Skip to content

Open nowPosted 4 days ago

Principal Engineer, Identity & Access Management

qfg70 open roles

Where
Israel
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowPrincipal Engineer, Identity & Access Managementqfg · Israel
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on qfg's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.8%7 days
  4. 14.3%14 days
  5. 33.7%30 days
This job: posted 4 days ago

The posting

What’s in it for you as an employee of QFG?

Health & wellbeing resources and programs Paid vacation and personal days for work-life balance Competitive compensation and benefits packages Work-life balance Career growth and development opportunities Opportunities to contribute to community causes Work with diverse team members in an inclusive and collaborative environment

We’re looking for our next Principal Engineer, Identity & Access Management. Could It Be You? The Principal Engineer, Identity & Access Management, is the highest technical expert in the IAM team. The role is to provide technical leadership to the IAM team and overall to the organization on Identity Security best practices, in accordance with Enterprise Standards and applicable regulatory requirements. Regulatory Environment: This role operates within a CIRO-regulated dealer and an OSFI-regulated federal financial institution (FRFI) environment. Candidates must understand that entity segregation between Questrade Inc. and Questbank is a foundational architectural constraint. The Principal Engineer, Identity & Access Management is a champion for putting the customer first and has a deep passion in understanding customer behaviour. They will create lifecycle journeys to improve the customer experience, engagement and retention as we deliver on our promise to help customers keep more of their money as they become more financially successful and secure. Need more details? Keep reading… In this role, responsibilities include but are not limited to:

Provide technical leadership on all Identity Security aspects, including but not exhaustive to Access, Authentication and Authorization (AAA), Privileged Access Management (PAM), Identity Governance & Administration (IGA), Single Sign-On, Authentication Escalation (e.g. phishing-resistant MFA), Risk-based Access, FIDO2, Windows Hello, Platform Credential for macOS, Touch ID for FIDO2, Intune MDM, personal password managers, FIDO2 security keys, biometrics, and passkeys. Collaborate with Business stakeholders in both project and operations to translate Business needs to Identity requirements, tailored to the Organization’s needs and risk tolerance. Design and document solutions meeting the Enterprise use cases and advise on industry and vendor best practices. Liaise with Enterprise Architecture, Infrastructure Architects and Security Architects to build a coherent and integrated environment, based on strong foundations and standards. Implement and operationalize all Identity Security controls. Streamline and improve Identity Security Operations, especially by maximizing the usage of automation for consistent and scalable outputs. Maintain a high quality standard in Operations. Train Organizational Stakeholders/platform administrators on the proper usage of the Identity Security solutions (e.g. PAM, IGA). Oversee the Access Audit process, design check-and-balance controls to ensure data quality, integrity and timeliness. Define and maintain the library Identity Security related KPIs and KRIs which are meaningful to the Organization, collaborate with SMEs and the BI team to automate their generation and oversee their periodical generation.  Security Remediation: Significant engagement in identifying and closing high-severity security findings and supporting the architectural setup of Questbank during the first year of tenure. Entity Governance: Accountability for managing and maintaining identity security controls and compliance postures across the distinct QFG regulated entities.

  So are YOU our next Principal Engineer, Identity & Access Management? You are if you…

Provide technical leadership on all Identity Security aspects, including but not exhaustive to Access, Authentication and Authorization (AAA), Privileged Access Management (PAM), Identity Governance & Administration (IGA), Single Sign-On, Authentication Escalation (e.g. phishing-resistant MFA), Risk-based Access, FIDO2, Windows Hello, Platform Credential for macOS, Touch ID for FIDO2, Intune MDM, personal password managers, FIDO2 security keys, biometrics, and passkeys. Collaborate with Business stakeholders in both project and operations to translate Business needs to Identity requirements, tailored to the Organization’s needs and risk tolerance. Design and document solutions meeting the Enterprise use cases and advise on industry and vendor best practices. Liaise with Enterprise Architecture, Infrastructure Architects and Security Architects to build a coherent and integrated environment, based on strong foundations and standards. Implement and operationalize all Identity Security controls. Streamline and improve Identity Security Operations, especially by maximizing the usage of automation for consistent and scalable outputs. Maintain a high quality standard in Operations. Train Organizational Stakeholders/platform administrators on the proper usage of the Identity Security solutions (e.g. PAM, IGA). Oversee the Access Audit process, design check-and-balance controls to ensure data quality, integrity and timeliness. Define and maintain the library Identity Security related KPIs and KRIs which are meaningful to the Organization, collaborate with SMEs and the BI team to automate their generation and oversee their periodical generation. Security Remediation: Significant engagement in identifying and closing high-severity security findings and supporting the architectural setup of Questbank during the first year of tenure. Entity Governance: Accountability for managing and maintaining identity security controls and compliance postures across the distinct QFG regulated entities.

  Sounds like you? Click below to apply!  

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against qfg's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on qfg's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    qfg's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.