privacy-by-design principles

 

Other:

 

  • Knowledge of the higher education technology landscape including federated identity (InCommon/CAF) and research computing access requirements
  • Familiarity with applicable privacy legislation (FIPPA, MFIPPA, PHIPA) and their implications for identity data management
  • Strong analytical and problem-solving skills with the ability to navigate complex organizational situations with sound judgment and discretion

 

Please note: The successful candidate will be required to complete pre-employment background screening, which will include criminal record, credit checks, reference verification and social media screening.

 

 

Closing Date: 09/14/2026, 11:59PM ET
Employee Group: Salaried
Personnel Subarea:PM
Appointment Type: Budget - Continuing
Schedule: Full-Time
Pay Scale Group & Hiring Zone: PM 7 -- Hiring Zone: $145,219 - $169,423 -- Broadband Salary Range: $145,219 - $242,032
Job Category: Information Technology (IT)

View original posting on SAP SuccessFactors

What applying to University of Toronto usually looks like

Based on publicly available information, candidates applying through successfactors typically begin with an online application and profile creation, followed by an automated confirmation and resume screening process. For an institution like University of Toronto, with a broad range of roles spanning administrative, healthcare, technical, and academic positions, applicants can generally expect the process to include an initial qualifications review, possible skills or competency assessments depending on the role, and may include multiple stages such as phone screenings and interviews with hiring teams or departmental representatives. Communication is often managed through the SuccessFactors candidate portal, where status updates may be tracked, though response times vary by department and position. Candidates are commonly encouraged to ensure their application materials are tailored to the specific job posting and to monitor the portal regularly for updates.

Based on publicly available information. LandEarly does not verify interview process details.

Land this one early - before the req fills.

LandEarly tailors your resume and screening answers to each posting, submits within minutes of a role going live, and tracks every application in one place.

Free to start · No credit card · Cancel anytime

Keep exploring

What this role pays, where else it is open, and how to write the application.

Director, Identity and Access Management
University of Toronto · Toronto, ON, CA
Apply