IAM Platform Engineer - Authentication, Credentials & PAM

Barlowe LLP

Greater London

On-site

GBP 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Highly competitive compensation plus \

Job summary

G-Research is seeking an experienced IAM Engineer to design, implement and operate enterprise authentication and identity federation services from our London HQ. You will work with PingFederate, PingAM, Microsoft Entra ID and Okta, shaping secure access across hybrid on-prem and cloud platforms.

The role requires deep knowledge of authentication, authorization and privileged access management, plus strong platform engineering practices. A competitive package and growth opportunities await.

Qualifications

  • Experience engineering and operating enterprise IAM platforms.
  • Experience with enterprise identity providers such as PingFederate, PingAM, Microsoft Entra ID or Okta.
  • Strong understanding of authentication, authorisation, Active Directory, LDAP and privileged access management.
  • Experience applying modern platform engineering practices, including infrastructure as code, CI/CD, automation and observability.
  • Software engineering experience in languages such as C#, Java, Python or Go.
  • Experience building APIs and automating identity platform services.
  • Experience supporting hybrid on-premises and cloud identity platforms, including Kubernetes.

Responsibilities

  • Designing, implementing and supporting enterprise authentication and identity federation services
  • Developing standard onboarding patterns for applications using SAML, OAuth2 and OpenID Connect
  • Improving and rationalising our identity provider estate, including PingFederate, PingAM and cloud identity platforms
  • Engineering secure privileged access solutions using Teleport and Just-In-Time access principles
  • Defining standards for service accounts, certificates, secrets and machine identities
  • Building APIs and automation to simplify identity platform operations
  • Partnering with engineering teams to deliver reusable, secure authentication services
  • Improving operational maturity through monitoring, alerting, logging, documentation and automation
  • Supporting migration away from bespoke authentication implementations towards enterprise IAM standards

Skills

Enterprise IAM platforms
Identity providers (PingFederate, Ping

Tools

Kubernetes
CI/CD
Infrastructure as Code

Job description

We tackle the most complex problems in quantitative finance, by bringing scientific clarity to financial complexity. From our London HQ we unite world‑class researchers and engineers in an environment that values deep exploration and methodical execution – because the best ideas take time to evolve. Together we’re building a world‑class platform to amplify our teams’ most powerful ideas. Security is foundational to this mission and must be delivered in a way that supports how our engineering teams build and operate complex systems at scale.

Key responsibilities
  • Designing, implementing and supporting enterprise authentication and identity federation services
  • Developing standard onboarding patterns for applications using SAML, OAuth2 and OpenID Connect
  • Improving and rationalising our identity provider estate, including PingFederate, PingAM and cloud identity platforms
  • Engineering secure privileged access solutions using Teleport and Just‑in‑Time access principles
  • Defining standards for service accounts, certificates, secrets and machine identities
  • Building APIs and automation to simplify identity platform operations
  • Partnering with engineering teams to deliver reusable, secure authentication services
  • Improving operational maturity through monitoring, alerting, logging, documentation and automation
  • Supporting migration away from bespoke authentication implementations towards enterprise IAM standards
Qualifications
  • Experience engineering and operating enterprise IAM platforms
  • Experience with enterprise identity providers such as PingFederate, PingAM, Microsoft Entra ID or Okta
  • Strong understanding of authentication, authorisation, Active Directory, LDAP and privileged access management
  • Experience applying modern platform engineering practices, including infrastructure as code, CI/CD, automation and observability
  • Software engineering experience in languages such as C#, Java, Python or Go
  • Experience building APIs and automating identity platform services
  • Experience supporting hybrid on‑premises and cloud identity platforms, including Kubernetes
Benefits
  • Highly competitive compensation plus annual discretionary bonus
  • Lunch provided via Just Eat for Business and dedicated barista bar
  • 35 days’ annual leave
  • 9% company pension contributions
  • Informal dress code and excellent work‑life balance
  • Comprehensive healthcare and life assurance
  • Cycle‑to‑work scheme
  • Monthly company events
Equal Employment Opportunity

G-Research is committed to cultivating and preserving an inclusive work environment. We value diversity of experience and opinions and aim to provide a recruitment experience that enables applicants to perform at their best. If you have a disability or a special need that requires accommodation, please let us know in the relevant section.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IAM Platform Engineer - Authentication, Credentials & PAM
IAM Platform Engineer - Authentication, Credentials & PAM

G-Research • Greater London

On-site
GBP 90,000 - 130,000
35 days' annual leave
9% pension contributions
Healthcare
+4
IAM Platform Engineer – Authentication, Credentials & PAM
IAM Platform Engineer – Authentication, Credentials & PAM

G-Research • Greater London

On-site
GBP 90,000 - 140,000
Lunch via Just Eat
Barista bar
35 days leave
+5
IAM Platform Engineer - Identity, Entitlements & Authorisation
IAM Platform Engineer - Identity, Entitlements & Authorisation

G-Research • Greater London

On-site
GBP 85,000 - 110,000
Annual discretionary bonus
Lunch provided
35 days annual leave
+6
IAM Platform Engineer – Identity, Entitlements & Authorisation
IAM Platform Engineer – Identity, Entitlements & Authorisation

G-Research • Greater London

On-site
GBP 90,000 - 125,000
Annual discretionary bonus
35 days annual leave
9% company pension contributions
+3
IAM Platform Engineer – Identity, Entitlements & Authorisation
IAM Platform Engineer – Identity, Entitlements & Authorisation

Barlowe LLP • Greater London

On-site
GBP 70,000 - 110,000
Competitive compensation
Annual discretionary bonus
Lunch provided
+4
Identity & Access Management (IAM) Engineering Manager
Identity & Access Management (IAM) Engineering Manager

Barlowe LLP • Greater London

On-site
GBP 150,000 - 210,000
Competitive compensation
Annual discretionary bonus
35 days leave
+4
IAM Platform Engineer: Auth, Privileged Access & PAM
IAM Platform Engineer: Auth, Privileged Access & PAM

G-Research • Greater London

On-site
GBP 90,000 - 130,000
35 days' annual leave
9% pension contributions
Healthcare
+4
Identity & Access Management (IAM) Engineering Manager
Identity & Access Management (IAM) Engineering Manager

G-Research • Greater London

On-site
GBP 90,000 - 130,000
Lunch via Just Eat for Business
35 days leave
9% pension contributions
+4
IAM Platform Engineer – Authentication, PAM & Federation
IAM Platform Engineer – Authentication, PAM & Federation

Barlowe LLP • Greater London

On-site
GBP 90,000 - 130,000
Highly competitive compensation plus \
IAM Platform Engineer: Identity Automation & Access
IAM Platform Engineer: Identity Automation & Access

G-Research • Greater London

On-site
GBP 85,000 - 110,000
Annual discretionary bonus
Lunch provided
35 days annual leave
+6