Jobs
>
London

    Senior Infosec Identity Engineer - Greater London, United Kingdom - World Fuel Services

    Default job background
    Description

    Essential Functions

    • Take a lead role in the delivery of BAU Identity and Access management operations.
    • Participate in the design, installation, maintenance, upgrades, and troubleshooting of applications and tools directly impacting the InfoSec Identity service deliverables.
    • Active Directory (AD), Azure Active Directory/Entra ID:
    • Analyze, design, implement, and support the hybrid on-premises and cloud Active Directory environment.
    • Collaborate with business and technical partners to integrate systems and applications with centralized authentication using AD.
    • Implement security baselines and recommended best practices for AD.
    • Provide subject matter expertise on Azure AD and Entra ID.
    • Support and maintain Entra ID Enterprise Applications and other integrated solutions
    • Collaborate closely with global cross-functional teams to ensure stability and security.
    • Support synchronization and federation between on-premises AD, Azure AD, and Entra ID.
    • Troubleshoot and optimize synchronization processes to maintain consistency across environments.
    • Privileged Management (PIM, PAM, and Endpoint Privilege Management):
    • Implement time-based and approval-based role activation to mitigate risks associated with privileged accounts.
    • Administer PAM platforms, including Centrify, CyberArk, and Quest Active Roles Server.
    • Design and implement controls for managing privileged access on endpoints (Windows, macOS, Linux).
    • Collaborate with system administrators and security teams to enforce least privilege principles.
    • Implement and manage role-based access control (RBAC) for various systems and applications.
    • Define and enforce group-based access policies to elevate privileges when necessary.
    • Identity Governance and Administration (IGA):
    • Contribute during phases of design, configuration, deployments, and operations in the area of IAM.
    • Work on access management, identity governance, and identity management solutions.
    • AWS Identity and Azure Identity:
    • Leverage AWS Identity and Access Management (IAM) and Azure Active Directory for secure cloud identity management.
    • Integrate IAM policies and roles with AWS services and Azure resources.
    • Develop and maintain integrations between Entra ID and Linux-based systems.
    • Ensure seamless authentication and authorization for Linux users.
    • Automation of User and Device Onboarding/Offboarding:
    • Develop and maintain scripts or workflows to automate user and device provisioning and deprovisioning.
    • Streamline the onboarding and offboarding processes to enhance efficiency and security.
    • Application Certification and Secret Lifecycle Management:
    • Collaborate with application owners to certify and manage access to critical applications.
    • Ensure secure handling of application secrets (API keys, passwords, etc.) throughout their lifecycle.
    • Participate in on-call rotation, providing 24x7 escalation capabilities
    • Participation within incident response efforts as Incident Commander.
    • Other duties as assigned or directed.

    Education, Experience, and Skills required

    • Proven experience as a Senior Active Directory/Entra ID Engineer or similar role with a 5 to 8 years of experience.
    • Advanced knowledge of Active Directory, Azure Active Directory/Entra ID, Lightweight Directory Access Protocol (LDAP).
    • Familiarity with PIM, PAM, and IGA concepts.
    • Experience with endpoint privilege management, AWS IAM, Azure AD, and Linux integration.
    • 1+ years of experience with cloud infrastructure, networking and security, preferably with AWS and Azure. Platform certification are a plus.
    • Experience with orchestration and automation solutions utilizing a variety of API's, scripting languages or commercial orchestration tools.
    • Experience with creating and reviewing workflow processes and technical documentation.
    • Comfortable with mentoring other team members, providing guidance and direction during incident response and engineering efforts.
    • Familiarity with regulations and frameworks such as NIST, PCI, SOC, HIPAA, SSAE 16/SOC 1, SOC 2, ISO 17799/27002
    • Preferred but not required:
    • Bachelor's degree in CyberSecurity, computer science, Information Technology or related field or equivalent work experience
    • Relevant Microsoft certifications such as Microsoft Certified: Identity and Access Administrator Associate, Microsoft Certified: Azure Security Engineer Associate, or other industry certifications (e.g., CISSP, CISM, CompTIA Security+).
    • Certifications including but not limited to: CISSP – Certified Information
    • Systems Security Professional, CISM – Certified Information Security
    • Manager, ISSAP – Information Systems Security Architecture Professional,
    • CEH – Certified Ethical Hacker, AWS Certified Solution Architect


  • Stott & May Professional Search Limited London, United Kingdom Full time

    Stott & May are currently looking for a Cloud Identity Engineer - IAM (Azure AD) to work for a large intl Banking & Finance giant on an initial 6 month contract. · Location: London (City) · Rate: £350 - £450 per day / Outside IR35 · It's important that we are representing candid ...


  • eFinancialCareers London, United Kingdom

    **Description**: · TEKsystems are currently engaged with a global stock exchange to source a Senior Sailpoint Engineer to join the security team. · **Essential Skill:** · Experience in Identity Access Management with SailPoint Identity Now (IDN) implementation or configuration ex ...


  • LSA Recruit Greater London, United Kingdom

    Job Description · Cloud Identity Engineer · Contract (Outside Ir 35) · Location: London, UK · Skills to be looked at: · Identity Access Management & Azure · Go lang/ Kotlin · Devops · Any Cloud Exp or Knowledge would do · For more info, Please share updated CV at · ...


  • Expedia, Inc. London, United Kingdom

    If you need assistance during the recruiting process due to a disability, please reach out to our Recruiting Accommodations Team through the Accommodation Request form . This form is used only by individuals with disabilities who require assistance or adjustments in applying an ...


  • Data Controller, VE Ltd London, United Kingdom

    London, United Kingdom | Posted on 25/04/2024 · VE3 is a technology and business consultancyfocused on delivering end-to-end technology solutions and products. We havesuccessfully serviced enterprises across multiple markets, including the publicand private sectors. Our services ...


  • VE3 London, United Kingdom

    Job Description · Senior Identity Engineer – SailPoint IdentityNow · Role Overview · The Senior Identity Engineer is pivotal in delivering and supporting high-quality Identity and Access Management (IAM) services, leveraging SailPoint IdentityNow as the core platform. This role e ...


  • VE3 London, United Kingdom

    Senior Identity Engineer – SailPoint IdentityNow · Role Overview · The Senior Identity Engineer is pivotal in delivering and supporting high-quality Identity and Access Management (IAM) services, leveraging SailPoint IdentityNow as the core platform. This role extends to integrat ...


  • Expedia Group London, United Kingdom Full time

    Identity​ Engineer · At Expedia Group, we are seeking a dynamic and experienced Identity Engineer to join our Identity Engineering team. In this role, you will leverage new, innovative technology principles to enhance existing systems and are responsible for leading complex, well ...


  • Dabster Group London, United Kingdom

    3 days ago Be among the first 25 applicants · Job Summary · We are seeking a skilled Cloud Security Engineer with a strong background in Go or Kotlin programming and expertise in identity and access management. As a Cloud Security Engineer, you will be responsible for designing ...


  • Dabster London, United Kingdom

    Job Summary: We are seeking a skilled Cloud Security Engineer with a strong background in Go or Kotlin programming and expertise in identity and access management. As a Cloud Security Engineer, you will be responsible for designing, implementing, and managing cloud security solu ...


  • Parliamentary Digital Service London, United Kingdom

    1 /*generated inline style */ 1 The Opportunity · Bring your IT and network support skills to the heart of parliament, where, as part of the Identity and Access Management team, you'll help us provide secure access to critical digital services within Parliament.You'll learn ho ...


  • Profile 29 Blackfriars, United Kingdom Contract, Full time

    Job: Cisco Identity Services Engine (ISE) Administrator - (London) · This company (a well-recognised train operator) are looking for a Cisco Identity Services Engine (ISE) Administrator to join their team on a 6-month contract. · They are looking for a Cisco Identity Services Eng ...


  • World Fuel Services Greater London, United Kingdom

    Job Description · Essential Functions · Take a lead role in the delivery of BAU Identity and Access management operations. · Participate in the design, installation, maintenance, upgrades, and troubleshooting of applications and tools directly impacting the InfoSec Identity servi ...


  • Man Group plc London, United Kingdom Full time

    Job Profile Summary: · Join our Information Security team, composed of four specialized teams - Identity and Access Management, Operations, Assurance, and Engineering - dedicated to safeguarding Man Group. Partner with the business and tech departments to construct and refine se ...


  • Man Group London, United Kingdom

    Identity and Access Management Engineer page is loaded · Identity and Access Management Engineer · Apply locations London time type Full time posted on Posted 2 Days Ago job requisition id JR004860 Job Profile Summary: · Join our Information Security team, composed of four sp ...


  • Iceberg Cyber Security United Kingdom

    Can you integrate SailPoint into Legacy Systems?My client are the UK's largest mutual life, pensions and investment company and has been on a continuous improvement journey and are looking to expand their team with a new IAM engineer. This hire will become the platform owner so S ...


  • World Fuel Services London, United Kingdom

    Essential FunctionsTake a lead role in the delivery of BAU Identity and Access management operations.Participate in the design, installation, maintenance, upgrades, and troubleshooting of applications and tools directly impacting the InfoSec Identity service deliverables.Active D ...


  • Iceberg Cyber Security United Kingdom

    Can you integrate SailPoint into Legacy Systems? · My client are the UK's largest mutual life, pensions and investment company and has been on a continuous improvement journey and are looking to expand their team with a new IAM engineer. This hire will become the platform owner s ...


  • Cloudsecurityexpo London, United Kingdom

    Can you integrate SailPoint into Legacy Systems? · My client are the UK's largest mutual life, pensions and investment company and have been on a continuous improvement journey and are looking to expand their team with a new IAM engineer. This hire will become the platform owner ...


  • Man Group plc London, United Kingdom Full time

    Job Profile Summary: · Join our Information Security team, composed of four specialized teams - Identity and Access Management, Operations, Assurance, and Engineering - dedicated to safeguarding Man Group. Partner with the business and tech departments to construct and refine s ...