2 hours ago
London, United KingdomSenior
Responsibilities
- Design, implement, and support enterprise authentication and identity federation services.
- Develop standardized application onboarding patterns using SAML, OAuth 2, and OpenID Connect.
- Improve the identity provider estate, including PingFederate, PingAM, and cloud identity platforms.
- Engineer secure privileged access solutions using Teleport and Just-in-Time access principles.
- Define standards for service accounts, certificates, secrets, and machine identities.
- Build APIs and automation to simplify identity platform operations.
- Partner with engineering teams to deliver reusable and secure authentication services.
- Improve monitoring, alerting, logging, documentation, and automation.
- Support migration from bespoke authentication implementations to enterprise IAM standards.
Requirements
- Experience engineering and operating enterprise IAM platforms.
- Experience with identity providers such as PingFederate, PingAM, Microsoft Entra ID, or Okta.
- Strong understanding of authentication, authorization, Active Directory, LDAP, and privileged access management.
- Experience with platform engineering practices including infrastructure as code, CI/CD, automation, and observability.
- Software engineering experience in C#, Java, Python, or Go.
- Experience building APIs and automating identity platform services.
- Experience supporting hybrid on-premises and cloud identity platforms, including Kubernetes.
Benefits
- Highly competitive compensation plus an annual discretionary bonus.
- Lunch provided through Just Eat for Business and a dedicated barista bar.
- 35 days of annual leave.
- 9% company pension contributions.
- Informal dress code and excellent work-life balance.
- Comprehensive healthcare and life assurance.
- Cycle-to-work scheme.
- Monthly company events.
- Inclusive work environment with accommodation available for applicants with disabilities or special needs.
- Based at the company’s London headquarters.
