Identity Management Engineer

CloudPay, Inc.
Andover, UK
3 days ago
Apply on www.careerjet.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Amazon Web Services Build Automation Microsoft Azure Cloud Computing Identity and Access Management Python (Programming Language) Microsoft Software OAuth OpenID Ping (Networking Utility) Windows PowerShell Role-Based Access Control
+11 more
Azure Active Directory Ansible Zero Trust Network Access Security Assertion Markup Language (SAML) Scripting Cyberark Software Troubleshooting Infrastructure Automation Frameworks SailPoint Terraform Docker

Job description

To be the world’s most trusted global payroll partner, simplifying pay for all employees. Our Mission Empowering global workforces with seamless, compliant, and innovative payroll and payment solutions, enabling businesses to thrive in a connected world. Our People Our fundamental beliefs at CloudPay are built on core values of professionalism, passion, empowerment, innovation, and teamwork. We value our employees and strive to create a great workplace where everyone is valued, heard, inspired, and encouraged to bring their authentic selves to work. We’re committed to providing an excellent employee experience through fulfilling projects, empowerment to make a difference, and an environment that inspires innovation. What makes this role exciting - Shape the Future of Identity We’re looking for Senior Identity & Access Management Engineers to help lead our identity modernisation journey and accelerate our transition to a Zero Trust security model. This is a highly hands-on role where you’ll own the design, implementation, and evolution of our identity platform, built on ForgeRock Identity and Access Management (PingOne Advanced Identity Cloud). You’ll work at the heart of a strategic transformation, automating identity lifecycle management, modernising access controls, and delivering secure, scalable identity services across our global platform. If you enjoy solving complex security challenges, building enterprise-scale IAM solutions, and making a visible impact on business outcomes, we’d love to hear from you. Main responsibilities: Design, build, and optimise identity services using ForgeRock/PingOne Advanced Identity Cloud. Create seamless authentication, registration, federation, and self-service user experiences. Develop secure integrations using SAML, OAuth2, OIDC, and SCIM. Build automation and CI/CD pipelines to accelerate and standardise IAM deployments. Implement identity governance, provisioning, and role-based access controls to support a Zero Trust architecture. Improve platform observability, operational resilience, and security monitoring. Troubleshoot complex authentication and access management challenges. Collaborate closely with Security, Platform Engineering, Product, and Corporate IT teams. Mentor engineers and champion engineering best practices across the team.

Requirements

Strong hands-on experience delivering enterprise IAM solutions. Expertise in identity protocols including SAML, OAuth2, OIDC, and SCIM. Experience with ForgeRock, Ping Identity technologies, or similar enterprise IAM platforms. Knowledge of RBAC, identity governance, lifecycle management, and Zero Trust principles. Experience automating infrastructure and deployments using scripting and Infrastructure as Code tools such as Terraform, Python, PowerShell, or Ansible. Strong troubleshooting and problem-solving skills with the ability to diagnose complex authentication and integration issues. A collaborative mindset and passion for building secure, scalable solutions. Nice to Have Experience with IGA platforms such as SailPoint or Saviynt. Exposure to PAM/PIM solutions such as CyberArk. Cloud identity experience with Microsoft Entra ID, AWS, Azure, or GCP. Docker and Kubernetes experience. Relevant certifications (Ping Identity, CISSP, CISM, CyberArk, Microsoft). About you and Our core values Taking ownership, working with integrity and respect Being a team player is key to our culture Solution and customer focused Great initiative with the goal for excellence in achieving results Dedicated to developing and always looking for continuous improvements

Benefits & conditions

Be creative, be committed, be engaged and enjoy what you do United Kingdom Package and benefits Competitive Salary Competitive vacation allowance Calm app WFH Allowance Life Assurance Private Medical Insurance Cycle to Work Scheme EAP Eye Tests & Glasses Contribution Simplyhealth Enhanced Health Plan Pension Scheme Give-As-You-Earn (GAYE) Employee Referral Program CloudPay NOW Paid Volunteering days Marriage Leave Bereavement Leave Vacation Purchase Plan CloudPay is committed to being an equal opportunities employer. #LI-AC1 #LI-HYBRID #LI-REMOTE The CloudPay culture is built upon on five core values, from which we develop our service, our technology and our business strategies. Our fundamental beliefs are a promise to our employees, customers and partners, built on the core values of professionalism, passion, empowerment, innovation, and teamwork.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all