Date Posted: 08/06/2026
Req ID: 49685
Faculty/Division: VP-People, Finance & Digital Services
Department: Information Security
Campus: St. George (Downtown Toronto)
Existing Vacancy: Yes
Description:Position Summary:As part of Chief Information Security & Digital Trust Officer (CISDTO) leadership team, the Director, Identity and Access Management (IAM) provides strategic and operational leadership for the University's enterprise identity services. The Director is accountable for the vision, architecture, delivery, and continuous improvement of IAM capabilities serving the entire U of T community across three campuses.
The Director leads a multi-disciplinary team organized across capability-based domains encompassing Identity Governance and Administration (IGA), Authentication and Access Management, Privileged Access Management (PAM), Directory Services, and IAM Operations. The portfolio includes enterprise platforms including but not limited to SailPoint, CyberArk, Microsoft Entra ID, and Active Directory, delivered within a complex, federated university environment.
The Director serves as the University's strategic leader and senior subject matter authority on identity and access management, providing expert guidance to the CISDTO, ITS leadership, and academic and administrative stakeholders across the tri-campus.
The Director will advance the University's digital trust principles and identity trust framework, ensuring identity underpins UofT's security posture and supports robust onboarding and access practices, including the use of modern authentication, passkeys, and digital credential solutions.
Qualifications Required:Education:- University degree in Computer Science, Information Technology, Cybersecurity, or a related discipline, or an equivalent combination of education and progressively responsible experience
- Professional certifications: CISSP, CISM, or equivalent
Experience:- Minimum 15 years of progressively responsible experience in enterprise IT or cybersecurity, of which: 7+ years in senior IAM roles with demonstrated ownership of enterprise identity platforms at significant organizational scale and 5+ years in a leadership role with direct accountability for team performance, budget, and organizational outcomes in a complex environment.
- Demonstrated experience delivering complex, multi-year IAM programs; higher education or large public sector experience is a strong asset
- Deep hands-on experience with enterprise IAM platforms including SailPoint (IGA), CyberArk (PAM), Microsoft Entra ID / Azure AD, Active Directory, and federation standards (SAML/OIDC/Shibboleth)
- Proven experience with IAM governance frameworks, access certification programs, RBAC/ABAC, and identity lifecycle automation at scale
- Experience leading organizational design, classification reviews, and workforce planning in a unionized environment is an asset
- Demonstrated experience with Zero Trust architecture principles and their application to enterprise identity strategy
Skills:- Strategic thinking: ability to translate complex identity and security requirements into executable roadmaps and communicate persuasively to senior leaders and non-technical stakeholders
- Technical depth: strong architectural understanding across IAM domains; able to provide credible technical direction to specialist teams
- Leadership: demonstrated ability to build, develop, and retain high-performing technical teams across multiple capability areas
- Stakeholder management: proven ability to build collaborative relationships across a large, decentralized institution and influence without direct authority
- Communication: excellent written and oral communication skills; able to produce concise executive briefings and detailed technical documentation
- Familiarity with digital identity trust concepts including identity assurance, risk-based authentication, and privacy-by-design principles
Other:- Knowledge of the higher education technology landscape including federated identity (InCommon/CAF) and research computing access requirements
- Familiarity with applicable privacy legislation (FIPPA, MFIPPA, PHIPA) and their implications for identity data management
- Strong analytical and problem-solving skills with the ability to navigate complex organizational situations with sound judgment and discretion
Please note: The successful candidate will be required to complete pre-employment background screening, which will include criminal record, credit checks, reference verification and social media screening.
Closing Date: 09/14/2026, 11:59PM ET
Employee Group: Salaried
Personnel Subarea:PM
Appointment Type: Budget - Continuing
Schedule: Full-Time
Pay Scale Group & Hiring Zone: PM 7 -- Hiring Zone: $145,219 - $169,423 -- Broadband Salary Range: $145,219 - $242,032
Job Category: Information Technology (IT)