Supportive Bridge Staffing Agency
Job Title: IAM Senior Engineer (Identity and Access Management)
Location: London, Manchester, or Staines (Bupa Place - Willow House)
Salary: From £78,200 per annum (Dependent on Experience) + 10% bonus
Contract Type: Permanent, Full-Time (37.5 hours per week, including weekend/out-of-hours on-call rota)
Working Style: Hybrid (up to 4 days WFH available; various flexible working patterns, hours, and locations considered)
We are partnering to recruit an experienced IAM Senior Engineer to work across Bupa Global, India, and the UK Market Unit. In this critical technology-driven role, you will lead the end-to-end design, development, testing, implementation, integration, and maintenance of Identity and Access Management (IAM) systems and solutions.
As an IAM Senior Engineer through Supportive Bridge, you will safeguard sensitive data, ensure compliance, manage the lifecycle of secrets, keys, and certificates, and help shape a secure, scalable digital infrastructure that supports millions of customers.
Design, configure, develop, integrate, deploy, and maintain Identity Governance and Administration (IGA), Privileged Access Management (PAM), and Electronic Identity Management (EIM) technologies.
Provide expert guidance on IAM design, ensuring scalable, resilient, and secure solutions.
Integrate IAM, PAM, and EIM tools with enterprise systems, cloud platforms (AWS, GCP), directories, and core business applications (e.g., Active Directory, EntraID, HR systems).
Develop custom connectors, workflows, and automated policies for onboarding/offboarding, access provisioning, certificates, keys, and secrets using scripting languages like PowerShell or Python and REST APIs.
Troubleshoot and resolve complex issues related to identities, systems, access accounts, authentication, authorisation, and permissions.
Participate in out-of-hours on-call rotas to support key IAM services as required.
Strong, demonstrable experience in designing, implementing, and operating IGA, PAM, or EIM tools in cloud environments (e.g., BeyondTrust, Delinea, Sailpoint, Saviynt, MS PIM, Fortanix, Venafi).
Deep knowledge of identity protocols (SAML, OAuth, OpenID Connect, LDAP, Kerberos) and cloud integrations (AWS, GCP).
Solid understanding of Active Directory, EntraID, MFA, SSO, identity federation, and group policy management.
Experience with scripting and automation (PowerShell, Python, REST APIs) and an awareness of AI applications in IAM/EIM.
Relevant professional certifications (such as CISSP, CISM, CISA, or specific IAM credentials like CIAM) and a solid grasp of regulatory compliance frameworks (ISO 27001, NIST, GDPR).
Excellent problem-solving capabilities and the ability to communicate technical concepts to diverse stakeholders.
Competitive Remuneration: Starting from £78,200 DOE plus a 10% annual bonus.
Flexible Hybrid Working: Up to 4 days working from home, with comprehensive openness to location, hours, and pattern flexibility.
Comprehensive Leave: 25 days holiday (increasing with service) with options to buy or sell extra days.
Robust Health & Insurance Cover: Bupa health insurance as a benefit in kind, enhanced pension plan, and life insurance.
Wellbeing Support: Access to global wellbeing programs, onsite gyms (or local discounts where unavailable), and online perks.