> Markdown version of [/jobs/ext/2920159-iam-architect-infrastructure-access-management](https://www.wearedevelopers.com/jobs/ext/2920159-iam-architect-infrastructure-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Architect - Infrastructure & Access Management - **Company:** Precise Placements - **Location:** London, UK - **Salary:** £106,000.0 - £116,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Active Directory, Systems Engineering, Authentication Protocols, Microsoft Azure, Software as a Service, Encodings, Cyber Security, Network Topologies, Identity and Access Management, Intrusion Detection and Prevention, Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), Network Segmentation, OAuth, Platform as a Service (PAAS), Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Systems Integration, Enterprise Software Applications, Customer Identity Access Management, Restful APIs - **Published:** September 15, 2026 - **Apply:** https://www.reed.co.uk/jobs/iam-architect-infrastructure-access-management/57347143 ## About the Role * Proven background in IAM/identity engineering or architecture within large enterprise environments * Prior global or large-scale enterprise experience preferred * Microsoft Certified: Identity and Access Administrator Associate * CISSP or equivalent * Azure Cybersecurity Expert or Certified Identity and Access Manager (CIAM) Technical Skills * Deep expertise in Microsoft identity and security across SaaS/PaaS, IAM, and Privileged Access domains * Advanced knowledge of Entra ID/Azure AD and on-premises Active Directory * Strong command of SSO and authentication protocols: OpenID Connect, SAML, OAuth, Kerberos, LDAP * Hands-on experience with RBAC design, entitlement management, and automated provisioning pipelines * Proficiency with PowerShell and RESTful integrations for identity automation * Familiarity with NDR, Micro-Segmentation, and network topology as they relate to IAM * Experience with Azure Policy, landing zone guardrails, and Conditional Access at scale ## Description * Developing and maintaining IAM architecture covering identity lifecycle, access governance, and privileged access controls * Designing secure authentication and authorisation patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP) and Conditional Access policies aligned with Microsoft best practices * Embedding zero trust and least privilege principles across all privileged roles and enterprise applications * Owning global firewall design and architecture * Architecting and enhancing Privileged Access Management (PAM) capabilities, including approval workflows and continuous monitoring * Championing Identity Threat Detection and Response (ITDR) solutions to proactively mitigate identity-based attacks * Guiding the hardening of multi-site Active Directory domains/forests and cloud identity components (Entra/Azure AD) * Collaborating with Security to design Azure Policies and guardrails supporting audit readiness (ISO 27001, ISO 22301) * Integrating IAM with HR, IT, and engineering systems throughout the user lifecycle * Staying ahead of emerging technologies including passwordless authentication, decentralised identity frameworks, and adaptive access controls ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [A Brief History of Data Storage](https://www.wearedevelopers.com/videos/974-a-brief-history-of-data-storage) - [Rest API Antipatterns](https://www.wearedevelopers.com/videos/100208-rest-api-antipatterns) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Top Must-Visit Developer Conferences in the US in 2026](https://www.wearedevelopers.com/magazine/679-top-must-visit-developer-conferences-in-the-us-in-2026) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)