english-stonex
New

Identity Access Management Operations and Engineering Manager

mid
EngineeringEngineering Manager
0 views0 saves0 applied

Quick Summary

Key Responsibilities

Own the identity service catalogue end to end - joiner, mover and leaver processing, access request, entitlement and group administration, privileged account issuance,

Requirements Summary

This individual must be capable of working with internal an

Technical Tools
EngineeringEngineering Manager

 

Responsibilities

~3 min read

 

  • →Own the identity service catalogue end to end - joiner, mover and leaver processing, access request, entitlement and group administration, privileged account issuance, certificate services and application onboarding and the service levels each commitment carries.
  • →Set the engineering and operations roadmap and act as technical design authority across both core identity platforms; Entra ID with hybrid directory services and Okta as well as identity governance and administration, privileged access management, PKI and certificate lifecycle, federation and single sign-on, and modern authentication.
  • →Run the operational disciplines behind the service: incident and problem management for identity outages, change control, capacity and availability planning, and a documented escalation and on-call model that holds across time zones.
  • →Design, implement and maintain IAM policies, procedures and standards to ensure the confidentiality, integrity and availability of sensitive data and resources.
  • →Manage and lead a team (1-3) of identity engineers and analysts and building coverage so that every platform has more than one engineer, in more than one region, who can safely operate it.
  • →Drive standing privilege down across the estate: run the access certification and recertification cycle, enforce segregation of duties and least privilege, eliminate orphaned and dormant accounts, and bring service, workload and other non-human identities under the same lifecycle discipline as people.
  • →Act as identity manager you will be working with the team and supporting internal audit, external audit and client or scheme assessments including SWIFT CSP, inc. producing evidence on request, owning remediation actions and closing findings to agreed dates.
  • →Automate the routine work out of the service: provisioning and deprovisioning driven from authoritative HR sources, policy and role-based entitlement in place of ticket-by-ticket approval and reporting instrumented so identity risk is visible without a manual data pull.
  • →Own identity data quality and metrics, account ownership, lifecycle state, entitlement mapping and application registration as the foundation every downstream control, report and detection depends on.
  • →Lead directory and tenant consolidation and legacy platform decommissioning, including the absorption of acquired identity estates onto the strategic Entra ID and Okta platforms, working directly with the application teams that depend on those platforms rather than routing every migration through the identity team.
  • →Collaborate with cross-functional teams - security architecture, security operations, enterprise IT, HR, compliance and the business to assess IAM requirements and develop solutions that meet business needs.
  • →Manage external partners and vendors against their commitments, and contribute to forecasting and planning for identity licensing, tooling and headcount.
  • →Maintain IAM process documentation, including end-user guidance, runbooks and team processes and procedures, to a standard that allows work to move between regions without loss.

Requirements

~1 min read
  • Bachelor's or master's degree in computer science, information security or a related field (or equivalent experience).
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred.
  • Okta Certified Professional or Okta Certified Administrator preferred.
  • CISSP, CISM, CyberArk Defender or Sentry, or an equivalent identity governance credential preferred; ITIL foundation or equivalent service management training is a plus.

Nice to Have

~1 min read
  • You have an operations mindset and an engineer's instinct; you see an inefficient process and immediately think of how to automate it away rather than staff it.
  • You thrive in a fast-paced, collaborative environment and are comfortable juggling a live service and a delivery roadmap at the same time.
  • You are equally comfortable in both platforms and can reason about where a capability belongs — Entra ID or Okta — rather than defaulting to the one you know best.
  • You build people as deliberately as you build platforms, and you measure your team by the cover and capability it has, not by the hours it works.
  • You have experience in a Zero Trust program, or with securing non-human identities including service accounts, workload identities and emerging agentic and AI workloads.
  • 4 days' work from office
  • Working hours aligned to India business hours, with overlap into CET / BST.
  • Team distributed across UK, US and Latam locations; participation in an escalation and on-call rotation should be expected.
  • Travel requirements, for leadership meetings and conferences.

Location & Eligibility

Where is the job
—
Location terms not specified
Who can apply
Open to applicants worldwide

Listing Details

Posted
September 25, 2024
First seen
September 25, 2026
Last seen
September 26, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
11%
Scored at
September 26, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

english-stonexIdentity Access Management Operations and Engineering Manager