Security Platforms Engineer – IAM & PAM (Contract, Inside IR35)

Lorien

Greater London

Hybrid

GBP 92,000 - 148,000

Full time

28 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Lorien is seeking a Security Platforms Engineer to join its Security Platforms & Architecture team as the first hire in a newly forming security run function. The role focuses on embedding security into projects at design/go-live and taking hands-on ownership of IAM and PAM platforms in run.

You will work in a predominantly Microsoft security environment, providing governance and advisory input on Secure by Design while also performing light configuration and engineering work as solutions land

Qualifications

  • Experience delivering secure-by-design architectures in complex enterprises.
  • Hands-on config/admin of Microsoft security tooling across identity, endpoints, cloud, monitoring.
  • Familiarity with IAM/PAM concepts and tooling is preferred.

Responsibilities

  • Embed secure-by-design principles across projects from design to go-live.
  • Conduct security design reviews and threat modelling.
  • Own IAM/PAM platforms in run state after delivery.
  • Manage Microsoft security platforms, including config and integrations.
  • Coordinate with MSPs and internal SecOps teams.
  • Develop standards and documentation for scalable practices.

Skills

Secure-by-design delivery
Architecture reviews
Security assurance
Microsoft security tooling
IAM/PAM platforms
Stakeholder management
Self-motivated

Tools

Delinea
StrongDM

Job description

Security Platforms Engineer - IAM & PAM (Contract, Inside IR35)

Location: London (1-2 days per week in office, remainder remote)

Contract: Initial 6 months, with potential to extend

IR35 Status: Inside IR35

Our client, a large, complex enterprise organisation, is looking for a Security Platforms Engineer to join their Security Platforms & Architecture team as their first hire into a newly forming security run function. This is a genuine opportunity to help shape and scale a capability from the ground up, rather than stepping into a fully established team.

The role sits across two core areas: embedding security into technology projects at the design stage, and taking hands-on ownership of identity and access management (IAM) and privileged access management (PAM) platforms once they move from delivery into steady-state operation. You'll work in a predominantly Microsoft security environment, providing governance and advisory input on Secure by Design processes while also picking up light configuration and engineering work as solutions land in run.

What you'll be doing:
  • Partnering with project and delivery teams to embed secure-by-design principles from the earliest stages of a project through to go-live
  • Conducting security design reviews, threat modelling, and go-live readiness assessments
  • Taking operational ownership of IAM and PAM platforms as they're onboarded from project delivery into business-as-usual
  • Managing and enhancing Microsoft-focused security platforms, including configuration, integrations, and day-to-day platform support
  • Coordinating with managed service providers and internal SecOps teams where operational responsibilities are shared
  • Developing security standards, guidance, and documentation to support consistent, scalable practices
What we're looking for:
  • Proven experience in secure-by-design delivery, architecture reviews, or security assurance within complex enterprise environments
  • Hands-on experience configuring or administering Microsoft security tooling, ideally spanning identity, endpoint, cloud, and monitoring
  • Exposure to IAM/PAM platforms and concepts (tools such as Delinea or StrongDM would be a strong plus)
  • Strong stakeholder management skills, comfortable working across architecture, engineering, and delivery teams
  • A pragmatic, self-motivated approach, able to operate with minimal supervision and adapt as priorities shift

This is a fast-moving process with a short timeline, ideal for someone who wants to make an early, visible impact building a new function rather than joining an already-mature team.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

GCS Recruitment • England

On-site
GBP 96,000 - 138,000
Cyber Security Engineer - London
Cyber Security Engineer - London

GCS • Greater London

On-site
GBP 70,000 - 110,000
Identity and Access Management (IAM) Security Engineer
Identity and Access Management (IAM) Security Engineer

Dianaduggan • Greater London

Hybrid
GBP 110,000 - 130,000
Umbrella pay framework
PAM Engineer (Windows Specialist)
PAM Engineer (Windows Specialist)

Experis UK • Lincoln

Hybrid
GBP 111,000 - 115,000
Cyber Security Analyst - Microsoft Security / IAM - Contract
Cyber Security Analyst - Microsoft Security / IAM - Contract

Searchability • West of England

Hybrid
GBP 69,000 - 96,000
Senior PAM Engineer
Senior PAM Engineer

Investigo • Coventry

Hybrid
GBP 75,000 - 95,000
IAM Integration & Remediation Lead
IAM Integration & Remediation Lead

Exceed Cyber limited • Greater London

Hybrid
GBP 180,000 - 234,000
PAM Engineer (Windows Specialist)
PAM Engineer (Windows Specialist)

Experis • Wokingham

Hybrid
GBP 92,000 - 138,000
Security Engineer
Security Engineer

Pontoon • Greater London

Hybrid
GBP 129,000 - 148,000
Security and compliance Architect in London
Security and compliance Architect in London

Energy Jobline ZR • Greater London

Hybrid
GBP 111,000 - 125,000