> Markdown version of [/jobs/ext/2446566-senior-manager-identify-access-management](https://www.wearedevelopers.com/jobs/ext/2446566-senior-manager-identify-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Manager - Identify & Access Management - **Company:** Hargreaves Lansdown - **Location:** Bristol, UK - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Active Directory, Cloud Computing, Cyber Security, Identity and Access Management, OpenID, Role-Based Access Control, Azure Active Directory, Security Assertion Markup Language (SAML), IT General Controls (ITGC), Cyberark, Sentry - **Published:** August 24, 2026 - **Apply:** https://www.totaljobs.com/job/senior-access-manager/hargreaves-lansdown-job107890782 ## About the Role * Extensive senior leadership track record in Identity & Access Management, Privileged Access Management and Identity Governance & Administration, gained in a complex, regulated environment (financial services strongly preferred). * Demonstrable experience leading a multi-year IAM/PAM/IGA transformation programme end-to-end, including target operating model design, tooling modernisation and measurable maturity uplift. * Deep working knowledge of enterprise IAM platforms (e.g. OneIdentity) and PAM platforms (e.g. CyberArk Privilege Cloud) - including operating models, integration patterns and control outcomes. * Strong grasp of modern authentication and authorisation architectures - including SSO, MFA, OIDC/SAML, RBAC, ABAC and workload identity federation across Microsoft Entra ID, Active Directory and AWS IAM. * Executive presence and comfort operating at senior committee level - including presenting IAM strategy, control effectiveness and remediation to executive committees, board risk committees, external audit and regulators. * Practical knowledge of relevant regulatory and control expectations impacting identity controls, including FCA/PRA Operational Resilience, DORA, ICO expectations, ITGC scrutiny, ISO 27001 and NIST CSF. * Proven ability to influence senior engineering, platform and product leaders to drive change and adoption of enterprise standards without direct authority - building consensus at scale across a complex delivery landscape. * Demonstrable experience owning multi-year IAM investment cases, vendor strategy and budget - with a track record of translating capability ambition into commercial outcomes. * Strong people leadership credentials, including building, developing and retaining senior IAM/PAM talent, and creating career pathways within a technical capability. * Excellent written and verbal communication skills, with the ability to translate complex identity concepts for engineering, product, risk and executive audiences. * Advanced security or IAM certifications expected (e.g. CISSP, CISM, CIDPRO, CyberArk Sentry, Microsoft SC-300) - reflecting the strategic control nature of the role. ## Description As the Senior Manager - Identity & Access Management you will own the strategy, transformation and continuous maturity of HL's Identity and Access Management (IAM) capability for colleague and workload identities - spanning identity lifecycle, authentication, authorisation, Privileged Access Management (PAM) and Identity Governance & Administration (IGA). The role elevates IAM as a strategic control, sets the direction and standards adopted across engineering and platform teams, drives a multi-year transformation programme, and provides executive-level representation to internal committees, external audit and regulators - ensuring HL's IAM capability is resilient, regulator-ready and enabling of secure, efficient access at scale. What you will be doing * Own the multi-year IAM, PAM and IGA strategy, target operating model and capability maturity roadmap for colleague and workload identities, developed in partnership with Security Architecture and Cyber Defence. * Lead the transformation of HL's IAM capability, driving material uplift in automation, self-service, joiner-mover-leaver reengineering, RBAC modernisation, PAM control effectiveness and identity governance maturity. * Set and steward the enterprise IAM standards, patterns and policies adopted across engineering and platform teams - ensuring least privilege, zero-trust identity principles and segregation of duties are consistently embedded by design. * Own privileged access strategy and outcomes, including vaulting, session isolation, credential rotation and Just-in-Time / Just-Enough-Access controls - with day-to-day PAM operation delegated to specialist team leads. * Own the access governance strategy - including recertification cadence, role modelling, entitlement definitions and exception handling - retaining accountability for outcomes and regulatory evidence while delegating execution. * Represent IAM at executive, risk and governance forums and act as HL's principal IAM interface to external audit and regulators on Identity-related matters. * Own the IAM investment case, vendor strategy and multi-year budget, ensuring spend, tooling and partner choices deliver measurable capability, control and efficiency outcomes. * Influence and drive change across senior engineering, platform and product leaders to embed IAM standards and secure-by-design identity outcomes at pace and scale * Lead, develop and retain a high-performing IAM team, owning the capability's talent strategy, succession planning and continuous uplift of technical and delivery skills at senior levels. * Report on IAM performance, control effectiveness and transformation outcomes through clear KRIs, KPIs and management information tailored for engineering, executive, risk and regulatory audiences. ## Related Videos - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [From Doubt to Confidence: How Sentry Uses Verdaccio to Bulletproof SDK Releases](https://www.wearedevelopers.com/videos/739-from-doubt-to-confidence-how-sentry-uses-verdaccio-to-bulletproof-sdk-releases) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Should Tech Managers Be Developers First? Pros and Cons](https://www.wearedevelopers.com/magazine/327-should-tech-managers-be-developers-first-pros-and-cons) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager)