> Markdown version of [/jobs/ext/2669350-identity-and-access-management-engineer](https://www.wearedevelopers.com/jobs/ext/2669350-identity-and-access-management-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Identity and Access Management Engineer - **Company:** Maples Group - **Location:** Leeds, UK - **Experience:** Expert - **Salary:** £82,284.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Application Programming Interfaces (APIs), Application Integration Architecture, User Authentication, Cyber Security, Information Systems, Multi-Factor Authentication, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Ping (Networking Utility), Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Single Sign-On, Scripting, Okta, Cyberark, Software Troubleshooting, Information Technology, SailPoint, Restful APIs, Network Server - **Published:** September 2, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5864858224 ## About the Role * Bachelor's degree in Computer Science, Information Systems, Cybersecurity or a related discipline * 5+ years of experience supporting, implementing or administering enterprise IAM solutions, with practical experience in one or more IAM domains such as IGA, PAM, SSO, federation, MFA, lifecycle management or access governance * Understanding of authentication and authorization standards, including, SAML, OAuth, OpenID Connect (OIDC), LDAP and Kerberos * Experience with IAM, IGA, PAM or access management platforms such as Active Directory, Microsoft Entra ID, CyberArk, SailPoint, ClearSkye, Okta, Ping Identity or equivalent technologies would be advantageous * Experience in integrating applications with identity providers and access management solutions * Experience executing access reviews, role-based access control (RBAC) initiatives and governance activities * CISSP (Associate), and/or Microsoft Certified: Identity and Access Administrator Associate (SC-300) or equivalent cybersecurity / identity-security focused certification are preferred * Familiarity with Windows servers, GPO, Networking * Familiarity with scripting or automation using PowerShell, Python, REST APIs or Microsoft Graph API * Strong troubleshooting and problem-solving skills with the ability to perform root cause analysis * Excellent communication and documentation skills * Ability to think critically, challenge existing approaches, and propose practical improvements * Self-motivated team player who takes ownership and can work effectively across technical and non-technical teams ## Description The Identity and Access Management Engineer is responsible for implementing, maintaining and supporting the tools, processes and controls that underpin the firm's Identity and Access Management programme. The successful candidate will help strengthen identity security across Identity Governance, Privileged Access Management, Authentication, Federation, Access Reviews and Identity Threat Detection initiatives., * Support and administer enterprise IAM platforms and services across + Identity Governance and Administration (IGA) + Privileged Access Management (PAM) + Single Sign-On (SSO) + Federation + Multi-Factor Authentication (MFA) + Passwordless Authentication + Identity Lifecycle Management * Support Joiner, Mover and Leaver (JML) processes, role management and access provisioning activities * Support access control evidence gathering, access review reporting, privileged access validation and remediation tracking for internal and external audits * Implement and support modern identity security capabilities including: Microsoft Entra ID, Conditional Access, Privileged Identity Management (PIM), Windows Hello for Business, FIDO2 Authentication and Identity Threat Detection and Response (ITDR) * Participate in Zero Trust security initiatives and identity-centric security programs * Support application onboarding and integration activities for: SAML, OAuth, OpenID Connect (OIDC), SCIM Provisioning and Federation Services * Support internal and external audit activities, including evidence collection and control validation * Maintain IAM operational procedures, standards, technical documentation and support guides * Assist with remediation of audit findings and compliance requirements * Maintain awareness of evolving identity security threats, industry best practices and regulatory requirements * Participate in identity transformation initiatives and projects aimed at improving security, operational efficiency and user experience * Contribute to the evolution of the firm's identity-first and Zero Trust security strategy * Support modernization efforts involving cloud identity, identity governance and privileged access management technologies * Understand the organisation's mission, values, operations, goals, risks and risk tolerance * Assist in the implementation and operation of the security programmes and projects as required * Maintain technical security knowledge by attending training courses, educational workshops where required ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)