Director of Product Management, EIAM – Authorization; Global Security
Job in
Halifax, Nova Scotia, Canada
Listing for:
0000050007 Royal Bank of Canada
Full Time
position
Listed on 2026-06-04
Job specializations:
-
IT/Tech
Cybersecurity, Data Security, Information Security
Job Description & How to Apply Below
Position: Director of Product Management, EIAM – Authorization (Global Security)
Job Description
What is the opportunity?The Director of Product Management, EIAM – Authorization, is responsible for defining and executing the product strategy for RBC's Enterprise Identity and Access Management (EIAM) Authorization platform and capabilities. This role encompasses policy-driven access control, entitlement management, decision engines, and real-time authorization enforcement across enterprise applications. The Director will drive innovation in authorization technologies, including AI-enhanced policy engines and Just-In-Time (JIT) access models, to enable secure, compliant, and frictionless access decisions horization is the critical enforcement point where identity decisions translate into business and security outcomes.
This role shapes how RBC makes access decisions in real-time, balances security with business agility, and ensures compliance 'll lead the evolution from static, role-based access to dynamic, risk-informed, AI-enhanced authorization that protects the organization while enabling business velocity.
What will you do?Authorization Platform Product ManagementOwn end-to-end product strategy and roadmap for authorization capabilities: policy engines, entitlement management, access decision frameworks, and real-time enforcementDefine authorization patterns and standards (ABAC, RBAC, attribute-based policy models) that scale across RBC's diverse application ecosystemLead requirements definition for policy information points (PIPs) and policy decision points (PDPs) enabling dynamic, risk-informed access decisionsEstablish authorization best practices, frameworks, and guardrails aligned with Zero Trust Architecture principlesRisk-Informed Authorization StrategyIntegrate identity risk scoring, HR performance data, and critical application sensitivity into real-time authorization decisionsDefine product requirements for JIT access models that shift from standing access to time-limited, context-aware provisioningDevelop authorization policies that evolve based on risk signals (anomalous behavior, policy violations, regulatory triggers)Establish audit, logging, and compliance reporting capabilities for all authorization decisions and policy enforcementPolicy & Compliance ManagementDrive authorization policy harmonization across lines of business, reducing inconsistency and risk exposureEnsure authorization capabilities meet regulatory requirements (FRB, Part 30, OSFI, SOX, GLBA)Define separation of duties (SoD), conflict of interest (CoI), and policy violation detection and remediation workflowsEstablish compliance monitoring and 3
LOD independent review processes for authorization controlsEnterprise Integration & StandardizationDefine integration patterns for authorization across applications, APIs, microservices, and cloud environmentsLead standardization of authorization frameworks to reduce application sprawl and inconsistent access control implementationsDevelop product requirements for API-first authorization services enabling ease of adoption by application teamsCollaborate with architecture and infrastructure teams to embed authorization enforcement at scaleAI-Enhanced AuthorizationDefine requirements for AI/ML capabilities in authorization: intelligent policy recommendations, anomaly detection, access pattern analysisEstablish governance frameworks for AI-driven authorization decisions, including explainability and audit capabilitiesDevelop use cases for Agentic AI in policy optimization, entitlement analytics, and access review automationEnsure responsible AI principles are embedded in authorization product enhancementsCross-Functional LeadershipLead product management working groups with Engineering, Architecture, Security, Compliance, and Application TeamsCommunicate authorization strategy and product roadmap to executive sponsors and business leadersManage relationships with application owners, security teams, and compliance stakeholdersMentor product management team members on authorization strategy and best practicesWhat do you need to succeed?Must-have12+ years in product management or technical leadership, with minimum 7 years in Identity and Access…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: