Identity Management Consultant
Senior IAM Engineer (Hands-On)
£90,000 - £110,000
City of London
Core Technology Experience They Expect
Be prepared to clearly demonstrate hands-on experience across:
- Microsoft Active Directory
- Microsoft Entra ID / Azure AD
- Microsoft SSO / Multi-Factor Authentication
- CyberArk
- Delinea / Thycotic
- SailPoint
They are not looking for someone who has touched only one tool. Breadth across the IAM ecosystem is important.
We are seeking an experienced Senior Identity & Access Management (IAM) Engineer to join our team. This is a hands-on technical role requiring deep expertise across the IAM ecosystem, combined with the ability to design, lead, and deliver secure identity solutions.
While leadership and architectural capability are important, this position is best suited to someone who remains actively involved in day-to-day engineering and technical execution.
Key Responsibilities
- Design, implement, and support IAM solutions across the organisation
- Perform hands-on engineering across identity, access, and privileged access systems
- Collaborate with business units and application owners to deliver secure access solutions
- Define and enforce IAM standards, policies, and best practices
- Assess and challenge access requests to ensure alignment with security and risk frameworks
- Support automation and continuous improvement of identity lifecycle processes
Core Technology Requirements
You must demonstrate strong, hands-on experience across multiple IAM technologies, including:
- Microsoft Active Directory
- Microsoft Entra ID (Azure AD)
- Single Sign-On (SSO) and Multi-Factor Authentication (MFA)
- Privileged Access Management tools such as CyberArk and Delinea (Thycotic)
- Identity Governance & Administration (IGA) platforms such as SailPoint
Note: We are looking for breadth of experience across the IAM landscape, not expertise in just a single tool.
Skills & Experience
- Proven hands-on (“keyboard-level”) engineering experience within IAM
- Ability to both design solutions and implement them technically
- Strong stakeholder engagement skills, including working with business and application teams
- Confidence in representing IAM services, standards, and policies
- Ability to assess risk and challenge requests that may introduce security concerns
What You’ll Bring
Identity Lifecycle Automation
- Experience automating joiner, mover, and leaver processes
- Strong knowledge of IGA-driven automation (e.g., SailPoint or similar)
- Understanding of:
- HR-driven identity sources
- Automated provisioning workflows
- Role-based access control (RBAC)
- Approval and governance processes
- Deprovisioning and audit controls
Privileged Access Management (PAM)
- Hands-on implementation experience with tools such as CyberArk or Delinea
- Experience with:
- Account onboarding and vaulting
- Platform configuration and access policies
- Password rotation and credential management
- Troubleshooting and operational support
Authentication & Security
- Experience implementing MFA and SSO solutions
- Strong understanding of:
- Account compromise prevention
- Protection of privileged identities
- Conditional access and risk-based authentication
- Zero Trust security principles
Governance & Risk Management
- Ability to balance business needs with security requirements
- Experience applying:
- Least privilege access
- Risk-based decision making
- IAM governance frameworks
- Confidence to challenge and validate access requests
How You’ll Succeed
- Provide clear, structured communication with a focus on outcomes
- Demonstrate real-world examples of hands-on delivery
- Show how your work reduces risk and improves security posture
If you’re a technically strong IAM professional who enjoys both building and shaping secure identity solutions, we’d love to hear from you.