An application made for this job — a tailored resume and cover letter that speak straight to the posting.
bp is seeking a Senior Identity and Access Management Enablement Engineer to lead onboarding, integration, migration, configuration, readiness, and transition activities for enterprise IAM platforms.
You will guide teams through architecture, security policies, and reusable implementation patterns while enabling secure adoption of identity capabilities across governance, authentication, and PKI. The role collaborates with engineering and support teams in a hybrid work model.
Technology
IT&S Group
You will work as a member of a high-performing team of engineers, collaborating with Identity and Access Management product teams, cyber security teams, architects, control owners, service teams, and business collaborators.
Together, you will enable the secure adoption and effective use of enterprise Identity and Access Management platforms across the identity lifecycle. These platforms support workforce, application, machine, privileged, and partner identities throughout the organisation.
As a Senior Identity and Access Management Enablement Engineer, you will lead sophisticated onboarding, integration, migration, configuration, readiness, and transition activities for enterprise Identity and Access Management platforms.
You will apply broad technical and functional knowledge to help consumers embrace approved identity capabilities securely, consistently, and efficiently. You will guide consumers through established architecture, engineering standards, security policies, control requirements, and reusable implementation patterns.
The role works across Identity and Access Management capabilities such as identity governance and administration, authentication, directory services, privileged access management, identity protection, federation, digital trust, Public Key Infrastructure, and supporting identity infrastructure.
You will partner with Engineering when platform changes or new technical capabilities are required. You will transition operationally ready implementations to Support through a defined handoff that establishes support ownership, documentation, monitoring, implementation evidence, and critical issue arrangements.
A bachelor’s degree or equivalent experience in computer science, engineering, cybefield, or a related discipline, or equivalent practical experience.
At least five years of professional experience in Identity and Access Management, enterprise security, platform enablement, systems integration, service transition, or a related technology field.
Shown experience leading integration, migration, configuration, or adoption activities in a large enterprise environment.
Practical knowledge of at least two Identity and Access Management areas, such as:
Experience working with security policies, architecture standards, operational requirements, compliance controls, and auditable implementation evidence.
Experience collaborating across Engineering, Support, Architecture, Cyber Security, Risk, Compliance, and business-facing teams.
Proven understanding of authentication, authorization, federation, identity lifecycle, privileged access, certificate management, and Zero Trust principles.
Ability to understand enterprise identity architectures, integration dependencies, data flows, control boundaries, and operational requirements.
Experience integrating Identity and Access Management platforms with enterprise applications, cloud platforms, infrastructure services, and automated delivery environments.
Experience using scripting or programming languages such as Python or PowerShell to automate enablement, validation, evidence, and integration activities.
Experience working with application programming interfaces, identity standards, service orchestration, configuration automation, and continuous integration and delivery pipelines.
Experience applying version control, peer review, automated testing, validation, and controlled deployment practices to identity integrations and automation.
Ability to diagnose sophisticated integration and configuration problems, determine responsible technical domain, and coordinate resolution with the appropriate Engineering or Support owner.
Ability to produce clear, maintainable, and auditable implementation documentation, technical procedures, evidence records, and operational handoff materials.
Consumer enablement: Understand consumer outcomes and guide teams toward secure, supportable, and reusable identity solutions.
Structured problem-solving: Analyse sophisticated technical, operational, and control dependencies and coordinate appropriate action.
Security and control awareness: Apply approved security policies, architecture standards, risk requirements, and compliance controls throughout enablement.
Systems thinking: Understand how identity capabilities interact across applications, infrastructure, cloud services, business processes, and security controls.
Teamwork and influence: Build alignment across teams without relying on direct interpersonal authority.
Communication: Explain complex identity concepts, requirements, risks, and decisions clearly to technical and nontechnical audiences.
Evidence field: Produce accurate, complete, and traceable evidence demonstrating implementation and transition readiness.
Continuous improvement: Convert recurring consumer needs and implementation friction into improved patterns, automation, documentation, and platform feedback.
Ownership: Lead sophisticated enablement outcomes to completion while advancing architectural decisions, platform changes, operational incidents, and policy exceptions to their accountable owners.
Experience enabling Identity and Access Management platforms in a global, supervised, or compliance-intensive organisation.
Experience producing implementation, migration, control-readiness, or service-transition evidence.
Experience leading enterprise identity migrations, platform consolidations, or the retirement of legacy identity services.
Experience developing reusable integration patterns, automated onboarding workflows, readiness assessments, or self-service capabilities.
Knowledge of identity-related threats, identity security posture management, conditional access, and risk-based identity controls.
Understanding of service transition, operational readiness, support handoff, incident management, and continual service improvement.
Ability to balance security, usability, operational supportability, compliance, and consumer time to value.
Our purpose is to deliver energy to the world, today and tomorrow. For over 100 years, bp has focused on discovering, developing, and producing oil and gas in the nations where we operate. We are one of the few companies globally that can provide governments and customers with an integrated energy offering. Delivering our strategy sustainably is fundamental to achieving our ambition to be a net zero company by 2050 or sooner!
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status.
Up to 10% travel should be expected with this role
This role is eligible for relocation within country
This position is a hybrid of office/remote working
IAM Tools, Microsoft PKI
We are an equal opportunity employer. We do not discriminate on the basis of protected characteristics like race, religion, color, sex, national origin, sexual orientation, veteran status or disability status. Individuals with an accessibility need may request an adjustment/accommodation related to bp's recruiting process (e.g., accessing the job application, completing required assessments, participating in telephone screenings or interviews, etc.).
If you are selected for a position and depending upon your role, your employment may be contingent upon adherence to local policy. This may include pre-placement drug screening, medical review of physical fitness for the role, and background checks.