IAM Delivery Consultant Position: IAM Delivery Consultant (Hands-on Engineering Focus) Base Salary: 80,000 + benefits package Location: UK Hybrid (Flexible blend of home, office, and client site) Security Clearance: Mandatory requirement (Active SC Clearance preferred, or must be strictly eligible) Mandatory Security Clearance Criteria This role requires immediate vetting for secure client projects. Please confirm you meet the following baseline requirements before applying: UK Residency: You must have resided continuously within the United Kingdom for the last 5 years. Background Check: You must be able to clear a 3-year continuous employment history check and an unspent criminal record check (DBS). Nationality: You must be eligible to obtain and maintain UK Security Check (SC) clearance. Certain secure delivery work streams within this portfolio are strictly restricted to sole UK Nationals. The Opportunity This is a dedicated, hands-on implementation and delivery role within an established global cybersecurity consulting practice. We are specifically looking for an Identity and Access Management (IAM) specialist rather than a security generalist. Our practice is currently experiencing a strong pipeline of delivery work. This position is built for an engineer or consultant who wants to go directly on-site with major enterprise clients, work natively with the software, and build out robust identity frameworks. The long-term career path for this role involves broadening your mastery across multiple enterprise identity tools, expanding from deployment into technical architecture and solution design. Key Responsibilities Technical Delivery: Lead the active implementation, configuration, and optimization of enterprise IAM software directly within client environments. Core Engineering: Move past high-level strategy to execute hands-on technology deployment and process improvement work across IGA or Access Management platforms. Requirement Translation: Analyze complex technical and business requirements to ensure real-world implementations match modern identity governance frameworks. Required Skills and Experience We are targeting mid-level to senior specialists with at least 5 years of total IT/Security experience, featuring a minimum of 3 years dedicated solely to the IAM domain . Primary Technology Focus: Hands-on deployment experience with Saviynt or Ping Identity is highly prioritized for this vacancy. Secondary Technologies: Secondary consideration will be given to deep technical experience across SailPoint, CyberArk, Okta, BeyondTrust, or Microsoft Azure/Entra ID. Domain Breadth: Strong practical delivery experience in at least one core pillar-Identity Governance and Administration (IGA) or Access Management-paired with functional exposure to a second. Continuous Learning: Active certifications or demonstrable self-directed technical training (such as personal lab configurations or sandbox environments) will be viewed very favorably. What We Offer Targeted Upskilling: Strong financial investment into your professional accreditation path, with immediate opportunities to train and certify on in-demand IGA and Access Management platforms. Comprehensive Wellbeing: Access to trained mental health champions across the business alongside subscription access to premium healthcare and wellbeing applications (including Thrive and Peppy). Inclusive Hiring: We operate as a Level 2 Disability Confident Employer, offering a guaranteed interview scheme to any applicant with a disability who meets the minimum essential criteria for this deployment role.
Jul 30, 2026
Full time
IAM Delivery Consultant Position: IAM Delivery Consultant (Hands-on Engineering Focus) Base Salary: 80,000 + benefits package Location: UK Hybrid (Flexible blend of home, office, and client site) Security Clearance: Mandatory requirement (Active SC Clearance preferred, or must be strictly eligible) Mandatory Security Clearance Criteria This role requires immediate vetting for secure client projects. Please confirm you meet the following baseline requirements before applying: UK Residency: You must have resided continuously within the United Kingdom for the last 5 years. Background Check: You must be able to clear a 3-year continuous employment history check and an unspent criminal record check (DBS). Nationality: You must be eligible to obtain and maintain UK Security Check (SC) clearance. Certain secure delivery work streams within this portfolio are strictly restricted to sole UK Nationals. The Opportunity This is a dedicated, hands-on implementation and delivery role within an established global cybersecurity consulting practice. We are specifically looking for an Identity and Access Management (IAM) specialist rather than a security generalist. Our practice is currently experiencing a strong pipeline of delivery work. This position is built for an engineer or consultant who wants to go directly on-site with major enterprise clients, work natively with the software, and build out robust identity frameworks. The long-term career path for this role involves broadening your mastery across multiple enterprise identity tools, expanding from deployment into technical architecture and solution design. Key Responsibilities Technical Delivery: Lead the active implementation, configuration, and optimization of enterprise IAM software directly within client environments. Core Engineering: Move past high-level strategy to execute hands-on technology deployment and process improvement work across IGA or Access Management platforms. Requirement Translation: Analyze complex technical and business requirements to ensure real-world implementations match modern identity governance frameworks. Required Skills and Experience We are targeting mid-level to senior specialists with at least 5 years of total IT/Security experience, featuring a minimum of 3 years dedicated solely to the IAM domain . Primary Technology Focus: Hands-on deployment experience with Saviynt or Ping Identity is highly prioritized for this vacancy. Secondary Technologies: Secondary consideration will be given to deep technical experience across SailPoint, CyberArk, Okta, BeyondTrust, or Microsoft Azure/Entra ID. Domain Breadth: Strong practical delivery experience in at least one core pillar-Identity Governance and Administration (IGA) or Access Management-paired with functional exposure to a second. Continuous Learning: Active certifications or demonstrable self-directed technical training (such as personal lab configurations or sandbox environments) will be viewed very favorably. What We Offer Targeted Upskilling: Strong financial investment into your professional accreditation path, with immediate opportunities to train and certify on in-demand IGA and Access Management platforms. Comprehensive Wellbeing: Access to trained mental health champions across the business alongside subscription access to premium healthcare and wellbeing applications (including Thrive and Peppy). Inclusive Hiring: We operate as a Level 2 Disability Confident Employer, offering a guaranteed interview scheme to any applicant with a disability who meets the minimum essential criteria for this deployment role.
Senior Security Engineering Team Lead Leeds (Home with 1 HQ visit per quarter) Up to 82,500 (NEG) + Excellent Benefits Are you an experienced Security Engineer ready to lead from the front? We're supporting a leading international managed technology organisation in the search for a Senior Security Engineering Team Lead to head a dedicated cyber security engineering function supporting a major enterprise customer operating within a highly regulated environment. This is far more than a traditional management role. You'll remain hands-on, acting as the technical authority for Microsoft security technologies whilst leading a team of experienced Security Analysts and Engineers responsible for protecting a critical customer environment. If you're passionate about Microsoft security, detection engineering, automation and mentoring technical teams, this is an opportunity to influence the direction of an enterprise-scale security operation. The Opportunity As the technical lead for the Security Engineering function, you'll own the security platform estate, providing architectural guidance, driving continuous improvement and acting as the primary escalation point for complex cyber security incidents. You'll combine strategic leadership with hands-on engineering, working closely with Security Analysts, Infrastructure teams and customer stakeholders to ensure security platforms remain resilient, effective and continually evolving. This is an excellent opportunity to join an organisation that invests heavily in technology, professional development and long-term career progression whilst working with some of the latest Microsoft security technologies. Key Responsibilities Lead and develop a team of Security Engineers and Security Analysts Act as the senior technical escalation point for complex cyber security incidents Own the configuration, maintenance and optimisation of the Microsoft security platform Drive detection engineering, rule tuning and continuous platform improvement Lead SIEM and SOAR engineering activities, including automation and Logic Apps Oversee log ingestion, telemetry quality and detection coverage Support vulnerability management and exposure management tooling Work closely with customers and internal technical teams on security architecture and platform improvements Mentor engineers and analysts, helping raise technical capability across the team Contribute to platform roadmaps, governance, documentation and service improvements Technology Environment You'll work across a modern Microsoft-centric cyber security stack including: Microsoft Defender XDR Defender for Endpoint Defender for Identity Microsoft Sentinel Logic Apps SOAR Automation Microsoft Purview Qualys XM Cyber CyberArk Detection Engineering KQL Threat Hunting Platform Engineering About You We're looking for someone who combines deep technical expertise with natural leadership skills. You'll likely have experience in areas such as: Security Engineering Detection Engineering SOC Engineering Microsoft Security Security Platform Management Cyber Security Architecture Security Automation Team Leadership You'll also possess: Expert knowledge of Microsoft Defender technologies Strong Microsoft Sentinel experience Experience building or improving security detections Knowledge of SOAR and security automation Experience within regulated or enterprise environments Excellent stakeholder management and communication skills Previous leadership or mentoring experience Why Apply? This organisation is recognised as one of the world's leading managed technology providers, delivering cloud, cyber security, data and digital workplace solutions to thousands of enterprise customers across multiple countries. It combines the scale of an international business with a culture that genuinely invests in its people through continuous learning, technical certifications, structured development programmes and internal career progression. You'll be joining at an exciting stage of growth, leading a newly established security capability supporting a strategic customer where you'll have genuine influence over both the technology roadmap and the development of your team. Package Salary up to 82,500 (NEG) Home working with one visit to HQ per quarter Excellent benefits package Significant investment in training and certifications Career progression opportunities Opportunity to work with enterprise Microsoft security technologies Technical leadership role with genuine strategic influence
Jul 29, 2026
Full time
Senior Security Engineering Team Lead Leeds (Home with 1 HQ visit per quarter) Up to 82,500 (NEG) + Excellent Benefits Are you an experienced Security Engineer ready to lead from the front? We're supporting a leading international managed technology organisation in the search for a Senior Security Engineering Team Lead to head a dedicated cyber security engineering function supporting a major enterprise customer operating within a highly regulated environment. This is far more than a traditional management role. You'll remain hands-on, acting as the technical authority for Microsoft security technologies whilst leading a team of experienced Security Analysts and Engineers responsible for protecting a critical customer environment. If you're passionate about Microsoft security, detection engineering, automation and mentoring technical teams, this is an opportunity to influence the direction of an enterprise-scale security operation. The Opportunity As the technical lead for the Security Engineering function, you'll own the security platform estate, providing architectural guidance, driving continuous improvement and acting as the primary escalation point for complex cyber security incidents. You'll combine strategic leadership with hands-on engineering, working closely with Security Analysts, Infrastructure teams and customer stakeholders to ensure security platforms remain resilient, effective and continually evolving. This is an excellent opportunity to join an organisation that invests heavily in technology, professional development and long-term career progression whilst working with some of the latest Microsoft security technologies. Key Responsibilities Lead and develop a team of Security Engineers and Security Analysts Act as the senior technical escalation point for complex cyber security incidents Own the configuration, maintenance and optimisation of the Microsoft security platform Drive detection engineering, rule tuning and continuous platform improvement Lead SIEM and SOAR engineering activities, including automation and Logic Apps Oversee log ingestion, telemetry quality and detection coverage Support vulnerability management and exposure management tooling Work closely with customers and internal technical teams on security architecture and platform improvements Mentor engineers and analysts, helping raise technical capability across the team Contribute to platform roadmaps, governance, documentation and service improvements Technology Environment You'll work across a modern Microsoft-centric cyber security stack including: Microsoft Defender XDR Defender for Endpoint Defender for Identity Microsoft Sentinel Logic Apps SOAR Automation Microsoft Purview Qualys XM Cyber CyberArk Detection Engineering KQL Threat Hunting Platform Engineering About You We're looking for someone who combines deep technical expertise with natural leadership skills. You'll likely have experience in areas such as: Security Engineering Detection Engineering SOC Engineering Microsoft Security Security Platform Management Cyber Security Architecture Security Automation Team Leadership You'll also possess: Expert knowledge of Microsoft Defender technologies Strong Microsoft Sentinel experience Experience building or improving security detections Knowledge of SOAR and security automation Experience within regulated or enterprise environments Excellent stakeholder management and communication skills Previous leadership or mentoring experience Why Apply? This organisation is recognised as one of the world's leading managed technology providers, delivering cloud, cyber security, data and digital workplace solutions to thousands of enterprise customers across multiple countries. It combines the scale of an international business with a culture that genuinely invests in its people through continuous learning, technical certifications, structured development programmes and internal career progression. You'll be joining at an exciting stage of growth, leading a newly established security capability supporting a strategic customer where you'll have genuine influence over both the technology roadmap and the development of your team. Package Salary up to 82,500 (NEG) Home working with one visit to HQ per quarter Excellent benefits package Significant investment in training and certifications Career progression opportunities Opportunity to work with enterprise Microsoft security technologies Technical leadership role with genuine strategic influence
IAM Delivery Consultant Position: IAM Delivery Consultant (Hands-on Engineering Focus) Base Salary: 80,000 + benefits package Location: UK Hybrid (Flexible blend of home, office, and client site) Security Clearance: Mandatory requirement (Active SC Clearance preferred, or must be strictly eligible) Mandatory Security Clearance Criteria This role requires immediate vetting for secure client projects. Please confirm you meet the following baseline requirements before applying: UK Residency: You must have resided continuously within the United Kingdom for the last 5 years. Background Check: You must be able to clear a 3-year continuous employment history check and an unspent criminal record check (DBS). Nationality: You must be eligible to obtain and maintain UK Security Check (SC) clearance. Certain secure delivery work streams within this portfolio are strictly restricted to sole UK Nationals. The Opportunity This is a dedicated, hands-on implementation and delivery role within an established global cybersecurity consulting practice. We are specifically looking for an Identity and Access Management (IAM) specialist rather than a security generalist. Our practice is currently experiencing a strong pipeline of delivery work. This position is built for an engineer or consultant who wants to go directly on-site with major enterprise clients, work natively with the software, and build out robust identity frameworks. The long-term career path for this role involves broadening your mastery across multiple enterprise identity tools, expanding from deployment into technical architecture and solution design. Key Responsibilities Technical Delivery: Lead the active implementation, configuration, and optimization of enterprise IAM software directly within client environments. Core Engineering: Move past high-level strategy to execute hands-on technology deployment and process improvement work across IGA or Access Management platforms. Requirement Translation: Analyze complex technical and business requirements to ensure real-world implementations match modern identity governance frameworks. Required Skills and Experience We are targeting mid-level to senior specialists with at least 5 years of total IT/Security experience, featuring a minimum of 3 years dedicated solely to the IAM domain . Primary Technology Focus: Hands-on deployment experience with Saviynt or Ping Identity is highly prioritized for this vacancy. Secondary Technologies: Secondary consideration will be given to deep technical experience across SailPoint, CyberArk, Okta, BeyondTrust, or Microsoft Azure/Entra ID. Domain Breadth: Strong practical delivery experience in at least one core pillar-Identity Governance and Administration (IGA) or Access Management-paired with functional exposure to a second. Continuous Learning: Active certifications or demonstrable self-directed technical training (such as personal lab configurations or sandbox environments) will be viewed very favorably. What We Offer Targeted Upskilling: Strong financial investment into your professional accreditation path, with immediate opportunities to train and certify on in-demand IGA and Access Management platforms. Comprehensive Wellbeing: Access to trained mental health champions across the business alongside subscription access to premium healthcare and wellbeing applications (including Thrive and Peppy). Inclusive Hiring: We operate as a Level 2 Disability Confident Employer, offering a guaranteed interview scheme to any applicant with a disability who meets the minimum essential criteria for this deployment role.
Jul 29, 2026
Full time
IAM Delivery Consultant Position: IAM Delivery Consultant (Hands-on Engineering Focus) Base Salary: 80,000 + benefits package Location: UK Hybrid (Flexible blend of home, office, and client site) Security Clearance: Mandatory requirement (Active SC Clearance preferred, or must be strictly eligible) Mandatory Security Clearance Criteria This role requires immediate vetting for secure client projects. Please confirm you meet the following baseline requirements before applying: UK Residency: You must have resided continuously within the United Kingdom for the last 5 years. Background Check: You must be able to clear a 3-year continuous employment history check and an unspent criminal record check (DBS). Nationality: You must be eligible to obtain and maintain UK Security Check (SC) clearance. Certain secure delivery work streams within this portfolio are strictly restricted to sole UK Nationals. The Opportunity This is a dedicated, hands-on implementation and delivery role within an established global cybersecurity consulting practice. We are specifically looking for an Identity and Access Management (IAM) specialist rather than a security generalist. Our practice is currently experiencing a strong pipeline of delivery work. This position is built for an engineer or consultant who wants to go directly on-site with major enterprise clients, work natively with the software, and build out robust identity frameworks. The long-term career path for this role involves broadening your mastery across multiple enterprise identity tools, expanding from deployment into technical architecture and solution design. Key Responsibilities Technical Delivery: Lead the active implementation, configuration, and optimization of enterprise IAM software directly within client environments. Core Engineering: Move past high-level strategy to execute hands-on technology deployment and process improvement work across IGA or Access Management platforms. Requirement Translation: Analyze complex technical and business requirements to ensure real-world implementations match modern identity governance frameworks. Required Skills and Experience We are targeting mid-level to senior specialists with at least 5 years of total IT/Security experience, featuring a minimum of 3 years dedicated solely to the IAM domain . Primary Technology Focus: Hands-on deployment experience with Saviynt or Ping Identity is highly prioritized for this vacancy. Secondary Technologies: Secondary consideration will be given to deep technical experience across SailPoint, CyberArk, Okta, BeyondTrust, or Microsoft Azure/Entra ID. Domain Breadth: Strong practical delivery experience in at least one core pillar-Identity Governance and Administration (IGA) or Access Management-paired with functional exposure to a second. Continuous Learning: Active certifications or demonstrable self-directed technical training (such as personal lab configurations or sandbox environments) will be viewed very favorably. What We Offer Targeted Upskilling: Strong financial investment into your professional accreditation path, with immediate opportunities to train and certify on in-demand IGA and Access Management platforms. Comprehensive Wellbeing: Access to trained mental health champions across the business alongside subscription access to premium healthcare and wellbeing applications (including Thrive and Peppy). Inclusive Hiring: We operate as a Level 2 Disability Confident Employer, offering a guaranteed interview scheme to any applicant with a disability who meets the minimum essential criteria for this deployment role.
Solution Architect - PAM/PAW 6 Months Hybrid/London - 2 days per week on site (Apply online only) per day (Inside IR35) My client in the telecommunications industry are looking for a Solution Architect to join their fast-paced team on an initial 6 month contract. The ideal candidate will have hands-on experience, structured thinking, strong communication skills, and the ability to operate in a complex enterprise environment. The selected candidate MUST HAVE Privileged Access Management/Privileged Access Workstations experience The Solution Architect will be responsible for defining and owning the end-to-end solution architecture for PAM and PAW across the programme. The role will ensure that the solution is secure, scalable, compliant, operationally supportable, and aligned with the business' enterprise architecture, security standards, and programme objectives. Key Responsibilities Own the end-to-end PAM / PAW solution architecture for the assigned workstream. Define the target-state architecture, including integration with identity platforms, network systems, access controls, monitoring, and operational tooling. Assess current-state privileged access processes and identify gaps, risks, and required changes. Translate business, security, operational, and compliance requirements into a practical solution architecture. Work closely with security, network, infrastructure, operations, and application teams to ensure architectural alignment. Define architecture principles, design patterns, security controls, and implementation guardrails. Support decision-making around PAM tooling, PAW standards, access models, and integration approaches. Ensure the solution supports audit, regulatory, and governance requirements. Identify architectural risks, dependencies, and constraints, and propose mitigation options. Provide technical leadership to designers, engineers, PMs, BAs, and delivery teams. Produce and maintain key architecture artefacts, including high-level designs, architecture diagrams, options papers, and decision records. Present solution options, recommendations, and risks to senior stakeholders and governance boards. Ensure the solution is fit for transition into BAU operations. Required Skills and Experience Strong experience as a Solution Architect in security, identity, network, or infrastructure programmes. Good understanding of Privileged Access Management concepts, including privileged accounts, session management, credential vaulting, least privilege, access approval workflows, and audit logging. Good understanding of Privileged Access Workstation concepts, including hardened workstations, admin tiers, secure access models, and separation of privileged and standard user activities. Experience working in complex enterprise or telecom environments. Strong understanding of network environments, operational support models, and security governance. Ability to convert complex security and operational requirements into practical solution designs. Experience working with senior stakeholders, architecture review boards, cyber security teams, and operations teams. Ability to take ownership, drive decisions, and remove ambiguity. Desirable Skills Experience with PAM tools such as CyberArk, BeyondTrust, Delinea, or similar. Experience with Microsoft security technologies, Active Directory, Entra ID, conditional access, device hardening, or endpoint management. Experience in Solution Architecture, separation, migration, divestment, or integration programmes. Knowledge of telecom network operations and privileged access controls. Expected Outcomes Approved PAM / PAW target architecture. Clear architecture decisions and design principles. Identified risks, dependencies, and mitigation plans. Architecture aligned with company security and operational standards. Solution ready for detailed design, delivery, and operational handover. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Jul 28, 2026
Contractor
Solution Architect - PAM/PAW 6 Months Hybrid/London - 2 days per week on site (Apply online only) per day (Inside IR35) My client in the telecommunications industry are looking for a Solution Architect to join their fast-paced team on an initial 6 month contract. The ideal candidate will have hands-on experience, structured thinking, strong communication skills, and the ability to operate in a complex enterprise environment. The selected candidate MUST HAVE Privileged Access Management/Privileged Access Workstations experience The Solution Architect will be responsible for defining and owning the end-to-end solution architecture for PAM and PAW across the programme. The role will ensure that the solution is secure, scalable, compliant, operationally supportable, and aligned with the business' enterprise architecture, security standards, and programme objectives. Key Responsibilities Own the end-to-end PAM / PAW solution architecture for the assigned workstream. Define the target-state architecture, including integration with identity platforms, network systems, access controls, monitoring, and operational tooling. Assess current-state privileged access processes and identify gaps, risks, and required changes. Translate business, security, operational, and compliance requirements into a practical solution architecture. Work closely with security, network, infrastructure, operations, and application teams to ensure architectural alignment. Define architecture principles, design patterns, security controls, and implementation guardrails. Support decision-making around PAM tooling, PAW standards, access models, and integration approaches. Ensure the solution supports audit, regulatory, and governance requirements. Identify architectural risks, dependencies, and constraints, and propose mitigation options. Provide technical leadership to designers, engineers, PMs, BAs, and delivery teams. Produce and maintain key architecture artefacts, including high-level designs, architecture diagrams, options papers, and decision records. Present solution options, recommendations, and risks to senior stakeholders and governance boards. Ensure the solution is fit for transition into BAU operations. Required Skills and Experience Strong experience as a Solution Architect in security, identity, network, or infrastructure programmes. Good understanding of Privileged Access Management concepts, including privileged accounts, session management, credential vaulting, least privilege, access approval workflows, and audit logging. Good understanding of Privileged Access Workstation concepts, including hardened workstations, admin tiers, secure access models, and separation of privileged and standard user activities. Experience working in complex enterprise or telecom environments. Strong understanding of network environments, operational support models, and security governance. Ability to convert complex security and operational requirements into practical solution designs. Experience working with senior stakeholders, architecture review boards, cyber security teams, and operations teams. Ability to take ownership, drive decisions, and remove ambiguity. Desirable Skills Experience with PAM tools such as CyberArk, BeyondTrust, Delinea, or similar. Experience with Microsoft security technologies, Active Directory, Entra ID, conditional access, device hardening, or endpoint management. Experience in Solution Architecture, separation, migration, divestment, or integration programmes. Knowledge of telecom network operations and privileged access controls. Expected Outcomes Approved PAM / PAW target architecture. Clear architecture decisions and design principles. Identified risks, dependencies, and mitigation plans. Architecture aligned with company security and operational standards. Solution ready for detailed design, delivery, and operational handover. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
PAM Engineer Hybrid 4 days onsite per week We are looking for an experienced PAM Engineer to lead the implementation and rollout of a Privileged Access Management solution within a regulated enterprise environment. You will be responsible for configuring Wallix PAM, onboarding privileged accounts, integrating with core infrastructure, and establishing secure privileged access processes. Working closely with technology and security teams, you will support the delivery of a robust PAM capability while producing technical documentation and knowledge transfer materials. Key Skills Wallix PAM implementation and configuration Privileged Access Management (CyberArk, BeyondTrust or similar) Active Directory & Entra ID Windows Server and Linux administration Privileged account onboarding and session management Identity & Access Management (IAM) Microsoft Azure VMware Microsoft SQL Server PowerShell and/or Bash Scripting Experience Required Proven hands-on experience delivering PAM implementations, ideally with Wallix. Experience onboarding privileged domain, service, application, database and network administrator accounts. Strong understanding of least privilege, credential life cycle management and privileged session control. Experience integrating PAM with Servers, network devices, security appliances and enterprise platforms. Strong troubleshooting, documentation and stakeholder communication skills. Experience within financial services or other regulated environments is advantageous. PAM Engineer Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website
Jul 28, 2026
Contractor
PAM Engineer Hybrid 4 days onsite per week We are looking for an experienced PAM Engineer to lead the implementation and rollout of a Privileged Access Management solution within a regulated enterprise environment. You will be responsible for configuring Wallix PAM, onboarding privileged accounts, integrating with core infrastructure, and establishing secure privileged access processes. Working closely with technology and security teams, you will support the delivery of a robust PAM capability while producing technical documentation and knowledge transfer materials. Key Skills Wallix PAM implementation and configuration Privileged Access Management (CyberArk, BeyondTrust or similar) Active Directory & Entra ID Windows Server and Linux administration Privileged account onboarding and session management Identity & Access Management (IAM) Microsoft Azure VMware Microsoft SQL Server PowerShell and/or Bash Scripting Experience Required Proven hands-on experience delivering PAM implementations, ideally with Wallix. Experience onboarding privileged domain, service, application, database and network administrator accounts. Strong understanding of least privilege, credential life cycle management and privileged session control. Experience integrating PAM with Servers, network devices, security appliances and enterprise platforms. Strong troubleshooting, documentation and stakeholder communication skills. Experience within financial services or other regulated environments is advantageous. PAM Engineer Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website
Solution Designer - PAM/PAW 6 Months Hybrid/London - 2 days per week on site (Apply online only) per day (Inside IR35) My client in the telecommunications sector are looking for a Designer to join their fast-paced team on an initial 6 month contract. The selected candidate MUST HAVE Privileged Access Management/Privileged Access Workstations design experience The Solution Designer will be responsible for developing detailed designs for the PAM and PAW solution based on the approved architecture. The role will convert high-level architecture into implementable designs, ensuring that the solution can be built, tested, deployed, and supported effectively. Key Responsibilities Produce detailed technical designs for PAM and PAW implementation. Translate architecture principles and requirements into build-ready design specifications. Define user access flows, privileged account onboarding models, workstation access patterns, and integration requirements. Design PAM onboarding processes for privileged accounts, network devices, platforms, and administrative users. Define PAW configuration requirements, including device hardening, access restrictions, connectivity, monitoring, and support processes. Work with network, security, infrastructure, endpoint, identity, and operations teams to validate the design. Identify design-level risks, gaps, assumptions, and dependencies. Support engineers and implementation teams during build, test, and deployment. Ensure designs include operational considerations such as support model, monitoring, logging, incident handling, and access review. Produce detailed design documents, interface specifications, workflow diagrams, and configuration guides. Support test planning, defect resolution, and design clarification during implementation. Ensure the design is compliant with security policies, audit requirements, and regulatory expectations. Required Skills and Experience Strong technical design experience in security, identity, infrastructure, or network environments. Practical understanding of PAM and PAW concepts and implementation considerations. Experience designing secure access solutions for privileged users and administrators. Understanding of network access, firewall rules, remote access, jump servers, hardened workstations, and administrative access paths. Ability to produce clear, detailed, and implementation-ready technical documentation. Experience working with architects, engineers, testers, PMs, BAs, and operations teams. Strong problem-solving skills and ability to work through complex technical dependencies. Ability to take ownership of design deliverables and drive them through review and approval. Desirable Skills Experience with PAM platforms such as CyberArk, BeyondTrust, Delinea, or similar. Experience with endpoint security, device hardening, Active Directory, Entra ID, Intune, SCCM, or similar tooling. Experience in telecom, managed services, or large enterprise security programmes. Experience with TSA, migration, separation, or transformation programmes. Expected Outcomes Approved low-level designs and detailed design documents. Clear implementation guidance for PAM and PAW deployment. Defined onboarding, access, support, and operational processes. Design risks and dependencies actively managed. Implementation teams enabled to build and deploy the solution successfully. Other Transferable Skills Required Strong understanding of PAM and PAW concepts. Experience in complex enterprise, network, infrastructure, security, or telecom environments. Ability to work across multiple teams and manage ambiguity. Strong stakeholder management and communication skills. Ability to own deliverables and drive outcomes. Good understanding of governance, risk, compliance, and operational readiness. Ability to identify risks, dependencies, and blockers early. Strong documentation and presentation skills. Experience working in high-pressure, time-sensitive delivery environments. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Jul 28, 2026
Contractor
Solution Designer - PAM/PAW 6 Months Hybrid/London - 2 days per week on site (Apply online only) per day (Inside IR35) My client in the telecommunications sector are looking for a Designer to join their fast-paced team on an initial 6 month contract. The selected candidate MUST HAVE Privileged Access Management/Privileged Access Workstations design experience The Solution Designer will be responsible for developing detailed designs for the PAM and PAW solution based on the approved architecture. The role will convert high-level architecture into implementable designs, ensuring that the solution can be built, tested, deployed, and supported effectively. Key Responsibilities Produce detailed technical designs for PAM and PAW implementation. Translate architecture principles and requirements into build-ready design specifications. Define user access flows, privileged account onboarding models, workstation access patterns, and integration requirements. Design PAM onboarding processes for privileged accounts, network devices, platforms, and administrative users. Define PAW configuration requirements, including device hardening, access restrictions, connectivity, monitoring, and support processes. Work with network, security, infrastructure, endpoint, identity, and operations teams to validate the design. Identify design-level risks, gaps, assumptions, and dependencies. Support engineers and implementation teams during build, test, and deployment. Ensure designs include operational considerations such as support model, monitoring, logging, incident handling, and access review. Produce detailed design documents, interface specifications, workflow diagrams, and configuration guides. Support test planning, defect resolution, and design clarification during implementation. Ensure the design is compliant with security policies, audit requirements, and regulatory expectations. Required Skills and Experience Strong technical design experience in security, identity, infrastructure, or network environments. Practical understanding of PAM and PAW concepts and implementation considerations. Experience designing secure access solutions for privileged users and administrators. Understanding of network access, firewall rules, remote access, jump servers, hardened workstations, and administrative access paths. Ability to produce clear, detailed, and implementation-ready technical documentation. Experience working with architects, engineers, testers, PMs, BAs, and operations teams. Strong problem-solving skills and ability to work through complex technical dependencies. Ability to take ownership of design deliverables and drive them through review and approval. Desirable Skills Experience with PAM platforms such as CyberArk, BeyondTrust, Delinea, or similar. Experience with endpoint security, device hardening, Active Directory, Entra ID, Intune, SCCM, or similar tooling. Experience in telecom, managed services, or large enterprise security programmes. Experience with TSA, migration, separation, or transformation programmes. Expected Outcomes Approved low-level designs and detailed design documents. Clear implementation guidance for PAM and PAW deployment. Defined onboarding, access, support, and operational processes. Design risks and dependencies actively managed. Implementation teams enabled to build and deploy the solution successfully. Other Transferable Skills Required Strong understanding of PAM and PAW concepts. Experience in complex enterprise, network, infrastructure, security, or telecom environments. Ability to work across multiple teams and manage ambiguity. Strong stakeholder management and communication skills. Ability to own deliverables and drive outcomes. Good understanding of governance, risk, compliance, and operational readiness. Ability to identify risks, dependencies, and blockers early. Strong documentation and presentation skills. Experience working in high-pressure, time-sensitive delivery environments. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
The Role: Salary: Market Leading Base + Bonus + Excellent Benefits Location: London (hybrid working) My client is a rapidly growing international main market listed organisation offering a range of solutions to the global Financial & Professional Services sector. As part of their exciting growth plans a new opportunity now exists for an experienced Cyber Security specialist to join their well established and growing technology team based in the London HQ. You will join the team as a Cyber Security Analyst, providing day-to-day operational security coverage across their extensive toolset. Working closely with their Senior Cyber Security Engineer, you will maintain and administer key security platforms, support client-facing security assurance activities, and help strengthen the company's security posture ahead of ISO 27001 certification. Responsibilities: Implement, manage and actively monitor security controls across email, web, endpoint and cloud environments. Monitor and respond to security incidents using advanced threat detection tools. Day-to-day administration of Netskope web filtering platform including website unblocks and policy updates. Day-to-day administration of Mimecast email filtering system including email review and release. Day-to-day administration of CyberArk identity and privileged access management tooling. Microsoft Purview administration including DLP policy monitoring, sensitivity labels, Discovery Searches and compliance alerts. Maintain and respond to security-related DDQs, keeping the security evidence library current. Assist with compliance activities and audits for ISO 27001, Cyber Essentials & Cyber Essentials Plus certification. Provide technical expertise on security best practices and risk mitigation. Collaborate with IT and business teams to ensure secure configuration and data protection. Participating in the out-of-hours support rota to provide cover for critical cyber incidents. The Person: Previous hands-on experience with Mimecast (or similar email security platform), Crowdstrike (or similar EDR platform) and Microsoft Purview - data governance, DLP and compliance tooling are essential for success in the role. Hands-on experience with Netskope - web filtering, CASB and cloud security and/or CyberArk - identity and privileged access management would be highly desirable skills. Experience with Rapid7, InsightVM or InsightIDR for vulnerability management and SIEM would also be highly desirable. Experience of responding to security DDQs and maintaining security evidence. Experience supporting ISO 27001, Cyber Essentials and Cyber Essentials Plus. Strong understanding of UK cyber security regulations and frameworks. Experience working in an FCA-regulated or similarly governed environment. Experience with Microsoft Entra ID and identity governance, alongside familiarity with Microsoft Azure and M365 E5 security features. This is a fantastic opportunity to join a prominent organisation at an exciting time with genuine opportunities for career development and progression. Alongside their compelling salary and bonus, they also offer a very generous pension contribution, private medical and the ability to 'buy and sell' holidays. The role is based from their London office, offering hybrid working with 3 days in the office, with travel to their other UK locations as and when required. If you feel you have the qualities our client is seeking, please forward your CV and covering letter indicating your current package to Lee Rankin at GEM Partnership or for a discreet conversation call our Peterlee office. GEM Partnership is acting as an employment agency on this vacancy.
Jul 27, 2026
Full time
The Role: Salary: Market Leading Base + Bonus + Excellent Benefits Location: London (hybrid working) My client is a rapidly growing international main market listed organisation offering a range of solutions to the global Financial & Professional Services sector. As part of their exciting growth plans a new opportunity now exists for an experienced Cyber Security specialist to join their well established and growing technology team based in the London HQ. You will join the team as a Cyber Security Analyst, providing day-to-day operational security coverage across their extensive toolset. Working closely with their Senior Cyber Security Engineer, you will maintain and administer key security platforms, support client-facing security assurance activities, and help strengthen the company's security posture ahead of ISO 27001 certification. Responsibilities: Implement, manage and actively monitor security controls across email, web, endpoint and cloud environments. Monitor and respond to security incidents using advanced threat detection tools. Day-to-day administration of Netskope web filtering platform including website unblocks and policy updates. Day-to-day administration of Mimecast email filtering system including email review and release. Day-to-day administration of CyberArk identity and privileged access management tooling. Microsoft Purview administration including DLP policy monitoring, sensitivity labels, Discovery Searches and compliance alerts. Maintain and respond to security-related DDQs, keeping the security evidence library current. Assist with compliance activities and audits for ISO 27001, Cyber Essentials & Cyber Essentials Plus certification. Provide technical expertise on security best practices and risk mitigation. Collaborate with IT and business teams to ensure secure configuration and data protection. Participating in the out-of-hours support rota to provide cover for critical cyber incidents. The Person: Previous hands-on experience with Mimecast (or similar email security platform), Crowdstrike (or similar EDR platform) and Microsoft Purview - data governance, DLP and compliance tooling are essential for success in the role. Hands-on experience with Netskope - web filtering, CASB and cloud security and/or CyberArk - identity and privileged access management would be highly desirable skills. Experience with Rapid7, InsightVM or InsightIDR for vulnerability management and SIEM would also be highly desirable. Experience of responding to security DDQs and maintaining security evidence. Experience supporting ISO 27001, Cyber Essentials and Cyber Essentials Plus. Strong understanding of UK cyber security regulations and frameworks. Experience working in an FCA-regulated or similarly governed environment. Experience with Microsoft Entra ID and identity governance, alongside familiarity with Microsoft Azure and M365 E5 security features. This is a fantastic opportunity to join a prominent organisation at an exciting time with genuine opportunities for career development and progression. Alongside their compelling salary and bonus, they also offer a very generous pension contribution, private medical and the ability to 'buy and sell' holidays. The role is based from their London office, offering hybrid working with 3 days in the office, with travel to their other UK locations as and when required. If you feel you have the qualities our client is seeking, please forward your CV and covering letter indicating your current package to Lee Rankin at GEM Partnership or for a discreet conversation call our Peterlee office. GEM Partnership is acting as an employment agency on this vacancy.
Location: London (City) - (4 days office/1 remote) Salary: £75,000 - £85,000 + annual discretionary bonus Hours: 11am-7pm (fixed shift) About the firm Our client is a leading global law firm with world-class offices in the heart of the City. The firm has recently moved into a brand-new building offering outstanding facilities, including free breakfast, lunch and dinner, a fully equipped on-site gym, and a modern, collaborative working environment. The opportunity This is a new role within the EMEA Identity & Access Management team, supporting a global user base and working closely with teams in the US and APAC. The position offers a mix of hands-on BAU operations and project delivery focused on improving automation, access controls and privileged account management across the firm's enterprise environment. You'll work alongside experienced IAM engineers to maintain and enhance the firm's Microsoft identity platforms, supporting the joiner-mover-leaver lifecycle and driving continuous improvement in identity security and governance. Key responsibilities Manage and maintain Active Directory, Azure/Entra ID and M365 identity services Support and enhance the firm's PAM platform (Delinea) - experience with CyberArk or BeyondTrust also welcome Administer PIM, Conditional Access and MFA policies across the Entra environment Develop and maintain PowerShell scripts for automation and reporting Collaborate with global IAM and Infrastructure teams on projects and incident resolution Ensure access governance, compliance and audit requirements are met across systems Contribute to roadmap development and platform improvements within the EMEA region What we're looking for Strong hands-on experience with Active Directory and Azure/Entra ID administration Knowledge of PAM solutions such as Delinea, CyberArk or BeyondTrust Good understanding of M365, Intune and identity security principles Confident using PowerShell for automation and troubleshooting Familiarity with PIM, MFA and Conditional Access Experience working in large, global or professional services environments Collaborative mindset and a genuine interest in identity security What's on offer Salary up to £85,000 depending on experience Annual discretionary bonus On-site working (4 days office/1 remote) Free breakfast, lunch and dinner each day Free on-site gym Excellent benefits package Genuine career progression - clear path to Senior Engineer or IAM Architect as the team expands If you're an experienced IAM or Infrastructure Engineer looking to step into a global role with a strong Microsoft and PAM focus, we'd love to hear from you. Please apply with your CV
Oct 08, 2025
Full time
Location: London (City) - (4 days office/1 remote) Salary: £75,000 - £85,000 + annual discretionary bonus Hours: 11am-7pm (fixed shift) About the firm Our client is a leading global law firm with world-class offices in the heart of the City. The firm has recently moved into a brand-new building offering outstanding facilities, including free breakfast, lunch and dinner, a fully equipped on-site gym, and a modern, collaborative working environment. The opportunity This is a new role within the EMEA Identity & Access Management team, supporting a global user base and working closely with teams in the US and APAC. The position offers a mix of hands-on BAU operations and project delivery focused on improving automation, access controls and privileged account management across the firm's enterprise environment. You'll work alongside experienced IAM engineers to maintain and enhance the firm's Microsoft identity platforms, supporting the joiner-mover-leaver lifecycle and driving continuous improvement in identity security and governance. Key responsibilities Manage and maintain Active Directory, Azure/Entra ID and M365 identity services Support and enhance the firm's PAM platform (Delinea) - experience with CyberArk or BeyondTrust also welcome Administer PIM, Conditional Access and MFA policies across the Entra environment Develop and maintain PowerShell scripts for automation and reporting Collaborate with global IAM and Infrastructure teams on projects and incident resolution Ensure access governance, compliance and audit requirements are met across systems Contribute to roadmap development and platform improvements within the EMEA region What we're looking for Strong hands-on experience with Active Directory and Azure/Entra ID administration Knowledge of PAM solutions such as Delinea, CyberArk or BeyondTrust Good understanding of M365, Intune and identity security principles Confident using PowerShell for automation and troubleshooting Familiarity with PIM, MFA and Conditional Access Experience working in large, global or professional services environments Collaborative mindset and a genuine interest in identity security What's on offer Salary up to £85,000 depending on experience Annual discretionary bonus On-site working (4 days office/1 remote) Free breakfast, lunch and dinner each day Free on-site gym Excellent benefits package Genuine career progression - clear path to Senior Engineer or IAM Architect as the team expands If you're an experienced IAM or Infrastructure Engineer looking to step into a global role with a strong Microsoft and PAM focus, we'd love to hear from you. Please apply with your CV
Role Title: PAM Engineer Location: Wokingham (Hybrid) Duration: 4 Months Rate: £505p/d max via Umbrella Clearance: Either hold or be eligible for SC Clearance Key Responsibilities - Design, deploy, and manage PAM solutions (eg, CyberArk, BeyondTrust, Delinea) - Implement least privilege access models and enforce secure credential management - Monitor and audit privileged access activities across systems and applications - Integrate PAM tools with SIEM, IAM, and other security platforms - Develop and maintain policies, procedures, and documentation for PAM operations - Conduct regular access reviews, privilege audits, and risk assessments - Collaborate with IT, DevOps, and Security teams to ensure seamless PAM integration - Provide technical support and troubleshooting for PAM-related issues - Stay current with industry trends, threats, and best practices in access management Required Skills & Qualifications - Experience in PAM engineering or cybersecurity roles - Proficiency with PAM tools such as CyberArk, BeyondTrust, or Delinea - Strong understanding of Active Directory, LDAP, and authentication protocols - Experience with Scripting (PowerShell, Python) for automation and reporting - Familiarity with compliance frameworks (ISO 27001, NIST, GDPR) - Excellent problem-solving, communication, and documentation skills Preferred Qualifications - Relevant certifications (eg, CyberArk Defender, CISSP, CISM) - Experience in cloud environments (AWS, Azure, GCP) and hybrid infrastructures - Knowledge of DevSecOps practices and CI/CD pipeline integration
Oct 07, 2025
Contractor
Role Title: PAM Engineer Location: Wokingham (Hybrid) Duration: 4 Months Rate: £505p/d max via Umbrella Clearance: Either hold or be eligible for SC Clearance Key Responsibilities - Design, deploy, and manage PAM solutions (eg, CyberArk, BeyondTrust, Delinea) - Implement least privilege access models and enforce secure credential management - Monitor and audit privileged access activities across systems and applications - Integrate PAM tools with SIEM, IAM, and other security platforms - Develop and maintain policies, procedures, and documentation for PAM operations - Conduct regular access reviews, privilege audits, and risk assessments - Collaborate with IT, DevOps, and Security teams to ensure seamless PAM integration - Provide technical support and troubleshooting for PAM-related issues - Stay current with industry trends, threats, and best practices in access management Required Skills & Qualifications - Experience in PAM engineering or cybersecurity roles - Proficiency with PAM tools such as CyberArk, BeyondTrust, or Delinea - Strong understanding of Active Directory, LDAP, and authentication protocols - Experience with Scripting (PowerShell, Python) for automation and reporting - Familiarity with compliance frameworks (ISO 27001, NIST, GDPR) - Excellent problem-solving, communication, and documentation skills Preferred Qualifications - Relevant certifications (eg, CyberArk Defender, CISSP, CISM) - Experience in cloud environments (AWS, Azure, GCP) and hybrid infrastructures - Knowledge of DevSecOps practices and CI/CD pipeline integration
CyberArk Secret Manager Engineer | Freelance | London/Paris/Brussels/Hybrid (8 days/month onsite) Duration: 12 months Rate: Flexible Inside of IR35 We're looking for an experienced CyberArk Engineer to join Euroclear's Chief Information Security Office (CISO) within the Identity and Access Management (IDAM) team. This is a fantastic opportunity to play a key role in strengthening Euroclear's Privileged Access Management (PAM) posture by deploying and integrating CyberArk Secret Manager across a complex enterprise environment. You'll lead the end-to-end implementation of CyberArk's Application Access Manager (AAM) capabilities - including Credential Provider (CP) , Central Credential Provider (CCP) , and Application Service Credential Provider (ASCP) . Your focus will be on enabling secure, automated, and compliant management of service and functional accounts across Windows and Linux systems. Key Responsibilities: Deploy, configure, and integrate CyberArk Secret Manager/AAM components (CP, CCP, ASCP). Design credential management solutions for service accounts, ensuring high availability and compliance. Integrate CyberArk with applications, Middleware, and databases for secure credential retrieval and rotation. Automate deployments and configuration using Ansible , PowerShell , Bash , and REST APIs . Manage Safes, platforms, permissions, and onboarding in CyberArk PAM. Produce design documentation, runbooks, and integration guides. Collaborate with application and infrastructure teams to troubleshoot issues and optimise integrations. What We're Looking For: ? Proven hands-on experience with CyberArk Secret Manager/AAM (non-negotiable). ? Strong PAM administration skills - Safes, platforms, permissions. ? Windows & Linux integration experience. ? Automation experience with Ansible , Scripting (PowerShell, Bash), and APIs. ? Independent, proactive, and solutions-oriented mindset. Please do send across to me the most up to date CV to (see below) *Rates depend on experience and client requirements
Oct 06, 2025
Contractor
CyberArk Secret Manager Engineer | Freelance | London/Paris/Brussels/Hybrid (8 days/month onsite) Duration: 12 months Rate: Flexible Inside of IR35 We're looking for an experienced CyberArk Engineer to join Euroclear's Chief Information Security Office (CISO) within the Identity and Access Management (IDAM) team. This is a fantastic opportunity to play a key role in strengthening Euroclear's Privileged Access Management (PAM) posture by deploying and integrating CyberArk Secret Manager across a complex enterprise environment. You'll lead the end-to-end implementation of CyberArk's Application Access Manager (AAM) capabilities - including Credential Provider (CP) , Central Credential Provider (CCP) , and Application Service Credential Provider (ASCP) . Your focus will be on enabling secure, automated, and compliant management of service and functional accounts across Windows and Linux systems. Key Responsibilities: Deploy, configure, and integrate CyberArk Secret Manager/AAM components (CP, CCP, ASCP). Design credential management solutions for service accounts, ensuring high availability and compliance. Integrate CyberArk with applications, Middleware, and databases for secure credential retrieval and rotation. Automate deployments and configuration using Ansible , PowerShell , Bash , and REST APIs . Manage Safes, platforms, permissions, and onboarding in CyberArk PAM. Produce design documentation, runbooks, and integration guides. Collaborate with application and infrastructure teams to troubleshoot issues and optimise integrations. What We're Looking For: ? Proven hands-on experience with CyberArk Secret Manager/AAM (non-negotiable). ? Strong PAM administration skills - Safes, platforms, permissions. ? Windows & Linux integration experience. ? Automation experience with Ansible , Scripting (PowerShell, Bash), and APIs. ? Independent, proactive, and solutions-oriented mindset. Please do send across to me the most up to date CV to (see below) *Rates depend on experience and client requirements
Job Title: Lead Security Solution Architect- PAM Location: Hybrid-London, UK (Days/Week Onsite) Duration: 6months+ 550GBP/Day Inside IR35 Project Overview CLIENT is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the bank. One of the pillars of that programe is Privileged Access Management (PAM). CLIENT is working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Lead Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents in line with functional and non-functional business requirements, strategies, principles, standards, and patterns. Alongside the creation of high-level designs, Security Solution Architects will be required to record key decisions, design deviations, and technical risks and issues where appropriate. Security Solution Architects should be comfortable presenting and sharing solutions at design authorities and senior leadership & stakeholders. The Lead Security Solution Architect will provide technical thought leadership and direction to their project team and may represent the project/programme as subject matter expert. This role will require someone experienced in managing a team of on-shore and off-shore resources to deliver High- and Low-level designs to the required quality and standard. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level Experience in both operational and transformation cybersecurity roles or a clear working understanding of both perspectives Experience working in large-scale IT transformation programmes Experience working with PAM solutions such as CyberArk, Centrify, Delinea and OneIdentity Preparing end-to-end configuration of the strategic PAM capability - including on-prem deployments as well as Cloud native toolings Assisting in preparation of demonstrable journeys on the configured PAM tooling Platform & Technology: BizzDesign, Archi, or generic UML visualisation experience for high-level designs High proficiency and expertise in Jira for project & tasks management Working proficiency in Confluence for documentation Principal Accountabilities and Responsibilities Architecture & Design: Produce, manage, and update end-to-end solution designs in line with reference architecture & business requirements (including High and Low Level Designs Articulate and publish key design decision records and options to ensure all solutions follow a logical, transparent decision-making process Articulate, publish, and ensure approval of any design deviations resulting in technical debt Ensure any technical risks or issues arising from a solution design are recorded and mitigated. Produces, manages and translates the requirements into the architecture for that solution, ensuring technology and services meet the customer needs and expected business outcomes Ensures the design of the solutions are efficient, timely and cost effective throughout the project life cycle Clear understanding of both the motivations of the business and technical security Promote strong documentation and clerkship Governance: Ensures all high-level designs, architecture patterns, decision records, deviation requests, and technical risks or issue records undergo architectural and project governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Ability to map design decisions to resultant technical risks & issues to articulate the cause and rationale which leads to any negatively impacting change Leadership & Teamwork Provides technical thought leadership to the Design Team and the Project Ability to manage a project team of technical architects, engineers, and/or analysts Ability to take a deputised role in programme management-related tasks where necessary Qualifications & Certifications: Masters or doctorate degree in cybersecurity, computer science, software engineering, or related field CISSP/CISM certification or other broad cybersecurity industry-recognised certificate SABSA or TOGAF certified preferred Priyanka Sharma Senior Delivery Consultant
Oct 02, 2025
Contractor
Job Title: Lead Security Solution Architect- PAM Location: Hybrid-London, UK (Days/Week Onsite) Duration: 6months+ 550GBP/Day Inside IR35 Project Overview CLIENT is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the bank. One of the pillars of that programe is Privileged Access Management (PAM). CLIENT is working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Lead Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents in line with functional and non-functional business requirements, strategies, principles, standards, and patterns. Alongside the creation of high-level designs, Security Solution Architects will be required to record key decisions, design deviations, and technical risks and issues where appropriate. Security Solution Architects should be comfortable presenting and sharing solutions at design authorities and senior leadership & stakeholders. The Lead Security Solution Architect will provide technical thought leadership and direction to their project team and may represent the project/programme as subject matter expert. This role will require someone experienced in managing a team of on-shore and off-shore resources to deliver High- and Low-level designs to the required quality and standard. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level Experience in both operational and transformation cybersecurity roles or a clear working understanding of both perspectives Experience working in large-scale IT transformation programmes Experience working with PAM solutions such as CyberArk, Centrify, Delinea and OneIdentity Preparing end-to-end configuration of the strategic PAM capability - including on-prem deployments as well as Cloud native toolings Assisting in preparation of demonstrable journeys on the configured PAM tooling Platform & Technology: BizzDesign, Archi, or generic UML visualisation experience for high-level designs High proficiency and expertise in Jira for project & tasks management Working proficiency in Confluence for documentation Principal Accountabilities and Responsibilities Architecture & Design: Produce, manage, and update end-to-end solution designs in line with reference architecture & business requirements (including High and Low Level Designs Articulate and publish key design decision records and options to ensure all solutions follow a logical, transparent decision-making process Articulate, publish, and ensure approval of any design deviations resulting in technical debt Ensure any technical risks or issues arising from a solution design are recorded and mitigated. Produces, manages and translates the requirements into the architecture for that solution, ensuring technology and services meet the customer needs and expected business outcomes Ensures the design of the solutions are efficient, timely and cost effective throughout the project life cycle Clear understanding of both the motivations of the business and technical security Promote strong documentation and clerkship Governance: Ensures all high-level designs, architecture patterns, decision records, deviation requests, and technical risks or issue records undergo architectural and project governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Ability to map design decisions to resultant technical risks & issues to articulate the cause and rationale which leads to any negatively impacting change Leadership & Teamwork Provides technical thought leadership to the Design Team and the Project Ability to manage a project team of technical architects, engineers, and/or analysts Ability to take a deputised role in programme management-related tasks where necessary Qualifications & Certifications: Masters or doctorate degree in cybersecurity, computer science, software engineering, or related field CISSP/CISM certification or other broad cybersecurity industry-recognised certificate SABSA or TOGAF certified preferred Priyanka Sharma Senior Delivery Consultant