Identity & Access Management Architect
DGH Recruitment Ltd.
Charing Cross, United Kingdom
4 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
EnglishJob location
Charing Cross, United Kingdom
Tech stack
Microsoft Active Directory
Azure
Biometrics
Computer Security
Multi-Factor Authentication
Identity and Access Management
Kerberos (Protocol)
Network Security
Lightweight Directory Access Protocols (LDAP)
Machine Learning
OAuth
OpenID
Powershell
Role-Based Access Control
Openid Connect
Azure
Security Assertion Markup Language (SAML)
Firewalls (Computer Science)
Customer Identity Access Management
Information Technology
REST
Job description
Monitor and evaluate emerging IAM trends (eg, passwordless authentication, decentralised identity, adaptive access controls).
- Lead automation and governance initiatives, including machine-learning-based anomaly detection.
- Integrate and optimise multi-factor authentication, biometrics, and mobile identity capabilities.
- Drive adoption of identity threat detection and response (ITDR) solutions.
- Develop and maintain IAM architecture covering identity life cycle, governance, and privileged access.
- Design secure authentication and authorisation patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP).
- Embed Zero Trust and least-privilege principles across systems and applications.
- Own global Firewall architecture and contribute to micro-segmentation and network security strategy.
- Enhance privileged access management (PAM), including workflow and monitoring capabilities.
- Ensure audit readiness and contribute to compliance frameworks (eg, ISO standards).
- Integrate IAM with HR, IT, and engineering systems for life cycle automation.
- Oversee Conditional Access, risk-based authentication, and device-state policies.
- Support the secure operation of multi-site Active Directory domains and cloud identity platforms.
- Collaborate with cross-regional IT and business leaders; manage vendor relationships and roadmaps.
- Assess IAM vulnerabilities and define mitigation strategies.
Requirements
Degree in Computer Science, IT, or equivalent experience.
- Strong background in IAM engineering/architecture within enterprise environments, including leadership of complex design initiatives.
- Experience in global or large-scale organisations preferred.
Certifications desirable:
- CISSP
- Identity & Access Administrator (required)
- Azure Cybersecurity Expert (preferred)
- CIAM or similar (highly desirable)
Technical Skills
- Deep expertise in IAM across hybrid Microsoft ecosystems, including Azure AD/Entra ID and on-premises Active Directory.
- Strong understanding of authentication/SSO standards (OIDC, SAML, OAuth, Kerberos, LDAP).
- Experience with RBAC, entitlement management, and automated provisioning/deprovisioning.
- Skilled in PowerShell, REST APIs, and identity automation.
- Familiar with micro-segmentation, NDR, and network-IAM interplay.
- Experience with infrastructure hardening and monitoring across hybrid environments.
- Knowledge of Azure Policy, landing zones, and Conditional Access at scale.
Identity & Access Management Architect (IAM/Entra ID/Azure AD/SSO/RBAC)
About the company
In accordance with the Employment Agencies and Employment Businesses Regulations 2003, this position is advertised based upon DGH Recruitment Limited having first sought approval of its client to find candidates for this position., DGH Recruitment Limited acts as both an Employment Agency and Employment Business