IAM Architect

Picture More
Charing Cross, United Kingdom
8 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Remote
Charing Cross, United Kingdom

Tech stack

Authentication Protocols
Azure
Biometrics
Software as a Service
Multi-Factor Authentication
Network Topologies
Identity and Access Management
Kerberos (Protocol)
Lightweight Directory Access Protocols (LDAP)
OAuth
Platform as a Service (PAAS)
Powershell
Role-Based Access Control
Openid Connect
Azure
Security Assertion Markup Language (SAML)
REST

Job description

Are you an IAM Architect who wants to design global identity and access strategy for a top tier international firm, not just maintain it?, This is a senior hands on architecture role with genuine influence. You will work closely with security, platform engineering and senior technology leadership to modernise identity governance, strengthen privileged access and embed zero trust principles across the firm's global technology estate., * Develop and maintain the firm's IAM architecture, including identity lifecycle, access governance and privileged access controls.

  • Ensure seamless integration of multi-factor authentication with biometric and mobile device capabilities to improve both security and user experience.
  • Champion the adoption of identity threat detection and response solutions to proactively identify and mitigate identity-based attacks.
  • Design secure authentication and authorization patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP) and in conjunction with the Platform Engineering team, Conditional Access policies aligned with Microsoft best practices.
  • Architect and enhance privileged access management (PAM) capabilities, including approval workflows and continuous monitoring.
  • Collaborate with Security to design Azure Policies and guardrails, supporting audit readiness and remediation
  • Oversee Conditional Access deployment and risk-based authentication

Requirements

  • Proven background working as an IAM Architect or alternatively as a Security Architect with strong experience focussed on Identity and Access Management.
  • Previous experience working in large scale global environment (professional services experience preferred)
  • Deep expertise in Microsoft identity and security across SaaS/PaaS, IAM, and Privileged Access domains, advanced Entra ID/Azure AD and on-prem AD.
  • Relevant industry certifications such as CISSP
  • Strong experience with Azure
  • Strong command of SSO and authentication protocols: OpenID Connect, SAML, OAuth, Kerberos, LDAP.
  • Hands-on RBAC design, entitlement management, and automated provisioning/de-provisioning pipelines.
  • Proficiency with PowerShell and RESTful integrations for identity automation and compliance checks.
  • Familiarity with NDR and Micro-Segmentation patterns; understanding of network topologies and their interplay with IAM.
  • Ability to communicate clearly with non-technical stakeholders
  • Calm, credible and pragmatic approach with strong personal gravitas

Benefits & conditions

London - Competitive salary and benefits package Full Time Posted by: Picture More Ltd Posted: Wednesday, 4 February 2026 Applicants must be eligible to work in the specified location, * Opportunity to Architect and influence identity and access strategy at a global scale

  • Work at the intersection of IAM, Security and Infrastructure Architecture
  • Exposure to modern identity technologies including zero trust, ITDR, and passwordless authentication
  • A collaborative, inclusive culture with strong investment in professional development
  • Hybrid working: 3 days in the office, 2 days remote

About the company

We are partnered with a leading international professional services firm based in Central London who are looking to hire an Architect to play a pivotal role in shaping enterprise wide identity, access and security architecture across a complex global environment.

Apply for this position