×
Register Here to Apply for Jobs or Post Jobs. X

Identity Specialist II (Identity and Access Management - IAM Engineer II

Job in Richmond, BC, Canada
Listing for: WorkSafeBC
Full Time position
Listed on 2026-08-16
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Position: Identity Specialist II (Identity and Access Management - IAM Engineer II)
Overview
Do you want to play a key role in securing identity for thousands of users across cutting-edge CIAM and IGA platforms? As an Identity Specialist II, you'll design and operate modern identity solutions using Forge Rock (Ping Identity), SailPoint, and Microsoft Entra , directly influencing how secure access is delivered across the organization This role spans both Customer Identity (CIAM) and Workforce Identity (IGA) with a strong focus on authentication, authorization, user journeys, lifecycle management, and access governance.

In this role, you'll work under the direction of the Manager, Cybersecurity Architecture & Compliance, to analyze, design, implement and support new and existing CIAM and IGA platforms. You'll act as a technical consultant to project teams, defining and evaluating new requirements, propose and implement solutions. Additionally, you'll address operational troubleshooting and pursue enhancements and improvements to existing CIAM, IGA and Azure SSO implementations.

This role is instrumental in maintaining the security and efficiency of WorkSafeBC's business applications by safeguarding access to confidential data.

How you'll make a difference
As an Identity Specialist II at WorkSafeBC, you'll be using leading-edge technology to help connect British Columbians to healthy and safe workplaces.

Where you'll work
At WorkSafeBC, we offer a hybrid work model that combines working remotely, and in our offices based on the operational needs of the position.

What you'll do
As an Identity Specialist II you will:

Design and implement scalable IAM solutions across CIAM and IGA platforms (Forge Rock, SailPoint, Entra ).

Partner with project teams to translate business requirements into secure, scalable identity solutions.

Build and integrate identity lifecycle workflows, APIs, and connectors with enterprise and cloud applications.

Enhance authentication and authorization controls, including SSO, MFA, privileged access attestation and Entra conditional access policies.

Perform installation, configuration, troubleshooting, and development of custom APIs, user journeys, and connectors to enhance CIAM services; integrate CIAM solutions with enterprise applications and cloud services.

Monitor and improve identity security posture using metrics such as Microsoft Secure Score and align controls with NIST security principles.

Monitor the Incident Management System, report, investigate, and coordinate problem resolution efforts, ensuring documentation for tracking diagnosis and root cause analysis.

Ensure that WorkSafeBC Identity and Access Management systems meet current and projected business requirements by identifying gaps, researching, evaluating, and making recommendations for the latest developments, participating in business case creation, and coordinating integration with business and technology goals.

Consistently models the appropriate level of organizational behaviours expected of all WorkSafeBC employees: responsive, respectful, fair, collaborative, accountable, and forward thinking.

Is this a good fit for you?
We're looking for someone who have:

Strong problem-solving skills in complex identity and authentication scenarios.

Ability to design secure, scalable identity architectures.

Experience balancing security, usability, and performance in IAM solutions.

Effective collaboration with developers, architects, and business stakeholders.

Continuous learning mindset in evolving identity standards and threats Anticipate, organize, and prioritize work to meet both short- and long-term goals.

Your background and experience:

A bachelor's degree in computer science or a STEM (science, technology, engineering, math) field

A minimum of three years of hands‑on experience implementing IAM solutions, including:

SSO integration (SAML, OAuth, OIDC)

Identity lifecycle and provisioning

Application integration and connector development

The following requirements are preferable but not mandatory.

Technical specialist knowledge of the following: IAM platforms:
Forge Rock, SailPoint, and Microsoft Entra  an equivalent enterprise IAM product

Authentication protocols: OAuth 2.0, OIDC, SAML 2.0

Directory services:
Active…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary