optimization of cloud-based identity solutions, including Azure Active Directory, AWS IAM, and other cloud IAM services. Identity Federation & Single Sign-On: Configure and manage identity federation (SAML, OAuth, OpenID) and Single Sign-On (SSO) integrations across multiple cloud applications and third-party systems. Administer Privileged Identity Management (PIM) in Entra. Access Control & Security: Establish and enforce security policies … and redirects. Manage certificate lifecycles. Required Skills and Experience: Minimum of 5 years' experience with Microsoft Azure/Entra ID and services. Expertise in identity federation protocols (SAML, OAuth, OpenIDConnect) and Single Sign-On (SSO) configurations. Experience with Microsoft Active Directory. Experience with Privileged Identity Management, MFA, and Conditional Access Policies. Working knowledge of all aspects of DNS. More ❯
enforce access control, rate limiting, and API lifecycle management. • Implement robust authentication and authorization workflows using IDAM platforms such as Ping Identity, Okta, or Auth0, with support for OAuth2, OIDC, and JWT. • Collaborate with mobile app teams to ensure backend services are optimized for mobile-specific use cases such as performance, caching, and offline access. • Own end-to-end technical More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Xcede
e.g., multiple domains, hybrid environments, B2B/B2C). In-depth understanding of Conditional Access, including policy design, implementation, and troubleshooting. Strong knowledge of MFA, SSO, OAuth, SAML, and OpenID Connect. Experience with Microsoft Entra ID, Microsoft Defender for Identity, and Microsoft Purview is a plus. Familiarity with PowerShell scripting for automation and reporting. For more information, please apply More ❯
example, IAM Authenticator in EKS, GKE Workload Identity, Azure AD/Entra integration). SaaS Application Identity Management Familiarity with Single Sign-On (SSO) protocols (SAML, OAuth 2.0/OIDC) and identity providers (Azure AD, GCDS, AWS IAM) Understanding of SCIM provisioning, user lifecycle workflows (onboarding/offboarding), and entitlement catalogue management for major SaaS (e.g., Office 365) EXPERIENCE: 5+ More ❯
Reading, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
. Strong knowledge of: B2B/B2C collaboration and federation models Active Directory, DNS, DHCP, and Group Policies Experience with AAD Connect, PowerShell , and modern auth protocols (OAuth, SAML, OpenIDConnect). Preferred Extras: Experience with PIM , SaaS provisioning , or identity protection tools. Familiarity with libraries like MSAL/ADAL , and tools like OWIN/Katana . Diagnostic troubleshooting … Privileged Identity Management (PIM) • Microsoft Entra ID authentication libraries such as Azure Active Directory Authentication Library (ADAL), Microsoft Authentication Library (MSAL). • Server-side OAuth protocol libraries such OWIN, OpenIDConnect or Katana. • Diagnostic tools (Netmon, Wireshark, Fiddler) • Troubleshooting skills in Http and basic Networking traces analysis. Additional Technologies (Nice to Have) • Windows Server and Client OS Language Requirements More ❯
grasp of data privacy and security frameworks, including role-based access control (RBAC), encryption at rest and in transit, secure API design, and identity/auth protocols (e.g., OAuth2, OpenID) Outstanding communication and collaboration skills, capable of influencing stakeholders, external partners, and non-technical contributors Understanding of the software development lifecycle in the context of medical or genomic products. More ❯
and implement mitigation strategies. Work with IAM tools such as Okta, Ping Identity, Microsoft Azure AD, ForgeRock, SailPoint, CyberArk, or similar platforms. Manage identity federation protocols like SAML, OAuth, OpenIDConnect, and LDAP. Oversee Privileged Access Management (PAM) implementations. #J-18808-Ljbffr More ❯
web services architecture and implementation. Test-Driven Development: Strong commitment to quality, utilizing TDD methodologies to ensure code reliability and maintainability. Security Practices: Knowledgeable in cybersecurity practices, including OAuth, OpenIDConnect, and secure coding practices. Advanced Database Knowledge: Proficient in SQL and data modelling. SOLID Principles: Proficient in applying SOLID principles for object-oriented programming, ensuring clean, maintainable, and More ❯
Crawley, Sussex, United Kingdom Hybrid / WFH Options
Thales Group
authoring product-focused technical documents such as RFIs, RFPs, etc. An understanding of the concept of Cryptography and Security - ideally including several of the following: PKI, digital signatures, certificates, OpenIDConnect, SAML, FIDO, SmartCard and SmartCard/FIDO Management systems e.g. Verasec CMS. Awareness of Hardware Security Modules is an advantage Other experiences with Identity & Access Management solutions (trust More ❯
Crawley, England, United Kingdom Hybrid / WFH Options
Thales Group
authoring product-focused technical documents such as RFIs, RFPs, etc. An understanding of the concept of Cryptography and Security – ideally including several of the following: PKI, digital signatures, certificates, OpenIDConnect, SAML, FIDO, SmartCard and SmartCard/FIDO Management systems e.g. Verasec CMS. Awareness of Hardware Security Modules is an advantage Other experiences with Identity & Access Management solutions (trust More ❯
identity lifecycle management and security principles. Hands-on experience with Conditional Access, MFA, and SSO, Group Policy, Intune and related technologies. Knowledge of protocols such as SAML, OAuth, and OpenID Connect. Experience with identity governance and administration tools such as SailPoint or CyberArk. Experience of Cloud platforms such as Microsoft Azure, OCI or AWS Proficiency in PowerShell scripting and More ❯
CISSP, OSCP, GWAPT, CEH or CSSLP are a plus. Experience with Infrastructure-as-Code security (Terraform, CloudFormation is desirable. Knowledge of API security best practices and standards (OAuth, JWT, OpenID) is desirable. Familiarity with DevSecOps principles and security automation in CI/CD pipelines is desirable. More ❯
mix of modern and legacy tech is key Data Handling JSON serialization/deserialization DTOs and model binding Security API authentication and authorization best practices Knowledge of OAuth2, JWT, OpenIDConnect Secure coding practices for exposed endpoints Integration & Communication Consuming third-party APIs (REST/SOAP) Async/await, tasks, and non-blocking design Database Integration Hands-on with More ❯
software architecture and design patterns. Strong understanding of application architectures, including microservices, API-driven platforms, cloud infrastructure (AWS), and DevOps practices. Familiarity with single sign-on technologies (OAuth, SAML, OpenIDConnect), identity management, and enterprise security practices. Expertise in managing operational app deployments at scale with knowledge of crash reporting, device constraints, and network efficiency. Knowledge of modern app More ❯
Duration: 6 Months Posted: 31.05.2025 Expiry Date: 15.07.2025 Job Description Enhance access control by implementing and refining RBAC in Microsoft Intune Lead SSO integrations using protocols such as SAML, OIDC, and OAuth Configure and manage Privileged Identity Management (PIM) within Entra ID Support compliance initiatives by aligning Entra ID and Active Directory with NIST/CIS standards Assist in deploying More ❯
Based: Hybrid/London - 2 days per week Required Experience: Enhance access control by implementing and refining RBAC in Microsoft Intune Lead SSO integrations using protocols such as SAML, OIDC, and OAuth Configure and manage Privileged Identity Management (PIM) within Entra ID Support compliance initiatives by aligning Entra ID and Active Directory with NIST/CIS standards Assist in deploying More ❯
Title: Active Directory & IAM Engineer Duration: 6 Months Required Experience: Enhance access control by implementing and refining RBAC in Microsoft Intune Lead SSO integrations using protocols such as SAML, OIDC, and OAuth Configure and manage Privileged Identity Management (PIM) within Entra ID Support compliance initiatives by aligning Entra ID and Active Directory with NIST/CIS standards Assist in deploying More ❯
Cloud environment – ideally Microsoft Azure Strong familiarity with most of the Microsoft tech stack Ideally, experience using Privileged Access Management ( PAM ) Understanding of frameworks and protocols like OAuth 2.0, OpenID, and SAML Experience in spotting and fixing flaws internally Experience using network security concepts Strong communication skills; able to collaborate with resources in separate teams, suppliers, or internal stakeholders More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Person Centred Software Ltd
BDD practices Excellent organisational skills and the ability to self-manage workload and priorities Collaborative approach with strong communication skills and attention to detail (Desirable) Experience with OAuth2/OIDC, mock data, or Microsoft Fabric (Desirable) Knowledge of Azure services, web design (HTML/CSS/JavaScript), or mobile app development (Desirable) Experience with SaaS, multi-tenant solutions, or high More ❯
the same outlook in the Team Ability to facilitate workshops and create design documents for integrations with Blue Yonder Platform and APIs, as well as SSO workshops for SAML, OIDC, and oAuth2 Ability to develop Performance Test scripts and Performance analysis Ability to configure Job Server during deployment life cycle Volunteers for new challenges and eager to learn and challenge More ❯
web-based authentication and rights management solutions. Knowledge of PKI and digital certificate technology. Understanding of digital signatures and eIDAS legislation. Experience with authentication protocols (SAML 2.0, OAuth 2.0, OpenIDConnect) and concepts (2FA, Federation). Knowledge of smartcard and token-based solutions. Web technology development experience, especially Java-based. Familiarity with directories (OpenLDAP, Active Directory) and databases (Oracle More ❯
practices. Proven capability in architecting and deploying Google Kubernetes Engine (GKE) clusters, including service mesh, autoscaling, workload identity, and observability. Solid understanding of GCP security, identity federation (SAML/OIDC), RBAC, Zero Trust networking, and VPC Service Controls. Experience leading cloud migration projects, including DNS, traffic switching, disaster recovery, and designing secure VPC networks with hybrid connectivity. Ideally have experience More ❯
Extensive hands-on experience with IAM technologies (e.g., Okta, SailPoint, CyberArk) Familiarity with cloud platforms such as AWS or Azure Strong understanding of RBAC, authentication protocols (e.g., SAML, OAuth, OIDC), and directory services Automation/IaC mindset "Full stack" engineering experience - design, deployment, and operations Financial markets and/or the financial technology sector experience Requirements Design and deployment of More ❯
navigating change in a regulated environment. Ideally, you’ll also have Some knowledge of the UK energy market (desirable, not essential). Familiarity with RESTful APIs and OAuth/OpenID Connect. Exposure to Docker and/or Kubernetes. Awareness of API Gateways and microservices principles. Basic understanding or interest in cyber security. Certifications or training in architecture frameworks (e.g. More ❯
Social network you want to login/join with: Robert Half Technology are assisting a global retail organisation to recruit a IAM Consultant/Engineer to design, implement, and maintain Identity and Access Management solutions using One Identity Manager and More ❯