The role
We're looking for an experienced Identity and Access Management (IAM) Platform Engineer to own and evolve our authentication, identity federation, credential management and privileged access platforms.
You will help modernise our identity infrastructure, replacing bespoke authentication patterns with scalable, standards-based IAM services that are secure, automated and easy for engineering teams to consume.
You'll help shape the future of authentication and privileged access within one of the world's leading quantitative research firms, working on large-scale engineering problems rather than traditional operational IAM.
Key responsibilities
- Designing, implementing and supporting enterprise authentication and identity federation services
- Developing standard onboarding patterns for applications using SAML, OAuth2 and OpenID Connect
- Improving and rationalising our identity provider estate, including PingFederate, PingAM and cloud identity platforms
- Engineering secure privileged access solutions using Teleport and Just-in-Time access principles
- Defining standards for service accounts, certificates, secrets and machine identities
- Building APIs and automation to simplify identity platform operations
- Partnering with engineering teams to deliver reusable, secure authentication services
- Improving operational maturity through monitoring, alerting, logging, documentation and automation
- Supporting migration away from bespoke authentication implementations towards enterprise IAM standards
Who are we looking for?
- Experience engineering and operating enterprise IAM platforms
- Experience with enterprise identity providers such as PingFederate, PingAM, Microsoft Entra ID or Okta
- Strong understanding of authentication, authorisation, Active Directory, LDAP and privileged access management
- Experience applying modern platform engineering practices, including infrastructure as code, CI/CD, automation and observability
- Software engineering experience in languages such as C#, Java, Python or Go
- Experience building APIs and automating identity platform services
- Experience supporting hybrid on-premises and cloud identity platforms, including Kubernetes
Why join us?
- Highly competitive compensation plus annual discretionary bonus
- Lunch provided via Just Eat for Business and dedicated barista bar
- 35 days’ annual leave
- 9% company pension contributions
- Informal dress code and excellent work-life balance
- Comprehensive healthcare and life assurance
- Cycle-to-work scheme
- Monthly company events