Senior Linux, Automation & Identity Engineer

Next Ventures Ltd.
2 days ago

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Tech stack

Proxmox
Microsoft Windows
Microsoft Active Directory
Domain Controllers
Bash
Configuration Management
System Configuration
Linux
File Systems
DNS
Hyper-V
Python
Kerberos (Protocol)
Key Management
Kernel-Based Virtual Machine
Linux System Administration
Openshift
Public Key Infrastructure
Red Hat Enterprise Linux - RHEL
Ansible
Virtualization Technology
vSphere
Transport Layer Security
Containerization
Hardware Infrastructure
Terraform

Job description

Senior Linux, Automation & Identity Engineer

We are looking for a Senior Linux, Automation & Identity Engineer to design, build, and deliver the automation, identity, and security foundations of our Linux estate. This role is central to modernising identity federation, strengthening cross-platform integration with Active Directory, and implementing secure, automated life cycle management for secrets and certificates.

You will collaborate closely with the Architecture Lead on identity strategy and with Platform Engineers to embed automation and infrastructure-as-code across the environment. Key Responsibilities

  • Own Linux automation, configuration management, and infrastructure-as-code delivery.
  • Harden Linux and infrastructure platforms to meet security and compliance requirements.
  • Deploy and configure SSO and identity federation integrated with existing Active Directory.
  • Integrate Linux infrastructure with Windows/Active Directory (host enrolment, authentication, authorisation, access control).
  • Design and deliver secrets management for dynamic credentials and PKI.
  • Implement automated rotation for secrets, TLS/SSL certificates, and service credentials.
  • Extend just-in-time (JIT) access models to on-prem infrastructure.
  • Automate Linux OS patching and coordinate with Windows/VM patching processes.
  • Automate certificate life cycle management and integrate with infrastructure and security platforms.
  • Collaborate with the Architecture Lead on identity design and with Platform Engineers on IaC integration.

Required Experience

  • Strong Linux administration skills (preferably RHEL-based): system administration, networking, troubleshooting, and hardening.
  • Hands-on experience with Ansible, Bash, or Python for automation and configuration management.
  • Practical experience with OpenTofu/Terraform for repeatable, maintainable infrastructure provisioning.
  • Experience deploying and configuring an SSO/identity broker federated with Active Directory, including group-to-role mapping; ideally Kerberos-based desktop SSO.
  • Working knowledge of Active Directory, domain controllers, DNS integration, group policies, and identity dependencies.
  • Hands-on experience integrating Linux hosts and services with AD (SSSD, realmd, winbind, Kerberos authentication, AD-backed sudo/access control, cross-platform file access).
  • Experience designing and delivering secrets management for dynamic credentials and PKI, including automated rotation.
  • Experience automating certificate and credential life cycle management (request, renewal, rotation, deployment).
  • Working knowledge of virtualisation platforms (eg, VMware vSphere, Hyper-V, KVM/Proxmox, OpenShift Virtualization).

Nice to Have

  • Exposure to container platforms (eg, OpenShift).
  • Experience with Ansible automation platforms (eg, AWX).
  • Experience with golden image tooling (eg, Packer).
  • Experience with security compliance scanning (eg, CIS hardening baselines).
  • Familiarity with SCIM provisioning.

The post Senior Linux, Automation & Identity Engineer appeared first on Next Ventures.

Requirements

  • Strong Linux administration skills (preferably RHEL-based): system administration, networking, troubleshooting, and hardening.
  • Hands-on experience with Ansible, Bash, or Python for automation and configuration management.
  • Practical experience with OpenTofu/Terraform for repeatable, maintainable infrastructure provisioning.
  • Experience deploying and configuring an SSO/identity broker federated with Active Directory, including group-to-role mapping; ideally Kerberos-based desktop SSO.
  • Working knowledge of Active Directory, domain controllers, DNS integration, group policies, and identity dependencies.
  • Hands-on experience integrating Linux hosts and services with AD (SSSD, realmd, winbind, Kerberos authentication, AD-backed sudo/access control, cross-platform file access).
  • Experience designing and delivering secrets management for dynamic credentials and PKI, including automated rotation.
  • Experience automating certificate and credential life cycle management (request, renewal, rotation, deployment).
  • Working knowledge of virtualisation platforms (eg, VMware vSphere, Hyper-V, KVM/Proxmox, OpenShift Virtualization).

Nice to Have

  • Exposure to container platforms (eg, OpenShift).
  • Experience with Ansible automation platforms (eg, AWX).
  • Experience with golden image tooling (eg, Packer).
  • Experience with security compliance scanning (eg, CIS hardening baselines).
  • Familiarity with SCIM provisioning.

Apply for this position