> Markdown version of [/jobs/ext/2917450-head-of-identity-and-access-management-iam](https://www.wearedevelopers.com/jobs/ext/2917450-head-of-identity-and-access-management-iam). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Head of Identity and Access Management (IAM) - **Company:** Sanderson Recruitment Plc - **Location:** London, UK - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Active Directory, Identity and Access Management, Role-Based Access Control, Azure Active Directory, Cyberark - **Published:** September 15, 2026 - **Apply:** https://www.totaljobs.com/job/international-account-manager/sanderson-recruitment-job107981466 ## About the Role * Experience leading IAM in a heavily regulated environment with high levels of audit and risk scrutiny * Confident facing off to external auditors and representing a function at executive risk and governance forums * Experience with C-suite stakeholders, including explaining technical risk to non-technical senior audiences * Background in programmes with board-level visibility * Experience of operating model updates, maturity work and team leadership * Strong understanding of identity architectures, SSO, MFA and PAM models, plus Microsoft Entra ID and Active Directory * Knowledge of DORA, ISO 27001 and NIST, and how they translate into IAM control requirements Desirable: One Identity or CyberArk experience. A strong grasp of core IAM concepts matters more than specific tooling. ## Description * Represent IAM at executive risk and governance forums, and provide clear reporting on IAM risk and control status to senior leadership * Act as the senior point of contact for external auditors, managing engagement from evidence requests through to closing actions * Lead IAM's contribution to the control improvement programme, making sure commitments are delivered and evidenced * Own IAM policies, standards and controls, and ensure they meet regulatory and audit expectations * Set the multi-year IAM strategy, operating model and maturity roadmap * Oversee the identity lifecycle and access reviews, authentication standards (SSO, MFA), RBAC modernisation, the PAM model and workload identity * Lead and develop the IAM team, including any restructuring needed