Identity & Access Management Specialist
Job description
Job Title: Identity & Access Management (IAM) Specialist – (Active Directory, Entra, Okta, SailPoint, CyberArk)
Location: Hybrid
SC Clearance Mandatory for this role.
Overview:
Join a dynamic Identity & Access Management team supporting both IT and Operational Technology systems within a critical utilities environment. This role focuses on implementing and managing corporate and operational identity solutions, ensuring compliance with relevant security frameworks, and supporting the transition of IAM services to third-party partners.
We are seeking a seasoned IAM professional with deep expertise in Active Directory, Entra ID (Azure AD), and Okta , along with experience or familiarity in SailPoint or CyberArk . The ideal candidate will support both Identity Governance & Administration (IGA) and Privileged Access Management (PAM) initiatives while enabling secure hybrid identity integrations across IT and OT platforms.
Key Responsibilities:
Project Delivery & Implementation:
- Support deployment of identity solutions for third-party smart access systems.
- Assist in designing IT and OT identity frameworks, identifying limitations, and resolving system inconsistencies.
- Facilitate smooth transitions across IT and OT environments, including hypercare and process adaptations.
- Investigate and resolve IAM security incidents, access anomalies, and authentication issues.
- Review and monitor Identity Threat Detection & Response (ITDR) systems.
- Collaborate with SOC teams to detect privileged account misuse and insider threats.
Identity & Access Management (IAM):
- Design, implement, and maintain IAM solutions leveraging Active Directory, Entra ID, Okta, SailPoint, and CyberArk.
- Configure Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Conditional Access Policies for OT integration with existing IT tooling.
- Define and enforce Role-Based Access Control (RBAC) and least privilege principles across enterprise and industrial systems.
Identity Governance & Administration (IGA) – SailPoint:
- Implement and manage automated provisioning, deprovisioning, and access certifications via SailPoint.
- Build workflows for user lifecycle management, identity reconciliation, and compliance reporting.
- Integrate SailPoint with Active Directory, Entra ID, SAP, ServiceNow, and other enterprise systems.
Privileged Access Management (PAM) – CyberArk:
- Administer CyberArk PAS for privileged account security.
- Manage Privileged Session Manager (PSM), Vault, and Endpoint Privilege Manager (EPM).
- Monitor privileged access, enforce Just-In-Time (JIT) access, and generate compliance reports.
Hybrid Identity & Security:
- Implement hybrid identity solutions connecting on-prem Active Directory with Azure AD, Okta, and SailPoint for OT environments.
- Apply Zero Trust principles and industry-standard security framework controls to IAM processes.
Compliance & Security:
- Ensure IAM solutions adhere to CAF, eCAF, NIST, and other regulatory frameworks.
- Conduct access audits, identity risk assessments, and compliance reporting.
- Work closely with cybersecurity, risk, and compliance teams to align IAM strategies with regulatory requirements.
Collaboration & Documentation:
- Partner with OT, cybersecurity, compliance, and risk teams to define policies and access controls.
- Develop IAM runbooks, playbooks, and conduct user access reviews.
- Provide IAM training and awareness for employees and technical teams.
Technical Skills & Experience:
- Directory Services: Active Directory (AD DS, AD FS, Group Policy, LDAP, Kerberos, NTLM); Microsoft Entra ID (Azure AD), Conditional Access, Identity Protection.
- IAM Platforms: Okta Identity Cloud – SSO, MFA, API integrations, identity governance.
- OT/ICS Knowledge: SCADA, ICS, and OT identity management.
- Identity Governance: SailPoint IdentityNow/IdentityIQ – access reviews, lifecycle automation, compliance workflows, and enterprise application integration.
- Privileged Access Management: CyberArk – Vault administration, credential rotation, JIT access, session monitoring, compliance reporting.
- Security & Compliance: CAF, eCAF, NIST frameworks; IAM controls for critical infrastructure; incident response and threat detection.
Preferred Certifications:
- Microsoft Certified: Identity and Access Administrator Associate
- Okta Certified Administrator/Professional
- SailPoint IdentityNow/IdentityIQ Engineer
- CyberArk Defender/Guardian
- CISSP or Certified Identity and Access Manager (CIAM)
Preferred Industry Experience:
- OT cybersecurity best practices
- Hybrid cloud identity management for Azure & AWS
Please note - Candidate must have SC Clearance for this position.
Extra information
- Status
- Open
- Education Level
- Secondary School
- Location
- City of London
- Type of Contract
- Casual / Part Time Jobs
- Published at
- 27-12-2025
- Profession type
- Management
- Full UK/EU driving license preferred
- No
- Car Preferred
- No
- Must be eligible to work in the EU
- No
- Cover Letter Required
- No
- Languages
- English
Recommended Jobs
Year 4 Teacher - Independent School in Harrow
Are you ready to take your teaching career to the next level in a school that values your expertise, dedication, and passion? We are looking for an inspirational Year 4 Teacher to join our independe…
Admin Assistant (BR5)
Job Category : Admin / Clerical Location : Civic Centre, Bromley Council Hours Per Week : 36.00 Start Date : Immediate Start Start Time : 08:30 End Time : 17:00 Salary: £10.57 Admi…
Year 6 Class Teacher | High Achieving School in Walthamstow
Are you an inspiring and dedicated Upper Key Stage 2 teacher looking for your next challenge? Do you want to make a meaningful difference at a crucial stage in children’s learning journey? If so, we’…
Junior Education Recruitment Consultant - London
This position is for a junior Education Recruitment Consultant to join an established Teacher Recruitment agency based in Central London. You will be working within a supportive friendly team wh…
SEMH Teaching Assistant
Job Description SEMH Teaching Assistant Primary Barking and Dagenham January 2026 This is a welcoming and inclusive primary school in Barking and Dagenham rated Good by Ofsted with a strong re…
Group Compliance Officer
Why Aqovia? At the intersection of innovation and impact, meet Aqovia. Aqovia is a UK-based technology and investment firm, headquartered in London, dedicated to creating tangible value thro…
Luxury Retail Security Operator
About the Job: Experience in luxury retail or a hospitality background is required for this position. Fahrenheit Security Ltd is currently recruiting for a Luxury Retail Security Officer / Se…
Part-time Housekeeper-Cook in Belgravia, London, Job ID J1F0F7
This lovely family based in Belgravia, London, is seeking a Part-time Housekeeper-Cook to maintain their home. The role involves all general housekeeping duties, as well as preparing meals, including…
Arabic Sales Development Representative
Description About Us: At Sitecore, our mission is to simplify how brands reach, engage, and serve people by delivering intelligent, personalised digital experiences that connect the world. We e…
Director, Global Revs Ops and Strategy Transformation
Location: Hybrid / Remote (UK-based) Department: Revenue Operations (RevOps) Reports To: VP of Revenue Operations Direct Reports: Rev Ops Strategy & Delivery Manager, Change Management Lead, R…