> Markdown version of [/jobs/ext/334849-idam-security-senior-architect](https://www.wearedevelopers.com/jobs/ext/334849-idam-security-senior-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IDAM Security Senior Architect - **Company:** Hays plc - **Location:** Manchester, UK - **Experience:** Expert - **Salary:** £70,000.0 - £105,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Amazon Web Services, User Authentication, Microsoft Azure, Cloud Computing, Cloud Engineering, Linux, DevOps, Multi-Factor Authentication, Identity and Access Management, OAuth, Role-Based Access Control, Azure Active Directory, Cloud Services, Ansible, Security Assertion Markup Language (SAML), Security Information and Event Management, Systems Architecture, Systems Integration, Flexi (Photoshop Plugin), Google Cloud, Malware, Git, Customer Identity Access Management, Ws-federation, Kubernetes, SailPoint, Docker, Jenkins, Microservices - **Published:** June 5, 2026 - **Apply:** https://www.careerjet.co.uk/jobad/gbd07b9628b771f7de04f28e90f0b9b5a3 ## About the Role * Broad enterprise identity experience across IGA, PAM, AM, AD, CIAM, with demonstrable ability to build identity strategies which integrate into client enterprise architectures and beyond. * Experience of working with IGA, PAM, AM, AD, CIAM solutions such as SailPoint, Saviynt, etc. * Experience working in a digital transformation environment supporting the definition of Identity architecture leveraging cloud native and/or other IAM solutions. * Advanced, practical experience with cloud hosting services including, Amazon Web Services, Microsoft Azure, Google Cloud Platform. * Hands-on experience of Microsoft Active Directory/Azure AD Domain Services, Federation Services, Certificate Services, DNS and DHCP. * Understanding of decentralised identity, verifiable credentials, microservices and Trust over IP architecture stack. * Experience with waterfall and agile type methodologies, often working within client-specified frameworks. * Managing teams across a mix of locations, cultures, and experience levels. * Detail oriented and strong problem-solving skills. * Excellent oral and written communication skills. Desirable: * Understanding of malware and the modern threat landscape * Relevant certifications (e.g. CIAM, CISSP, CAMS, etc.) * Exposure to/Understanding of DevOps tools and repositories (e.g. Git, Azure DevOps, Kubernetes, Docker, Jenkins, Ansible etc.) * Role-based access control (RBAC) design * Practical experience with Linux operating systems * Experience with Modern Authentication concepts e.g. Self-Service Identity, Bring your own Identity, SCIM, SAML, WS-Federation, OAuth, Open ID Connect ## Description The team you'll be working within is responsible for providing Identity and Access Management services to a wide range of clients. You'll be working on projects to provide IAM solutions to clients, running IAM diagnostics, assisting with strategy definition and minimising IAM risk for clients. What you'll be doing: * Define IAM use cases, functional and non-functional solution requirements, and technical specifications, such as those for user authentication, access control, integration, performance and scalability requirements and specifications. * Design and architect IAM solutions by creating high-level and low-level designs that align with business objectives and comply with industry cybersecurity standards. * Creating high-level and low-level system architecture diagrams with technical descriptions of each component. * Defining the system specifications to support optimal performance. * Integrating workflows with third-party systems and security tools, such as Security Information and Event Management (SIEM) solutions, multi-factor authentication solutions, and cloud platforms like Amazon Web Services (AWS) and Azure. * Develop technical documentation for IAM implementations including process documentation to enable solution operation (e.g., defining processes for user onboarding, access requests, identity governance, approval workflows, authentication workflows, and provisioning/de-provisioning tasks). * Implement IAM solutions * Install solution components in on-premise environments where relevant, or configuration of cloud components (and scripting / coding of plug-ins / extensions for cloud solutions) ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems)