Senior Identity Security Engineer responsible for designing and enhancing identity environments across Microsoft platforms. Collaborating with teams to deliver secure certificate services in hybrid and cloud settings.
Responsibilities
Design and architect modern Microsoft identity platforms, including new Active Directory and Entra ID environments, design patterns, standards and long-term roadmaps for secure, scalable foundations
Integrate third-party identity services, including platforms such as Okta, Ping, Duo, Auth0 and Yubico
Assess and improve existing identity environments by identifying risks, technical debt, reliability issues and leading the engineering work to implement practical, measurable improvements
Engineer PKI and certificate lifecycle services at scale, including PKI/ADCS design and operation, certificate automation, cloud integrations and modern machine-identity use cases
Plan and lead safe migrations and legacy exits, including decommissioning legacy AD forests, MIM, ADFS and outdated identity components
Drive adoption of passwordless and modern authentication, implementing solutions such as Windows Hello, passkeys, FIDO2 and supporting clients through change and adoption
Evolve organisations toward cloud-first identity models, implementing hybrid identity strategies, modern authentication, attribute mastering and secure workload/device identity patterns
Automate identity and certificate operations using automation, DevSecOps practices and infrastructure-as-code to deliver secure, consistent and maintainable identity services
Advising clients on IAM best practices, standards and regulatory requirements, including GDPR, ISO 27001, NIST Frameworks
Requirements
Strong engineering background with deep expertise across Active Directory, Entra ID and PKI/ADCS in large, complex environments
Pragmatic, methodical problem-solver able to diagnose and resolve identity issues end-to-end in hybrid platforms
Effective communicator and collaborator, working across architecture, engineering and operations teams
Trusted by clients and colleagues; delivers practical, secure solutions that reduce real-world risk
Broad experience across Active Directory, PKI, hybrid identity and modern authentication, including tiering, automation and identity hygiene
Skilled in identity migrations and legacy exits, covering AD consolidation, ADFS/MIM retirement and modernisation
Strong automation capability with PowerShell, CI/CD, monitoring and IaC to improve reliability and consistency
Experience in Microsoft identity & security certifications (SC-300, SC-100, AZ-500 or equivalent AD/Entra/PKI qualifications)
Security or architecture credentials like CISSP, ISSAP, CRISC, TOGAF or SABSA
Cloud platform certifications across Azure, AWS, GCP or Terraform
Benefits
A collaborative and supportive environment in which you can grow and develop your career
The tools and opportunity to do work you can be proud of
A chance to work alongside some of the best people in the industry, who always seek to share their knowledge and experience
Hybrid working – we empower you to make smart choices about when and where to work to achieve great results
Industry leading coaching and mentoring
Competitive salary and an excellent benefits package
Senior ML Security Engineer developing security tools and frameworks for ML workflows. Ensuring proactive vulnerability detection and compliance with ML security standards at NXP.
Lead a multidisciplinary team at NXP focused on the proactive identification and analysis of security vulnerabilities in semiconductor products. Drive innovative approaches to security testing and team management.
Security Architect designing security architectures for embedded products at NXP. Collaborating with teams on threat assessments and managing security requirements in IoT/Automotive domains.
Security Software Engineer at Pinterest developing IAM infrastructure and tools for identity and authorization. Collaborating on mission - critical features in a team - focused environment.
Senior Network and Security Information Analyst defining and implementing network and information security at Airbus. Managing security assets and compliance across the organization while documenting and reporting vulnerabilities.
Associate Consultant for Microsoft Security focused on supporting the delivery of security solutions. Collaborate with experienced consultants and learn in a remote - first environment with occasional onsite work.
Software Engineering Intern at Red Hat working on the security of software production pipelines. Contributing to projects involving AI tools and secure development practices in Brno, Czech Republic.
Technical support intern assisting clients and monitoring backup systems. Involves client interaction, system maintenance, and adherence to legal standards.
GRC Lead managing security compliance and risk governance in Egypt. Driving initiatives for ISO 27001 alignment and overseeing security audits and policies.
Cybersecurity Engineer responsible for safeguarding information systems and developing cyber security capabilities. Involves project management and collaboration through all phases of software development lifecycle.