IAM Engineer
Role details
Job location
Tech stack
Job description
In this role, you will design, implement, and support privileged access and identity governance solutions that strengthen security across enterprise environments. You will work closely with security architects, infrastructure teams, and business stakeholders to deliver secure, scalable IAM capabilities that align with organisational and regulatory requirements. Leveraging your expertise in CyberArk and Microsoft Entra, you will help modernise access controls, improve identity lifecycle management, and support Zero Trust security initiatives.
You will contribute to the delivery of innovative IAM solutions across hybrid and cloud environments, taking ownership of technical integrations, automation, and continuous improvement activities. CGI will support your professional growth through collaborative teams, access to leading technologies, and opportunities to work on impactful cyber security programmes.
Candidate profile
-Design & Deliver secure privileged access management solutions using CyberArk PAS, EPV, PSM, and Privileged Cloud
-Integrate & Enhance IAM capabilities across enterprise platforms and cloud services
-Support & Optimise Microsoft Entra services including SSO, Conditional Access, and PIM
-Develop & Automate IAM workflows and integrations using PowerShell and APIs
-Improve & Govern identity lifecycle processes including Joiner/Mover/Leaver workflows and access certifications
-Collaborate & Advise on security architecture and modern access management strategies
-Contribute & Innovate within Zero Trust and cloud security transformation initiatives
-Monitor & Resolve IAM-related issues, ensuring secure and reliable service delivery
Requirements
To succeed in this role, you should have strong hands-on experience delivering enterprise IAM and privileged access management solutions within complex IT environments. You will bring deep expertise in CyberArk technologies alongside a solid understanding of identity governance, cloud-based access controls, and modern security principles. Experience working with Microsoft Entra, IGA platforms, and automation tooling will be highly valuable, alongside a collaborative approach and the ability to contribute to secure, high-performing delivery teams.
-You should have strong hands-on experience with CyberArk PAS, EPV, and PSM
-Proven experience with CyberArk Privileged Cloud including SIA and SCA
-CyberArk Certified Delivery Engineer (CDE) certification
-Strong understanding of IAM principles including RBAC, least privilege, and JML processes
-Experience integrating CyberArk with enterprise systems and applications
-Expertise in security architecture and IAM solution design within complex environments
-Strong experience with Microsoft Entra (Azure AD), including SSO, Conditional Access, and PIM
-Experience with IGA platforms such as SailPoint or Saviynt
-Strong scripting and automation capability using PowerShell and APIs
Desirable skills:
-Knowledge of Zero Trust and modern access management models
-Experience across cloud platforms including Azure, AWS, and GCP
-Broader cyber security certifications such as CISSP or CCSP
Benefits & conditions
CGI was recognised in the Sunday Times Best Places to Work List 2025 and has been named a UK 'Best Employer' by the Financial Times. We offer a competitive salary, excellent pension, private healthcare, plus a share scheme (3.5% + 3.5% matching) which makes you a CGI Partner not just an employee. We are committed to inclusivity, building a genuinely diverse community of tech talent and inspiring everyone to pursue careers in our sector, including our Armed Forces, and are proud to hold a Gold Award in recognition of our support of the Armed Forces Corporate Covenant. Join us and you'll be part of an open, friendly community of experts. We'll train and support you in taking your career wherever you want it to go.
Due to the secure nature of the programme, you will need to hold UK Security Clearance or be eligible to go through this clearance. This is a hybrid position.