6 дней назад
Senior Identity Management Engineer (IAM)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Identity Management Engineer (IAM): Building and modernising identity infrastructure and access-management automation on ForgeRock Identity and Access Management and PingOne Advanced Identity Cloud with an accent on Zero Trust, federation, provisioning, and enterprise RBAC. Focus on designing resilient IAM platforms, implementing IGA/PAM/PIM integrations, and solving complex SAML, OIDC, OAuth2, and connector lifecycle challenges.
Location: Andover, United Kingdom; hybrid and remote work indicated
Company
provides global payroll and payment solutions designed to support compliant, connected workforces.
What you will do
- Configure, optimise, and operate ForgeRock Identity and Access Management and PingOne Advanced Identity Cloud.
- Define deployment strategy, environment architecture, high availability, resilience, release governance, and IAM CI/CD promotion practices.
- Design authentication, registration, recovery, and federation journeys using SAML, OIDC, and OAuth2.
- Build connector strategies for provisioning, reconciliation, entitlement integration, OpenICF, LiveSync, and lifecycle automation.
- Deliver IGA-driven joiner and leaver automation, enterprise RBAC, least-privilege access, and automated deprovisioning.
- Mentor engineers and collaborate with security, platform, product, and engineering teams on IAM delivery.
Requirements
- Solid hands-on IAM engineering experience, including PingFederate, PingDirectory, and PingAccess.
- Experience migrating legacy identity systems to modern claims-based architectures.
- Direct experience with IGA tools such as SailPoint or Saviynt, plus PAM/PIM solutions.
- Expertise in SAML, OIDC, OAuth2, SCIM, RBAC, ABAC, Zero Trust, LDAP, Active Directory, and Azure AD/Entra ID.
- Proficiency in Python, PowerShell, Bash, Terraform, and Ansible for IAM automation.
- Excellent written and oral English communication skills required.
Nice to have
- Ping Identity, CISSP, CISM, or vendor-specific PAM certifications.
- Experience with Azure AD/Entra ID, AWS, Azure, or GCP workload security.
- Experience deploying IAM solutions in Docker or Kubernetes.
Culture & Benefits
- Values include professionalism, passion, empowerment, innovation, teamwork, ownership, and continuous improvement.
- Vacation allowance, vacation purchase plan, paid volunteering days, and various leave policies.
- WFH allowance, private medical insurance, life assurance, enhanced health plan, and pension scheme.
- Employee assistance, Calm app, eye tests and glasses contribution, Cycle to Work Scheme, and employee referral program.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Identity & Access Management Engineer (Okta)
4 дня назад
Customer Identity Engineer (Okta CIAM)
5 дней назад
IAM Platform Manager (Cybersecurity)
1 день назад
Senior Manager - Identify & Access Management (Cybersecurity)
4 дня назад
Application Security Engineer (AI)
6 дней назад
AI Security Specialist (AI)
72 702 - 95 000GBP