Identity and Access Management Technology Lead

HESTA

City of Melbourne

On-site

AUD 180,000 - 240,000

Full time

11 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Additional leave
Professional development
Health & wellbeing
Superannuation support

Job summary

HESTA is seeking a Technology Lead – Identity & Access Platforms in Melbourne to own and advance our identity security infrastructure. You will serve as the technical authority for IAM incidents and federated authentication, collaborating with Information Security, applications and audit teams to secure access, governance and privileged processes.

You will shape platform strategy, drive incident root cause analysis, and contribute to roadmaps addressing evolving identity challenges including

Qualifications

  • 5+ years' experience implementing and supporting Okta and/or Entra ID, including federation and conditional access
  • 3+ years' experience with Identity Governance and Privileged Access Management platforms (such as CyberArk, SailPoint or Saviynt)
  • Solid understanding of SAML 2.0, OIDC/OAuth 2.0 and WS‑Federation, including token flows and common failure modes
  • Experience supporting security assurance activities such as audits and control reviews
  • Working knowledge of frameworks like APRA CPS 234 or ISO 27001 is highly regarded, especially in regulated financial services or superannuation

Responsibilities

  • Own the hybrid Okta/Entra ID federation, along with Identity Governance and Privileged Access Management platforms
  • Drive proactive identification and remediation of configuration issues, stale credentials and dormant accounts
  • Lead root cause analysis for IAM incidents and troubleshoot federated authentication flows (SAML, OIDC, WS‑Federation)
  • Contribute to technology roadmaps that anticipate emerging identity challenges, including machine and agentic AI access

Skills

Okta/Entra ID federation
Identity Governance
Privileged Access Management
SAML/OIDC/WS-Federation
Audit & compliance

Tools

CyberArk
SailPoint
Saviynt

Job description

More than one million Australians trust us with their money, and that trust shapes how we work every day. Our members sit at the centre of everything we do, guiding our decisions and the impact we strive to make.

We’re looking for people who are purpose-driven and accountable, who value inclusion and collaboration, and who are proactive in managing risk to protect our members’ long‑term outcomes. In return, you’ll be part of an organisation where your work contributes to strong returns, real‑world impact, and a culture that reflects the communities our members serve.

Careers with Impact
About The Role

As Technology Lead – Identity & Access Platforms, you'll take true technical ownership of the platforms that keep the organisation secure, at a moment when identity itself is being redefined. You'll act as the technical authority for IAM incidents and implementations, working closely with Information Security, application and audit teams to keep authentication, governance and privileged access running reliably, while helping extend that thinking to machine and AI agentic identities, one of the fastest‑moving frontiers in cyber security today. It's a chance to solve real, high‑impact problems rather than maintain the status quo, and to sharpen skills that sit at the leading edge of the profession.

  • Own the hybrid Okta/Entra ID federation, along with Identity Governance and Privileged Access Management platforms
  • Drive proactive identification and remediation of configuration issues, stale credentials and dormant accounts
  • Lead root cause analysis for IAM incidents and troubleshoot federated authentication flows (SAML, OIDC, WS‑Federation)
  • Contribute to technology roadmaps that anticipate emerging identity challenges, including machine and agentic AI access
About You

You're a hands‑on identity engineer who's just as comfortable troubleshooting a failed federation as you are shaping platform strategy for what's next. You bring:

  • 5+ years' experience implementing and supporting Okta and/or Entra ID, including federation and conditional access
  • 3+ years' experience with Identity Governance and Privileged Access Management platforms (such as CyberArk, SailPoint or Saviynt)
  • Solid understanding of SAML 2.0, OIDC/OAuth 2.0 and WS‑Federation, including token flows and common failure modes
  • Experience supporting security assurance activities such as audits and control reviews
  • Working knowledge of frameworks like APRA CPS 234 or ISO 27001 is highly regarded, as is experience in a regulated industry such as financial services or superannuation

More than one million Australians trust us with their money, and that trust shapes how we work every day. Our members sit at the centre of everything we do, guiding our decisions and the impact we strive to make.

We’re looking for people who are purpose‑driven and accountable, who value inclusion and collaboration, and who are proactive in managing risk to protect our members’ long‑term outcomes. In return, you’ll be part of an organisation where your work contributes to strong returns, real‑world impact, and a culture that reflects the communities our members serve.

Bring your authentic and passionate self to this exceptional role #careerswithimpact

Benefits that matter and make a difference for our employees
  • Leave for those moments that matter, an additional 6 days of leave at the end of year, up to 6 days paid volunteer leave, gender neutral paid parental leave of 20 weeks, Gender Affimnation leave, reproductive health and wellbeing leave, Cultural and Ceremonial leave. Access your LSL after 3 years, take AL at half pay, and purchase up to 2 weeks additional leave (just to name a few!).
  • Your Professional development matters, up to $5k per year professional development and up to 8 days professional development leave, HESTA scholarships and free access to a range of premium learning tools.
  • Your health and wellbeing matters, free annual flu shots and skin checks, incredible social events throughout the year and a comprehensive employee assistance program available 24/7.
  • Your financial wellbeing matters, up to 15% super, financial planning support, end of year payment for all Enterprise Agreement‑covered employees, incentivised Employee Referral Program and novated lease options.

We celebrate, value and include people of all backgrounds, genders, identities, cultures and abilities. We welcome and support applications from First Nations people, physically, neuro or culturally diverse, LGBTQI+, and people of any age. We are proud to be WGEA accredited as an Employer of Choice for Gender Equity.

We want all candidates to feel safe, included and provided with the best opportunity to thrive, if you require reasonable adjustments during your application or throughout the recruitment process, please reach out to a member of the Talent team careers@hesta.com.au and we’ll call you to discuss.

Please note: Applications via recruitment agencies will not be accepted for this position

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Identity and Access Management Technology Lead
Identity and Access Management Technology Lead

HESTA Super Fund • City of Melbourne

On-site
AUD 180,000 - 230,000
Paid parental leave
Professional development support
Health and wellbeing programs
+1
Identity and Access Management Technology Lead
Identity and Access Management Technology Lead

HESTA Super • City of Melbourne

On-site
AUD 150,000 - 190,000
Leave for moments that matter
Professional development
Health & wellbeing program
+1
Identity and Access Lead
Identity and Access Lead

Australian Payments Plus • Sydney

On-site
AUD 180,000 - 260,000
Identity and Access Lead
Identity and Access Lead

Australian Payments Plus Limited • Sydney

Hybrid
AUD 150,000 - 210,000
Security Engineer - Okta
Security Engineer - Okta

The Missing Link • North Sydney Council

Hybrid
AUD 120,000 - 190,000
Hybrid working
Ongoing training
Career development
+1
Cloud Engineer
Cloud Engineer

HESTA • City of Melbourne

On-site
AUD 120,000 - 160,000
Additional annual leave
Volunteer leave
Parental leave
+3
Information Security Architect
Information Security Architect

HESTA Super Fund • City of Melbourne

On-site
AUD 150,000 - 210,000
Extra leave
Volunteer leave
Parental leave 20 weeks
+3
Information Technology
Information Technology

Australian Financial Complaints Authority • City of Melbourne

Hybrid
AUD 150,000 - 190,000
Silver AWEI Accreditation 2025
Accredited Family Friendly Workplace
Hybrid working
+1
Information Technology
Information Technology

Australian Financial Complaints Authority • Sydney

Hybrid
AUD 180,000 - 240,000
Hybrid working
Silver AWEI Accreditation 2025
Accredited Family Friendly Workplace
Senior IAM Engineer
Senior IAM Engineer

Australian Financial Complaints Authority Limited • City of Melbourne

Hybrid
AUD 150,000 - 190,000
Silver AWEI Accreditation 2025
Accredited Family Friendly Workplace
Hybrid working
+1