A complete application in a minute — tailored resume and cover letter, ready to send.
Dyson Institute is seeking an Identity and Access Security Engineer to design, engineer, and operate robust identity controls protecting workforce identities, devices, and enterprise access paths. You will enforce strong authentication, zero-trust access, and identity governance while managing privileged accounts and joiner/mover/leaver processes.
You will lead domains including Conditional Access, PIM, identity lifecycle, threat monitoring, and SSO modernization, collaborating with
As the Identity and Access Security Engineer, you are accountable for designing, engineering, and operating robust identity security controls that protect workforce identities, endpoint devices, and corporate access pathways across the enterprise. Operating as a technical specialist, you will enforce strong authentication, zero-trust access, and identity governance controls. By engineering seamless protection mechanisms, managing privileged accounts, and securing Joiner, Mover, and Leaver processes, you will mitigate identity threats and continuously harden authentication pathways against compromise. In this role, you will lead and manage the following domains:
In-depth technical knowledge of modern identity protocols (SAML 2.0, OAuth 2.0, OIDC, FIDO2) and threat vectors targeting identities (password spraying, token theft, phishing-resistant MFA bypass).
Hands-on engineering expertise in Entra ID (Azure AD), Privileged Identity Management (PIM), Conditional Access, Entra ID Governance, SSO, Federation, and MFA controls.
Ability to identify identity exposure risks, prioritize identity security controls based on privilege and threat context, and minimize identity attack surfaces.
Experience designing automated lifecycle management workflows (Joiner, Mover, Leaver) and establishing granular access control governance frameworks.
Proven track record of managing identity control platforms, meeting operational SLAs, and executing seamless tenant-wide identity migrations.
Ability to extract insights from authentication logs and identity risk scores to visualize identity posture, sign-in risks, and policy enforcement effectiveness.
Strong communication skills to collaborate with infrastructure, HR, and business applications teams to embed secure identity practices without hindering productivity.
Ability to incorporate real-time identity risk signals and CTI feeds into dynamic, risk-based authentication and access policies.
Capability to drive identity security outcomes across technical groups through influence, clear technical guidance, and collaborative problem-solving.
A strong focus on automation using PowerShell, Graph API, or SCIM provisioning to eliminate manual access assignments and reduce operational drift.
Conditional Access and Policy Engineering Accountability: Engineer, maintain, and continuously tune adaptive Conditional Access policies to enforce risk-based, zero-trust controls. Success Measures: 100 percent of workforce sign-ins protected by modern MFA or passwordless authentication standards; zero unauthorized access breaches resulting from misconfigured access policies.
Privileged Identity and Lifecycle Governance Accountability: Implement PIM and engineer lifecycle processes to govern privileged access and automate Joiner, Mover, and Leaver security controls. Success Measures: 100 percent of administrative roles subject to Just-In-Time (JIT) access and approval workflows via PIM; 0 percent residual active accounts remaining for departed personnel beyond defined SLA windows.
Threat Remediation and Weakness Mitigation Accountability: Continuously monitor identity telemetry, identify vulnerabilities in authentication, and execute swift remediation workflows. Success Measures: Substantial reduction in MTTR for risky user alerts and identity threat detections; active reduction of legacy authentication protocols across the organization to less than 1 percent.
Dyson is an equal opportunity employer. We know that great minds don’t think alike, and it takes all kinds of minds to make our technology so unique. We welcome applications from all backgrounds and employment decisions are made without regard to race, colour, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other any other dimension of diversity. At Dyson we are focused on solving the problems that others have ignored; solving them first using our technology and ingenuity. In order to achieve this we need to pioneer technologies that are different and authentic. This is the core of what we do and who we are. We must strive to create the future, every single day by developing new things, different things, things that go against the grain with a diverse and global team of ingenious minds. Dyson employs 14,000 people and is present in more than 80 countries. And while we are growing fast we want Dyson to remain a start-up in spirit with the freedom of experimentation and learning, constantly reinventing our products as well as reinventing how we work, how we sell and how we support our owners. At the same time we are working through the James Dyson Foundation, James Dyson Award and Dyson Institute to inspire future engineers and pioneering a new approach to engineering education. Underlining everything we do in this diverse environment is the need to always show respect, supporting each other as one team to overcome whatever challenges we encounter. We drive empowerment, development and equality in an inclusive environment for our people around the world. The future doesn’t just happen, we look to make it happen, to achieve leaps through pioneering new ideas.