Officer, Identity & Access Management

Children International
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work
Languages
English
Experience level
Senior

Job location

Tech stack

Microsoft Access
Microsoft Windows
Microsoft Active Directory
Azure
Identity and Access Management
Powershell
Azure
Cloud Services
Microsoft InTune

Job description

The Identity & Access Management Senior Officer provides operational IAM support across SCI's Azure AD/Entra ID and Microsoft 365 environment. The role ensures user identity lifecycle processes are executed accurately (provisioning, deprovisioning, access changes), supports access-related troubleshooting, monitors authentication issues, and contributes to secure enterprise identity practices.

This entry-level position is designed to build technical expertise in cloud identity and access management, supporting a senior IAM engineer and contributing to a secure, compliant digital environment., * Execute user identity lifecycle activities, including onboarding, offboarding, and access modifications in alignment with SCI standards.

  • Provide first-line to mid-level troubleshooting for identity-related issues (authentication failures, MFA prompts, access errors, basic conditional access behaviours).
  • Manage identity constructs in Azure AD/Entra ID (security groups, role assignments, MFA settings, user attributes).
  • Monitor identity systems for anomalies, risky logins, failed authentications, spam-related alerts, and escalate as required.
  • Support Senior IAM Administrator with operational tasks, including MFA rollouts, access reviews, SSO integrations, identity hygiene improvements, and conditional access reviews.
  • Contribute to IAM documentation, ensuring SOPs remain accurate and aligned with global team guidelines.
  • Assist with testing and implementation of identity and infrastructure changes following SCI change management processes.
  • Help coordinate and escalate Microsoft Support cases when required.
  • Uphold security, compliance, and governance principles across all identity operations., 1. Application review by our recruiting team based on your CV and cover letter
  1. Two-stage competency-based interviews with the hiring team
  2. Some recruitment may include an additional assessment or case study stage, or a third stage interview
  3. If successful, you will receive a conditional offer of employment, followed by your contract subject to passing background checks

We need to keep children and adults safe so our selection process includes rigorous background checks and reflects our commitment to the protection of children and adults from abuse. All employees are expected to carry out their duties in accordance with our Code of Conduct and all policies and procedures relating to Anti-harassment, Health and Safety, Safeguarding, and DEI and Equal Opportunities.

Requirements

Right to Work: The successful candidate must possess the unrestricted right to work in their current or preferred location for the duration of employment.

Language Requirements: English, 1. Foundational understanding or basic proficiency in IT support, systems administration, or identity operations.

  1. Understanding of Active Directory principles (users, groups, OU basics).
  2. Familiarity with Azure AD/Entra ID and Microsoft 365 administration fundamentals.
  3. Basic understanding of MFA concepts and conditional access fundamentals.
  4. Ability to follow procedures, logically troubleshoot issues, and document processes clearly.
  5. Strong communication skills, customer-focused mindset, and willingness to learn.
  6. Exposure to SSO concepts and authentication workflows.
  7. Desirable
  8. Basic PowerShell knowledge for operational support tasks.
  9. Exposure to cloud IAM platforms (Azure AD, etc.).
  10. Understanding of ITIL principles (incidents, changes, requests).
  11. Experience with Intune, Autopilot, conditional access reviews, or device identity concepts.
  12. Experience working in an automated or cloud native environment.

Desirable

  • Basic PowerShell knowledge for operational support tasks.
  • Exposure to cloud IAM platforms (Azure AD, etc.).
  • Understanding of ITIL principles (incidents, changes, requests).
  • Experience with Intune, Autopilot, conditional access reviews, or device identity concepts.
  • Experience working in an automated or cloud native environment.

Education and Qualifications

Essential

  • Relevant Microsoft training/certification (e.g., Azure Fundamentals, Microsoft 365 Fundamentals) or equivalent hands-on exposure.

Desirable

  • Progress toward Microsoft Associate certifications (e.g., Identity and Access Administrator).
  • IT-related diploma, degree, or professional course.

About the company

Save the Children is the world's leading organisation for children, employing ~25,000 staff. We save children's lives. We fight for their rights. We help them fulfil their potential. Through our work in 116 countries, we put the most deprived and marginalised children first. We know that great people make a great organisation, and that our employees play a crucial role in helping us achieve our ambitions for children. We value our people and offer a meaningful and rewarding career, along with a collaborative and inclusive environment where ambition, creativity, and integrity are highly valued., Together we are stronger. Join the conversation.

Apply for this position