Salary range (but not limited to):
118,700 - 145,100
Annual bonus target, based on the base salary, with a potential payout of up to
double the target (subject to personal and company performance):
15%
As part of our commitment to
Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) - with Intact matching 50% of your net shares.
Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.
Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.
About the role
Our growing team is looking for a
Senior Product Owner - PAM: CyberArk & HashiCorp Vault!
Role Overview
As the PAM Senior Product Owner, you will be accountable for the end-to-end lifecycle of entrerpise vaulting technologies. You will bridge the gap between business requirements and technical execution, specifically focusing on IDIRA (formerly know as
CyberArk) for privileged access and
HashiCorp Vault for modern, cloud-native secrets management.
You will define the vision, manage the product backlog, and ensure that security controls are seamlessly integrated into DevOps pipelines and multi-cloud environments (Azure, AWS and GCP).
What you'll do here:
- Define and maintain the multi-year roadmap for PAM and Secrets Management. Align product features with organizational security goals and regulatory compliance (e.g., SOX, HIPAA, GDPR).
- Act as the primary lead for the Agile/Scrum team. Write user stories, define "Definition of Done," and prioritize the backlog based on risk reduction and business value.
- Oversee the expansion of IDIRA (formerly know as CyberArk). Transition legacy manual rotations to automated, policy-based workflows.
- Drive the adoption of HashiCorp Vault for "Secret-as-a-Service." Enable developers to use dynamic secrets, encryption-as-a-service, and automated certificate management.
- Ensure PAM solutions are "Cloud-First." Integrate secrets management into CI/CD pipelines (Jenkins, GitLab, Terraform) and orchestrators (Kubernetes/EKS).
- Work closely with Engineering, and Platform leads to plan and execute releases, upgrades, and platform expansions.
- Define and track KPIs such as "Secret Rotation Coverage," "Privileged Account Discovery," and "Time to Onboard."
- Develops business cases for new products and additional features for existing products.
- Manage the full product lifecycle: ideation, intake, prioritization, delivery, release, and continuous improvement.
- Ensure alignment with IAM, PAM, Zero Trust, and ITDR strategies.
- Collaborate with risk, audit, and compliance teams to ensure regulatory and policy adherence.
Required Technical Qualifications
- Deep understanding of IDIRA PCloud architecture.
- Experience managing HashiCorp Vault (Enterprise or Open Source) at scale, including namespaces, auth methods (AppRole, OIDC), and secret engines.
- Proven experience implementing IAM/PAM in AWS, Azure, or GCP (e.g., IAM Roles, Managed Identities, KMS).
- Strong understanding of secrets management, credential lifecycle, and key management concepts.
What you bring to the table:
- 5+ years of experience as a Product Owner or Product Manager in a technical security environment.
- Strong understanding of the "Least Privilege" principle and Zero Trust architecture.
- Ability to translate complex technical security requirements into clear business outcomes for non-technical executives.
- Exposure to DevSecOps, CI/CD integration, and infrastructure-as-code (e.g., Terraform).
- Strong understanding of resiliency, high availability, and disaster recovery for security platforms.
- Proven experience owning roadmaps, backlogs, and release plans for security or infrastructure platforms.
- Excellent stakeholder management and executive communication skills.
- For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country.
- No Canadian work experience required however must be eligible to work in Canada.
#LI-Hybrid
Il s'agit d'un nouveau rôle au sein de notre équipe en pleine croissance | This role is a new member of our growing team.