Senior IAM Engineer (Azure)

Public Sector Resourcing (PSR)United KingdomOn-siteContractListed 13 hours ago

Apply now

About this role

### Posting ID
PIP11449

On behalf of The UK Health Security Agency we are looking for a Senior IAM Engineer (Azure) for a 6 month contract. Remote working with occasional office travel.

Please note : An active SC Clearance is an essential requirement for this role, as a minimum you must be willing & eligible to undergo checks. (Please note, due to the exceptional requirements of this position (short-term nature of this role and speed at which we require a postholder in situ) preference may be given to candidates who meet all of the essential criteria and hold active security clearance.)

The UK Health Security Agency (UKHSA) has been set up to provide health security for the nation by protecting from infectious disease and external hazards. It will need to take action like no other organisation previously in order to mitigate threats to health before they materialise. UKHSA will be a trusted source of advice to government and to the public.

We are seeking a skilled Engineer to join our Identity Access Management Team. This role will be the lead subject matter expert for Identity services related to Azure within a varied team of other Identity specialists. The role involves close collaboration with cross-functional teams across UKHSA as well as with third-party vendors.

You will play a vital role in keeping public health data safe by ensuring secure access to sensitive systems. Your work will help guarantee that the right people have the right access at the right time, supporting both UKHSA and colleagues across the organisation.

As a Senior IAM Engineer (Azure) your main responsibilities will be to:

- Configuration of identity services and associated infrastructure to support modern devices within Microsoft Entra ID and Active Directory.
- Manage end-to-end delivery of Identity services within Azure Cloud Platforms, driving operational efficiency
- Day-to-day identity operations, such as incident resolution and service requests.
- Contribute to the development and delivery of the identity strategy and roadmap , working with internal and external stakeholders to improve access management across multiple systems.
- Leverage native logging and diagnostic tooling to assist with issues related to modern devices for authentication and authorization to UKHSA services.
- Assist in the development of tooling to ensure proactive monitoring of services across the Identity space.
- Provide guidance and support to team members including operational support teams.
- Provide the main point of contact for problems, issues, support and guidance relating to Azure Identity Services.
- Author and maintain documentation for operational procedures such as KB articles to share with peers and wider support personnel.
- Work effectively with teams across infrastructure, security, identity and application domains to enable secure and seamless integration.
- Sharing skills and knowledge and delivering training on Azure to members of the team and Technology Directorate.

Essential:

- Strong hands-on experience with cloud-based Microsoft Identity services, in particular Entra ID and associated services. This includes authentication and authorization, conditional access, enterprise application management , defender for identity, identity lifecycle and External ID (B2C).
- Experienced with core on-premises identity services with hybrid configuration, including and not limited to Active Directory Domain services, DNS, Group Policy and Certificate Services.
- Solid understanding of networking concepts, protocols, and security best practices.
- Proven ability to diagnose and resolve complex technical issues.
- Effective communication skills, both written and verbal.
- Strong analytical and problem-solving capabilities.
- Strong knowledge of cloud-based security models and services.

Desirable:

- Experience of Automation related to identity services, including the use of infrastructure as code (IAC),PowerShell and DevOps principals.
- Experience of Amazon Web Services Identity services.
- Experience of integrating with Gov.UK One Login or similar CIAM solutions.
- Experience in building and maintaining access management systems with non-Microsoft technologies such as FreeIPA, OpenAM, or other OpenID connect, Oauth or SAML services providers.
- Familiarity with ITIL processes for incident, change, and problem management .

Please be aware that this role can only be worked within the UK and not Overseas.

Disability confident

As a member of the disability confident scheme, UKHSA guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group.

Armed Forces Covenant / commitment

The UK Health Security Agency guarantees to interview veterans or spouses / partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates / military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group.

In applying for this role, you acknowledge the following "this role falls in scope of the Off Payroll Working in the Public Sector legislation. Any rates of payment quoted will reflect the gross rate per day for the assignment and will be subject to appropriate taxes and statutory costs. As such the payment to the intermediary and your income resulting from this contract will be different".