Lead Cyber Security Engineer - BeyondTrust, CyberArk

Bupa
Salford, UK
9 days ago
Apply on bupa.wd3.myworkdayjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Active Directory Application Programming Interfaces (APIs) Amazon Web Services Cyber Security Identity and Access Management Python (Programming Language) Kerberos (Protocol) Lightweight Directory Access Protocols (LDAP) OAuth Windows PowerShell Openid Connect Cloud Services
+4 more
Security Assertion Markup Language (SAML) Scripting Cyberark SailPoint

Job description

At Bupa, we’re here to help people live longer, healthier, happier lives. With no shareholders, we reinvest our profits into improving the health of our customers and the quality of the services we provide. As our IAM Lead Engineer, you will play a vital role in strengthening our security posture by leading the design, development and operation of identity and access management technologies across Bupa Global, India and UK (BGIUK)., * Lead the design, configuration, integration and support of Identity Governance & Administration (IGA), Privileged Access Management (PAM) and Electronic Identity Management (EIM) tools.

  • Build custom workflows, connectors and automation to support efficient access provisioning.

  • Integrate IAM solutions with core applications, Active Directory, Entra ID and cloud platforms.

  • Troubleshoot IAM, access, authentication and identity-related issues.

  • Implement least-privilege access, zero-trust principles and compliant access governance.

  • Support audits and produce IAM evidence and reporting.

  • Monitor platforms, respond to IAM-related incidents and manage remediation.

  • Identify opportunities for automation and orchestration using PowerShell, Python and APIs.

  • Collaborate with IT, Security, HR and business teams to deliver solutions that balance strong controls with smooth user experience.

  • Lead and develop a high-performing IAM engineering team.

  • Promote a culture of innovation, continuous improvement and security-first thinking.

Requirements

  • Experience designing and operating IGA/PAM/EIM technologies (CyberArk, SailPoint, BeyondTrust, Saviynt etc.).

  • Strong understanding of identity technologies (SAML, OAuth, OpenID Connect, LDAP, Kerberos).

  • Experience integrating IAM with cloud services (AWS, GCP) and on-prem systems.

  • Hands-on experience with scripting (PowerShell, Python) and automation.

  • Knowledge of Active Directory, Entra ID, MFA, SSO, federation and identity lifecycle.

  • Understanding of AI use cases in IAM.

  • 7+ years in cybersecurity or identity roles, 5+ years in IAM engineering leadership.

  • Experience in regulated environments and large-scale enterprises.

  • Professional certifications such as CISSP, CISM, CISA or IAM-specific qualifications.

  • Strong communication skills and ability to explain technical concepts clearly.

Benefits & conditions

Our benefits are designed to make health happen for our people. Viva, our global wellbeing programme, supports mental, physical, financial, social and environmental wellbeing. We offer flexible working and a range of family-friendly benefits.

Upon joining Bupa you will receive the following benefits and more:

  • Private medical insurance
  • Enhanced pension scheme
  • Annual bonus scheme
  • 25 days holiday + bank holidays
  • Hybrid working options

Why Bupa

We’re a health insurer and provider. With no shareholders, our customers are our focus. Our people are all driven by the same purpose - helping people live longer, healthier, happier lives and making a better world. We make health happen by being brave, caring and responsible in everything we do.

We encourage all of our people to “Be you at Bupa”. We champion diversity and understand the importance of our people representing the communities and customers we serve. That’s why we especially encourage applications from people with diverse backgrounds and experiences.

Bupa is a Level 2 Disability Confident Employer. We aim to offer an interview to every disabled applicant who meets the minimum criteria. We’ll make sure you’re treated fairly and offer reasonable adjustments throughout the recruitment process.

Time Type: Full time

Job Area

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on bupa.wd3.myworkdayjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all