IAM Engineer

Odevo
London, UK
23 days ago
Apply on uk.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Active Directory Artificial Intelligence Bash Shell Continuous Integration Identity and Access Management Information Technology Operations Python (Programming Language) Lightweight Directory Access Protocols (LDAP) OAuth OpenID Public Key Infrastructure Windows PowerShell
+9 more
Role-Based Access Control Azure Active Directory Ansible Zero Trust Network Access Security Assertion Markup Language (SAML) User Provisioning Software Customer Identity Access Management SailPoint Terraform

Job description

We are now looking for a Senior IAM Engineer to take a key role in shaping the next generation of Odevo’s Identity & Access Management capabilities. This is a hands-on specialist role for someone who enjoys solving complex identity challenges, building robust solutions, and raising the technical maturity of an IAM environment.

You will work across Microsoft Entra ID, Active Directory, identity governance, and privileged access, with a strong focus on automation, security, and lifecycle management. You will have the opportunity to influence both the technical direction and the way IAM is operating across Odevo’s markets., * Design, build and maintain identity solutions across Microsoft Entra ID and Active Directory, including hybrid identity, Conditional Access and federation.

  • Develop advanced PowerShell automation for identity lifecycle management, provisioning, deprovisioning and reporting.
  • Help mature Identity Governance and Administration (IGA) using platforms such as SailPoint and/or Saviynt, including access certification, RBAC and policy enforcement.
  • Manage and strengthen Privileged Access Management (PAM) and PIM, including vaulting, credential rotation and just-in-time access.
  • Own the lifecycle and security of user, privileged, service, shared, break-glass and machine identities.
  • Act as a senior escalation point for complex identity issues and integrations using SAML, OAuth2, OIDC, SCIM and LDAP.
  • Drive modern authentication and identity security practices, including MFA, passwordless/FIDO2, least privilege and Zero Trust.
  • Automate and improve IAM operations, including exploring AI-enabled approaches such as anomaly detection and intelligent access-review support.
  • Partner with Technology, Risk & Compliance and local teams to ensure consistent IAM standards across Odevo.
  • Provide technical mentorship and contribute to IAM architecture, documentation and the long-term strategy and roadmap., * Modern technology - we invest in the latest technologies and tools and encourage our team members to share their ideas and take ownership of their work.
  • Innovation - to work on exciting projects that push the boundaries of our industry and make a real impact.
  • Commitment to quality - a dynamic and forward-thinking company that values profitable and long-term product development.

Requirements

You are a senior IAM specialist who enjoys going deep into complex technical environments and taking ownership of solutions from design through to operation. You have strong technical judgement and a pragmatic approach to security, knowing when to challenge, when to simplify and how to make robust solutions work in practice. You are curious about new technology and how AI can improve security and operations, while keeping a strong focus on reliability and risk. You are comfortable working independently, solving complex problems and sharing your expertise with others., * Proven senior-level, hands-on experience in IAM engineering across complex or hybrid environments.

  • Deep expertise in Microsoft Entra ID and Active Directory, including Entra Connect, Group Policy and hybrid identity.
  • Advanced PowerShell skills and experience automating IAM processes at scale.
  • Hands-on experience with IGA platforms, ideally SailPoint and/or Saviynt.
  • Experience with PAM/PIM, privileged access, credential management and time-bound elevation.
  • Strong understanding of RBAC/ABAC, least privilege, Zero Trust and segregation of duties.
  • Solid knowledge of identity protocols including SAML, OAuth2, OIDC, SCIM and LDAP.
  • Strong analytical and troubleshooting skills, with the ability to investigate complex access issues and reduce risk.
  • Experience automating identity lifecycle processes such as joiner-mover-leaver and access reviews.

Desired

  • Experience with Python and/or Bash alongside PowerShell.
  • Experience applying AI or intelligent automation to IT operations or security.
  • Experience with Terraform, Ansible and/or CI/CD for identity deployments.
  • Exposure to PKI/ADCS, machine identities or workload identities.
  • Experience across workforce IAM and CIAM.
  • Relevant certifications such as SC-300, SC-100, AZ-500, CISSP or CISM.
  • Experience working in a multi-country or decentralised organisation.
  • Familiarity with ISO 27001, SOC 2, GDPR or NIST2.

About the company

We are on a mission to become the leading international force in residential property management. What we do matters to billions of people in their everyday lives.

Residential real estate is the world’s largest asset class, and for most families, buying a home is the single biggest financial decision they will ever make. For too long, residential property management has fallen short of homeowners’ and residents’ expectations, and the industry is ready for change. Odevo was formed to make that change happen.

In just six years, Odevo has grown more than 70-fold, establishing us as the leading international player. We are more than 12,000 people across the US, the UK, the Nordics, Germany, Spain, Portugal, Mexico, and Italy building Odevo. Together, we aspire to break new ground through innovation and cultivate a workplace where we help each other succeed, where ideas matter more than titles, and where kindness is a strength.

By combining the power of people and technology, we set a new standard for how homes are managed. Our technology-enabled services simplify living for residents and create a better experience for property owners and boards.

Our ambition is to continue our fast-growing journey through new customers, service expansion, and by partnering with great companies that share our mindset and ambition, both in existing and new markets.

As we continue to grow, we stay true to who we are, challenge unnecessary bureaucracy, and keep decision-making close to our customers.

If you share our mindset and ambition, we’d love you to join us and help accelerate our mission together.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on uk.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all