Tank RecruitmentDublin

Identity Lead

Project-Based

Description

Identity Lead - OUTSIDE IR35

About the Role The Senior Identity Security Engineer within the Cyber Engineering & Architecture function, will be responsible for the lifecycle, performance, and strategic direction of the organisation's identity security and identity and access management (IAM) platforms and services, including Privileged Access, to ensure digital identities (employees, contractors, machines) are properly managed, secured, and governed and access to company systems are appropriate protected. This role will have ownership of identity security policies, standards, architectures and technologies to deliver identity services, including oversight of the management and operations of Identity platforms and critical infrastructure (Active Directory & MS Entra). Context Reporting to the Head of Cyber Engineering & Architecture, this role will develop and manage centralised identity controls and services for the organisation, delivering a simple, frictionless and self-service end user experience, while enabling robust controls that protect company digital identities. Automation in identity management will be key, standardising IAM processes, reducing human error and accesses needed for manual activities in AD / Entra, limiting exposure to identity compromises. This role will be a key contributor and collaborator with the overall IT & Cyber teams, to ensure identity controls are part of an integrated strategy, protecting our applications and data, and enabling effective incident detection and response. Initial Success Factors * Build Identity security zero trust reference architecture and standards for fundamental compliance, defensive, preventive and responsive controls * Deliver automation improvements for joiners/movers/leavers and access governance workflows, reducing manual tasks, misconfigurations and admin accesses by support staff * Establish baseline of the current identity security posture, identifying opportunities for quick wins addressing critical risks, control or process gaps. * Implement initial identity security posture improvements e.g. AD & Entra configuration hardening, privileged access hygiene, high risk non-compliance metrics Principal Accountabilities * Own identity security policies, standards and architecture patterns across AD, Entra, PAM, and IAM/IGA services. * Lead program of continuous improvements of identity security controls, PAM and IAM lifecycle processes, enabling self-service and scalable services through automation * Own security posture management for Active Directory and Entra configurations and infrastructure, treating identity as a critical enterprise asset. * Lead design and governance of identity lifecycle management processes and controls for employees, contractors, third parties and non-human identities. * Own privileged access management requirements and secure patterns as part of identity services (privileged access lifecycle, role design, access reviews). * Lead the engineering and governance of IAM workflows via SailPoint (access requests, provisioning/deprovisioning, certifications/access reviews, RBAC/role models). * Provide SME support during incidents relating to identity compromise, privileged access misuse or access control failures, and drive root-cause remediation. * Ensure alignment with compliance requirements & regulations Additional Accountabilities / Responsibilities * Stay informed of threats facing the organization to proactively drive ongoing improvements in our overall identity risk posture * Partner with technology teams to embed secure-by-design identity patterns into applications and platforms (authentication, authorisation, SSO patterns). * Collaborate with Cyber Defence to ensure identity telemetry and signals support detection and response use cases. * Maintain identity security blueprints, standards and documentation to support consistent implementation and audit readiness. * Provide direction and oversight to third party providers that are supporting and operating identity services and platforms * Collaborate with IT and support teams, to continually identify opportunities to automate identity or access related tasks, removing the needs for privileged access into AD Qualifications, Competencies and Experience Essential Qualifications / Experience * Minimum of 12 years' industry experience with at least 8 years in identity hands-on roles. * Proven technical experience with Active Directory and Entra (Azure AD) in enterprise environments and maintaining secure configuration and posture of same. * Hands-on experience deg, implementing and governing identity lifecycle and access lifecycle processes using an IGA platform * Experience deg & implementing privileged access management controls and processes * Experience implementing zero trust patterns and controls * Relevant certifications e

Skills

IAMSecuritySSOComplianceIdentity ManagementSsoAzureIam