• Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
  • Sign in
  • Sign up
  • Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

12 jobs found

Email me jobs like this
Refine Search
Current Search
lead privileged access management pam engineer
ARM
Solution Architect - PAM/PAW
ARM City, London
Solution Architect - PAM/PAW 6 Months Hybrid/London - 2 days per week on site (Apply online only) per day (Inside IR35) My client in the telecommunications industry are looking for a Solution Architect to join their fast-paced team on an initial 6 month contract. The ideal candidate will have hands-on experience, structured thinking, strong communication skills, and the ability to operate in a complex enterprise environment. The selected candidate MUST HAVE Privileged Access Management/Privileged Access Workstations experience The Solution Architect will be responsible for defining and owning the end-to-end solution architecture for PAM and PAW across the programme. The role will ensure that the solution is secure, scalable, compliant, operationally supportable, and aligned with the business' enterprise architecture, security standards, and programme objectives. Key Responsibilities Own the end-to-end PAM / PAW solution architecture for the assigned workstream. Define the target-state architecture, including integration with identity platforms, network systems, access controls, monitoring, and operational tooling. Assess current-state privileged access processes and identify gaps, risks, and required changes. Translate business, security, operational, and compliance requirements into a practical solution architecture. Work closely with security, network, infrastructure, operations, and application teams to ensure architectural alignment. Define architecture principles, design patterns, security controls, and implementation guardrails. Support decision-making around PAM tooling, PAW standards, access models, and integration approaches. Ensure the solution supports audit, regulatory, and governance requirements. Identify architectural risks, dependencies, and constraints, and propose mitigation options. Provide technical leadership to designers, engineers, PMs, BAs, and delivery teams. Produce and maintain key architecture artefacts, including high-level designs, architecture diagrams, options papers, and decision records. Present solution options, recommendations, and risks to senior stakeholders and governance boards. Ensure the solution is fit for transition into BAU operations. Required Skills and Experience Strong experience as a Solution Architect in security, identity, network, or infrastructure programmes. Good understanding of Privileged Access Management concepts, including privileged accounts, session management, credential vaulting, least privilege, access approval workflows, and audit logging. Good understanding of Privileged Access Workstation concepts, including hardened workstations, admin tiers, secure access models, and separation of privileged and standard user activities. Experience working in complex enterprise or telecom environments. Strong understanding of network environments, operational support models, and security governance. Ability to convert complex security and operational requirements into practical solution designs. Experience working with senior stakeholders, architecture review boards, cyber security teams, and operations teams. Ability to take ownership, drive decisions, and remove ambiguity. Desirable Skills Experience with PAM tools such as CyberArk, BeyondTrust, Delinea, or similar. Experience with Microsoft security technologies, Active Directory, Entra ID, conditional access, device hardening, or endpoint management. Experience in Solution Architecture, separation, migration, divestment, or integration programmes. Knowledge of telecom network operations and privileged access controls. Expected Outcomes Approved PAM / PAW target architecture. Clear architecture decisions and design principles. Identified risks, dependencies, and mitigation plans. Architecture aligned with company security and operational standards. Solution ready for detailed design, delivery, and operational handover. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Aug 08, 2026
Contractor
Solution Architect - PAM/PAW 6 Months Hybrid/London - 2 days per week on site (Apply online only) per day (Inside IR35) My client in the telecommunications industry are looking for a Solution Architect to join their fast-paced team on an initial 6 month contract. The ideal candidate will have hands-on experience, structured thinking, strong communication skills, and the ability to operate in a complex enterprise environment. The selected candidate MUST HAVE Privileged Access Management/Privileged Access Workstations experience The Solution Architect will be responsible for defining and owning the end-to-end solution architecture for PAM and PAW across the programme. The role will ensure that the solution is secure, scalable, compliant, operationally supportable, and aligned with the business' enterprise architecture, security standards, and programme objectives. Key Responsibilities Own the end-to-end PAM / PAW solution architecture for the assigned workstream. Define the target-state architecture, including integration with identity platforms, network systems, access controls, monitoring, and operational tooling. Assess current-state privileged access processes and identify gaps, risks, and required changes. Translate business, security, operational, and compliance requirements into a practical solution architecture. Work closely with security, network, infrastructure, operations, and application teams to ensure architectural alignment. Define architecture principles, design patterns, security controls, and implementation guardrails. Support decision-making around PAM tooling, PAW standards, access models, and integration approaches. Ensure the solution supports audit, regulatory, and governance requirements. Identify architectural risks, dependencies, and constraints, and propose mitigation options. Provide technical leadership to designers, engineers, PMs, BAs, and delivery teams. Produce and maintain key architecture artefacts, including high-level designs, architecture diagrams, options papers, and decision records. Present solution options, recommendations, and risks to senior stakeholders and governance boards. Ensure the solution is fit for transition into BAU operations. Required Skills and Experience Strong experience as a Solution Architect in security, identity, network, or infrastructure programmes. Good understanding of Privileged Access Management concepts, including privileged accounts, session management, credential vaulting, least privilege, access approval workflows, and audit logging. Good understanding of Privileged Access Workstation concepts, including hardened workstations, admin tiers, secure access models, and separation of privileged and standard user activities. Experience working in complex enterprise or telecom environments. Strong understanding of network environments, operational support models, and security governance. Ability to convert complex security and operational requirements into practical solution designs. Experience working with senior stakeholders, architecture review boards, cyber security teams, and operations teams. Ability to take ownership, drive decisions, and remove ambiguity. Desirable Skills Experience with PAM tools such as CyberArk, BeyondTrust, Delinea, or similar. Experience with Microsoft security technologies, Active Directory, Entra ID, conditional access, device hardening, or endpoint management. Experience in Solution Architecture, separation, migration, divestment, or integration programmes. Knowledge of telecom network operations and privileged access controls. Expected Outcomes Approved PAM / PAW target architecture. Clear architecture decisions and design principles. Identified risks, dependencies, and mitigation plans. Architecture aligned with company security and operational standards. Solution ready for detailed design, delivery, and operational handover. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Hays Technology
BeyondTrust SME x2
Hays Technology City, Manchester
We are working with a client who is a global leader in consulting, technology services, and digital transformation, committed to delivering positive change through technology and human collaboration. The ideal candidates will be practical, hands-on engineers who can quickly become productive within an existing BeyondTrust environment, absorb knowledge from incumbent teams, support transition activities, and provide ongoing operational expertise as the service moves into BAU. We are seeking two experienced BeyondTrust SMEs to support the transition and ongoing operation of a Privileged Access Management (PAM) service. The successful candidates will provide hands-on administration, support, troubleshooting, and knowledge transfer activities across the BeyondTrust platform, working closely with customer SMEs and operational teams. They will play a key role in ensuring secure management of privileged access, supporting integrations with Active Directory and Microsoft Entra ID, and assisting with the transfer of service knowledge into the run organisation. Provide hands-on administration and support for the BeyondTrust platform, including Privileged Access Management (PAM) capabilities. Support knowledge transfer sessions and documentation review during transition activities. Manage and maintain privileged access policies, user access controls, and security configurations. Work with Active Directory and Microsoft Entra ID to support authentication, authorisation, group management, and role-based access controls. Configure and maintain integrations between BeyondTrust and identity services, including SAML, MFA, and directory services. Support troubleshooting and resolution of operational incidents, service requests, and platform issues. Assist with onboarding and offboarding privileged users and privileged accounts. Support policy management and Group Policy-related configurations that interact with BeyondTrust services. Participate in hypercare activities and provide operational support during service stabilisation. Produce and maintain technical documentation, operational procedures, and support knowledge articles. Collaborate with infrastructure, security, and service management teams to ensure service continuity and compliance. In order to apply, you need to have several years of hands-on experience supporting and administering BeyondTrust. You will have a good understanding of Privileged Access Management (PAM) concepts and best practices. Experience with: BeyondTrust Password Safe, BeyondTrust Privileged Remote Access (PRA), BeyondTrust Endpoint Privilege Management (EPM). Strong Active Directory administration experience. Experience with Microsoft Entra ID (Azure AD). Active Directory Group Policy administration and troubleshooting. Knowledge of: SAML authentication, Single Sign-On (SSO), Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), Experience supporting production services in a secure enterprise environment. Strong troubleshooting and documentation skills. It would be beneficial if you have experience working in financial services or highly regulated environments. Exposure to service transition, KT, and hypercare activities. Understanding of ITIL processes and operational support models. Experience working within secure or restricted-access environments. Please be clear that only candidates that meet the above criteria with the right to work and that are resident in the UK will be considered. No sponsorship is available. This role is working 5 days a week on site from sites in either Manchester or Inverness - you will need to prove you have the ability to work from one of these sites in order to be considered. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Aug 08, 2026
Contractor
We are working with a client who is a global leader in consulting, technology services, and digital transformation, committed to delivering positive change through technology and human collaboration. The ideal candidates will be practical, hands-on engineers who can quickly become productive within an existing BeyondTrust environment, absorb knowledge from incumbent teams, support transition activities, and provide ongoing operational expertise as the service moves into BAU. We are seeking two experienced BeyondTrust SMEs to support the transition and ongoing operation of a Privileged Access Management (PAM) service. The successful candidates will provide hands-on administration, support, troubleshooting, and knowledge transfer activities across the BeyondTrust platform, working closely with customer SMEs and operational teams. They will play a key role in ensuring secure management of privileged access, supporting integrations with Active Directory and Microsoft Entra ID, and assisting with the transfer of service knowledge into the run organisation. Provide hands-on administration and support for the BeyondTrust platform, including Privileged Access Management (PAM) capabilities. Support knowledge transfer sessions and documentation review during transition activities. Manage and maintain privileged access policies, user access controls, and security configurations. Work with Active Directory and Microsoft Entra ID to support authentication, authorisation, group management, and role-based access controls. Configure and maintain integrations between BeyondTrust and identity services, including SAML, MFA, and directory services. Support troubleshooting and resolution of operational incidents, service requests, and platform issues. Assist with onboarding and offboarding privileged users and privileged accounts. Support policy management and Group Policy-related configurations that interact with BeyondTrust services. Participate in hypercare activities and provide operational support during service stabilisation. Produce and maintain technical documentation, operational procedures, and support knowledge articles. Collaborate with infrastructure, security, and service management teams to ensure service continuity and compliance. In order to apply, you need to have several years of hands-on experience supporting and administering BeyondTrust. You will have a good understanding of Privileged Access Management (PAM) concepts and best practices. Experience with: BeyondTrust Password Safe, BeyondTrust Privileged Remote Access (PRA), BeyondTrust Endpoint Privilege Management (EPM). Strong Active Directory administration experience. Experience with Microsoft Entra ID (Azure AD). Active Directory Group Policy administration and troubleshooting. Knowledge of: SAML authentication, Single Sign-On (SSO), Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), Experience supporting production services in a secure enterprise environment. Strong troubleshooting and documentation skills. It would be beneficial if you have experience working in financial services or highly regulated environments. Exposure to service transition, KT, and hypercare activities. Understanding of ITIL processes and operational support models. Experience working within secure or restricted-access environments. Please be clear that only candidates that meet the above criteria with the right to work and that are resident in the UK will be considered. No sponsorship is available. This role is working 5 days a week on site from sites in either Manchester or Inverness - you will need to prove you have the ability to work from one of these sites in order to be considered. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Randstad Technologies Recruitment
Privileged Access Management (PAM) Architect
Randstad Technologies Recruitment Corsham, Wiltshire
Job Title: Privileged Access Management Architect Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a PAM Architect role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Aug 08, 2026
Contractor
Job Title: Privileged Access Management Architect Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a PAM Architect role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Randstad Technologies Recruitment
Privileged Access Manager
Randstad Technologies Recruitment Corsham, Wiltshire
Job Title: Privileged Access Manager Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a Senior SME role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Aug 08, 2026
Contractor
Job Title: Privileged Access Manager Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a Senior SME role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Hays Specialist Recruitment
BeyondTrust SME x2
Hays Specialist Recruitment Manchester, Lancashire
We are working with a client who is a global leader in consulting, technology services, and digital transformation, committed to delivering positive change through technology and human collaboration. The ideal candidates will be practical, hands-on engineers who can quickly become productive within an existing BeyondTrust environment, absorb knowledge from incumbent teams, support transition activities, and provide ongoing operational expertise as the service moves into BAU. We are seeking two experienced BeyondTrust SMEs to support the transition and ongoing operation of a Privileged Access Management (PAM) service. The successful candidates will provide hands-on administration, support, troubleshooting, and knowledge transfer activities across the BeyondTrust platform, working closely with customer SMEs and operational teams. They will play a key role in ensuring secure management of privileged access, supporting integrations with Active Directory and Microsoft Entra ID, and assisting with the transfer of service knowledge into the run organisation. Provide hands-on administration and support for the BeyondTrust platform, including Privileged Access Management (PAM) capabilities. Support knowledge transfer sessions and documentation review during transition activities. Manage and maintain privileged access policies, user access controls, and security configurations. Work with Active Directory and Microsoft Entra ID to support authentication, authorisation, group management, and role-based access controls. Configure and maintain integrations between BeyondTrust and identity services, including SAML, MFA, and directory services. Support troubleshooting and resolution of operational incidents, service requests, and platform issues. Assist with onboarding and offboarding privileged users and privileged accounts. Support policy management and Group Policy-related configurations that interact with BeyondTrust services. Participate in hypercare activities and provide operational support during service stabilisation. Produce and maintain technical documentation, operational procedures, and support knowledge articles. Collaborate with infrastructure, security, and service management teams to ensure service continuity and compliance. In order to apply, you need to have several years of hands-on experience supporting and administering BeyondTrust. You will have a good understanding of Privileged Access Management (PAM) concepts and best practices. Experience with: BeyondTrust Password Safe, BeyondTrust Privileged Remote Access (PRA), BeyondTrust Endpoint Privilege Management (EPM). Strong Active Directory administration experience. Experience with Microsoft Entra ID (Azure AD). Active Directory Group Policy administration and troubleshooting. Knowledge of: SAML authentication, Single Sign-On (SSO), Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), Experience supporting production services in a secure enterprise environment. Strong troubleshooting and documentation skills. It would be beneficial if you have experience working in financial services or highly regulated environments. Exposure to service transition, KT, and hypercare activities. Understanding of ITIL processes and operational support models. Experience working within secure or restricted-access environments. Please be clear that only candidates that meet the above criteria with the right to work and that are resident in the UK will be considered. No sponsorship is available. This role is working 5 days a week on site from sites in either Manchester or Inverness - you will need to prove you have the ability to work from one of these sites in order to be considered. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found on our website.
Aug 07, 2026
Contractor
We are working with a client who is a global leader in consulting, technology services, and digital transformation, committed to delivering positive change through technology and human collaboration. The ideal candidates will be practical, hands-on engineers who can quickly become productive within an existing BeyondTrust environment, absorb knowledge from incumbent teams, support transition activities, and provide ongoing operational expertise as the service moves into BAU. We are seeking two experienced BeyondTrust SMEs to support the transition and ongoing operation of a Privileged Access Management (PAM) service. The successful candidates will provide hands-on administration, support, troubleshooting, and knowledge transfer activities across the BeyondTrust platform, working closely with customer SMEs and operational teams. They will play a key role in ensuring secure management of privileged access, supporting integrations with Active Directory and Microsoft Entra ID, and assisting with the transfer of service knowledge into the run organisation. Provide hands-on administration and support for the BeyondTrust platform, including Privileged Access Management (PAM) capabilities. Support knowledge transfer sessions and documentation review during transition activities. Manage and maintain privileged access policies, user access controls, and security configurations. Work with Active Directory and Microsoft Entra ID to support authentication, authorisation, group management, and role-based access controls. Configure and maintain integrations between BeyondTrust and identity services, including SAML, MFA, and directory services. Support troubleshooting and resolution of operational incidents, service requests, and platform issues. Assist with onboarding and offboarding privileged users and privileged accounts. Support policy management and Group Policy-related configurations that interact with BeyondTrust services. Participate in hypercare activities and provide operational support during service stabilisation. Produce and maintain technical documentation, operational procedures, and support knowledge articles. Collaborate with infrastructure, security, and service management teams to ensure service continuity and compliance. In order to apply, you need to have several years of hands-on experience supporting and administering BeyondTrust. You will have a good understanding of Privileged Access Management (PAM) concepts and best practices. Experience with: BeyondTrust Password Safe, BeyondTrust Privileged Remote Access (PRA), BeyondTrust Endpoint Privilege Management (EPM). Strong Active Directory administration experience. Experience with Microsoft Entra ID (Azure AD). Active Directory Group Policy administration and troubleshooting. Knowledge of: SAML authentication, Single Sign-On (SSO), Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), Experience supporting production services in a secure enterprise environment. Strong troubleshooting and documentation skills. It would be beneficial if you have experience working in financial services or highly regulated environments. Exposure to service transition, KT, and hypercare activities. Understanding of ITIL processes and operational support models. Experience working within secure or restricted-access environments. Please be clear that only candidates that meet the above criteria with the right to work and that are resident in the UK will be considered. No sponsorship is available. This role is working 5 days a week on site from sites in either Manchester or Inverness - you will need to prove you have the ability to work from one of these sites in order to be considered. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found on our website.
Lucid Support Services Ltd
PAM Architect
Lucid Support Services Ltd Corsham, Wiltshire
Job title: Privileged Access Management (PAM) Architect Duration: 9 months Clearance required: DV or DV Eligible Rate: To be discussed Location: Hybrid, onsite in Corsham twice a week Specification: Below Overview: We are seeking an experienced Privileged Access Management (PAM) Architect and Subject Matter Expert (SME) to lead the design, implementation, and optimisation of enterprise PAM solutions, with a strong focus on CyberArk. This role requires deep technical expertise, strategic oversight, and hands-on delivery capability within secure, high-assurance environments. The successful candidate will play a key role in securing critical systems and sensitive data, supporting a UK secure account, and engaging directly with stakeholders across customer sites. Key Responsibilities: Lead the architecture, design, and implementation of CyberArk-based PAM solutions across on-premise complex enterprise environments Act as the technical SME for PAM, providing expert guidance on best practices, standards, and emerging capabilities Deliver end-to-end CyberArk deployments, including Privileged Access Security (PAS), Privilege Cloud, and associated components Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies Work closely with security, infrastructure, and application teams to integrate PAM controls into existing environments Conduct security assessments and gap analyses, providing remediation recommendations aligned to industry standards (eg, NIST, ISO 27001) Support audit and compliance requirements, ensuring adherence to security policies and regulatory obligations Provide technical leadership and mentoring to internal teams and stakeholders Engage directly with internal and external stakeholder with visiting customers on-site, building trusted relationships and ensuring successful delivery outcomes Contribute to continuous improvement initiatives and innovation within the PAM domain Required Skills & Experience: Proven experience in a PAM Architect or Senior SME role Strong hands-on expertise with CyberArk (PAS, CPM, PSM, PVWA, PTA, desirable) Experience designing and delivering enterprise-scale PAM solutions Demonstrable experience producing high-quality design documentation, including: High-Level Designs (HLDs) Low-Level Designs (LLDs) Security architecture documents Implementation and operational runbooks Deep understanding of identity and access management (IAM) principles and security best practices Strong knowledge of privileged credential life cycle management, session isolation/recording, and least privilege models Experience integrating CyberArk with: Active Directory/LDAP SIEM tools ITSM tools Familiarity with DevSecOps and secrets management is advantageous Excellent stakeholder management and communication skills Industry Experience: Prior experience working in the Defence and/or Aerospace sector is highly desirable Understanding of high-assurance, regulated environments and secure system delivery Desirable Certifications CyberArk Certified Delivery Engineer (CDE)/Defender (CDP)/Sentry CISSP, CISM, or equivalent security certifications TOGAF or other architecture frameworks (desirable) If you are available and interested in this opportunity, please apply for further information. Please note that due to high volumes of applications we are unable to contact every applicant. If you do not hear back from us within 7 days of sending your application, please assume that you have not been successful on this occasion. At Lucid, we celebrate difference and value diverse perspectives, underpinned by our values 'Honesty, Integrity and Pragmatism'. We are proud to provide equal opportunities in line with our Diversity and Inclusion policy and welcome applications from all suitably qualified or experienced people, regardless of personal characteristics. If you have a disability or health condition and seek support throughout the recruitment process, please do not hesitate to contact us via the details below.
Aug 07, 2026
Contractor
Job title: Privileged Access Management (PAM) Architect Duration: 9 months Clearance required: DV or DV Eligible Rate: To be discussed Location: Hybrid, onsite in Corsham twice a week Specification: Below Overview: We are seeking an experienced Privileged Access Management (PAM) Architect and Subject Matter Expert (SME) to lead the design, implementation, and optimisation of enterprise PAM solutions, with a strong focus on CyberArk. This role requires deep technical expertise, strategic oversight, and hands-on delivery capability within secure, high-assurance environments. The successful candidate will play a key role in securing critical systems and sensitive data, supporting a UK secure account, and engaging directly with stakeholders across customer sites. Key Responsibilities: Lead the architecture, design, and implementation of CyberArk-based PAM solutions across on-premise complex enterprise environments Act as the technical SME for PAM, providing expert guidance on best practices, standards, and emerging capabilities Deliver end-to-end CyberArk deployments, including Privileged Access Security (PAS), Privilege Cloud, and associated components Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies Work closely with security, infrastructure, and application teams to integrate PAM controls into existing environments Conduct security assessments and gap analyses, providing remediation recommendations aligned to industry standards (eg, NIST, ISO 27001) Support audit and compliance requirements, ensuring adherence to security policies and regulatory obligations Provide technical leadership and mentoring to internal teams and stakeholders Engage directly with internal and external stakeholder with visiting customers on-site, building trusted relationships and ensuring successful delivery outcomes Contribute to continuous improvement initiatives and innovation within the PAM domain Required Skills & Experience: Proven experience in a PAM Architect or Senior SME role Strong hands-on expertise with CyberArk (PAS, CPM, PSM, PVWA, PTA, desirable) Experience designing and delivering enterprise-scale PAM solutions Demonstrable experience producing high-quality design documentation, including: High-Level Designs (HLDs) Low-Level Designs (LLDs) Security architecture documents Implementation and operational runbooks Deep understanding of identity and access management (IAM) principles and security best practices Strong knowledge of privileged credential life cycle management, session isolation/recording, and least privilege models Experience integrating CyberArk with: Active Directory/LDAP SIEM tools ITSM tools Familiarity with DevSecOps and secrets management is advantageous Excellent stakeholder management and communication skills Industry Experience: Prior experience working in the Defence and/or Aerospace sector is highly desirable Understanding of high-assurance, regulated environments and secure system delivery Desirable Certifications CyberArk Certified Delivery Engineer (CDE)/Defender (CDP)/Sentry CISSP, CISM, or equivalent security certifications TOGAF or other architecture frameworks (desirable) If you are available and interested in this opportunity, please apply for further information. Please note that due to high volumes of applications we are unable to contact every applicant. If you do not hear back from us within 7 days of sending your application, please assume that you have not been successful on this occasion. At Lucid, we celebrate difference and value diverse perspectives, underpinned by our values 'Honesty, Integrity and Pragmatism'. We are proud to provide equal opportunities in line with our Diversity and Inclusion policy and welcome applications from all suitably qualified or experienced people, regardless of personal characteristics. If you have a disability or health condition and seek support throughout the recruitment process, please do not hesitate to contact us via the details below.
LA International Computer Consultants Ltd
Beyond Trust SME
LA International Computer Consultants Ltd Manchester, Lancashire
BeyondTrust SME (Privileged Access Management) 6 months Location: Manchester and Inverness | 5 days onsite £550 inside IR35 We are seeking two experienced BeyondTrust SMEs to support the transition and ongoing operation of a Privileged Access Management (PAM) service. The successful candidates will provide hands-on administration, support, troubleshooting, and knowledge transfer activities across the BeyondTrust platform, working closely with customer SMEs and operational teams. They will play a key role in ensuring secure management of privileged access, supporting integrations with Active Directory and Microsoft Entra ID, and assisting with the transfer of service knowledge into the run organisation. Key Responsibilities Provide hands-on administration and support for the BeyondTrust platform, including Privileged Access Management (PAM) capabilities. Support knowledge transfer sessions and documentation review during transition activities. Manage and maintain privileged access policies, user access controls, and security configurations. Work with Active Directory and Microsoft Entra ID to support authentication, authorisation, group management, and role-based access controls. Configure and maintain integrations between BeyondTrust and identity services including SAML, MFA, and directory services. Support troubleshooting and resolution of operational incidents, service requests, and platform issues. Assist with onboarding and offboarding privileged users and privileged accounts. Support policy management and Group Policy-related configurations that interact with BeyondTrust services. Participate in hypercare activities and provide operational support during service stabilisation. Produce and maintain technical documentation, operational procedures, and support knowledge articles. Collaborate with infrastructure, security, and service management teams to ensure service continuity and compliance. Essential Skills & Experience 2-3+ years hands-on experience supporting and administering BeyondTrust. Good understanding of Privileged Access Management (PAM) concepts and best practices. Experience with: BeyondTrust Password Safe BeyondTrust Privileged Remote Access (PRA) BeyondTrust Endpoint Privilege Management (EPM) Strong Active Directory administration experience. Experience with Microsoft Entra ID (Azure AD). Active Directory Group Policy administration and troubleshooting. Knowledge of: SAML authentication Single Sign-On (SSO) Multi-Factor Authentication (MFA) Role-Based Access Control (RBAC) Experience supporting production services in a secure enterprise environment. Strong troubleshooting and documentation skills. Desirable Skills Experience working in financial services or highly regulated environments. Exposure to service transition, KT, and hypercare activities. Understanding of ITIL processes and operational support models. Experience working within secure or restricted-access environments. Candidate Profile The ideal candidate will be a practical, hands-on engineer who can quickly become productive within an existing BeyondTrust environment, absorb knowledge from incumbent teams, support transition activities, and provide ongoing operational expertise as the service moves into BAU. Please share your latest Cv LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. A multiple award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over consecutive years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Aug 06, 2026
Contractor
BeyondTrust SME (Privileged Access Management) 6 months Location: Manchester and Inverness | 5 days onsite £550 inside IR35 We are seeking two experienced BeyondTrust SMEs to support the transition and ongoing operation of a Privileged Access Management (PAM) service. The successful candidates will provide hands-on administration, support, troubleshooting, and knowledge transfer activities across the BeyondTrust platform, working closely with customer SMEs and operational teams. They will play a key role in ensuring secure management of privileged access, supporting integrations with Active Directory and Microsoft Entra ID, and assisting with the transfer of service knowledge into the run organisation. Key Responsibilities Provide hands-on administration and support for the BeyondTrust platform, including Privileged Access Management (PAM) capabilities. Support knowledge transfer sessions and documentation review during transition activities. Manage and maintain privileged access policies, user access controls, and security configurations. Work with Active Directory and Microsoft Entra ID to support authentication, authorisation, group management, and role-based access controls. Configure and maintain integrations between BeyondTrust and identity services including SAML, MFA, and directory services. Support troubleshooting and resolution of operational incidents, service requests, and platform issues. Assist with onboarding and offboarding privileged users and privileged accounts. Support policy management and Group Policy-related configurations that interact with BeyondTrust services. Participate in hypercare activities and provide operational support during service stabilisation. Produce and maintain technical documentation, operational procedures, and support knowledge articles. Collaborate with infrastructure, security, and service management teams to ensure service continuity and compliance. Essential Skills & Experience 2-3+ years hands-on experience supporting and administering BeyondTrust. Good understanding of Privileged Access Management (PAM) concepts and best practices. Experience with: BeyondTrust Password Safe BeyondTrust Privileged Remote Access (PRA) BeyondTrust Endpoint Privilege Management (EPM) Strong Active Directory administration experience. Experience with Microsoft Entra ID (Azure AD). Active Directory Group Policy administration and troubleshooting. Knowledge of: SAML authentication Single Sign-On (SSO) Multi-Factor Authentication (MFA) Role-Based Access Control (RBAC) Experience supporting production services in a secure enterprise environment. Strong troubleshooting and documentation skills. Desirable Skills Experience working in financial services or highly regulated environments. Exposure to service transition, KT, and hypercare activities. Understanding of ITIL processes and operational support models. Experience working within secure or restricted-access environments. Candidate Profile The ideal candidate will be a practical, hands-on engineer who can quickly become productive within an existing BeyondTrust environment, absorb knowledge from incumbent teams, support transition activities, and provide ongoing operational expertise as the service moves into BAU. Please share your latest Cv LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. A multiple award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over consecutive years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
AJ Bell Business Solutions Limited
Principal Information Security Engineer
AJ Bell Business Solutions Limited Salford, Manchester
Due to growth within our security engineering department we are now looking for a Principal Information Security Engineer to join the team. The role will support the Senior Information Security Engineering Manager by providing technical leadership and oversight across the Information Security Engineering team. This role is responsible for the day-to-day technical execution by our security engineering team, ensuring that project engagements are delivered to a high standard and support activities are dealt with in line with organisational SLAs. You will act as the team s primary technical lead and escalation point, driving efficiency, validating designs, and ensuring that all engineering outputs remain consistent and aligned with the security strategy. The key responsibilities of the role are: Act as the primary technical escalation point for the team, providing hands-on guidance and decision-making for complex technical challenges. Oversee the day-to-day execution of security engineering, ensuring that BAU work is delivered to high standards and that all team SLAs are consistently met. Ensure the quality and consistency of engineering outputs, specifically for project engagements, technical tasks, and documentation, ensuring they align with established security standards. Support the technical delivery of our security tooling roadmap, helping to bridge the gap between high-level strategic objectives and operational outcomes. Work closely with the Information Security Architecture team to validate design concepts, ensuring solutions are robust, scalable, and fit for our enterprise environment. Collaborate with the Information Security Operations team to drive operational efficiency, quality improvements, and the seamless integration of security controls across the estate. Provide technical leadership and mentoring to the engineering team, ensuring they have the support and direction needed to deliver secure, automated, and effective solutions Technical Skills: Demonstrable experience implementing enterprise security platforms Strong hands-on experience with of Microsoft security stack Strong hands-on experience using, managing, and securing diverse end-user compute environments, including Windows, MacOS, Linux, and mobile device platforms. Knowledge/experience working with firewalls and cloud security solutions is highly advantageous Deep understanding of Information Security solutions e.g. email / web gateways, Privileged Account Management (PAM), Identity Governance and Administration (IGA), Security Information and Event Management (SIEM), Endpoint protection Strong understanding and knowledge of Information Security risk management tools and techniques. Awareness of Information Security control standards and frameworks Knowledge/experience working with firewalls and cloud security solutions is highly advantageous. Knowledge/experience working with firewalls is highly advantageous Experience of Cloud security solutions and standards is highly advantageous Hands-on experience with automation and scripting highly desirable Competence: Experience working within recognised Information Security frameworks and best practices such as ISO27001, NIST etc. 5 years experience in an Information Security role gained in a financial services or e-commerce environment is preferred Attained or working towards CISSP certification About AJ Bell At AJ Bell, we believe investing should feel good. Whether you're looking for an ISA, pension or dealing account, whether you want to invest with the help of a financial adviser or do it yourself, we have easy-to-use solutions to suit people from all walks of life. We're one of the UK's fastest-growing investment platform businesses, trusted by everyone from professional financial advisers to first-time investors. Today, over 762,000 customers trust us to manage more than £121.5 billion of assets. By continually striving to make investing simpler and more accessible, we're helping more people take control of their financial futures. We're proud to be recognised as one of the UK's Best 100 Companies to Work For for six consecutive years, and a Great Place to Work in 2025 and 2026, a reflection of our supportive and collaborative culture. What we offer We offer a competitive package including: Starting holidays of 26 days, increasing to 31 with length of service as well as buy/sell options Matched pension contributions up to 7% Discretionary bonus scheme Free share awards & BAYE scheme Private healthcare options & Health Cash Plan Free onsite gym Ongoing technical training & professional qualification support Hybrid working (minimum 50% Manchester office) For the full list of benefits and more detail about the role, click apply or visit our careers page. Our ways of working At AJ Bell, our people are the heart of our culture. We believe in building strong connections by working together. That's why we offer a hybrid working model, where you'll spend a minimum of 50% of working time per month in the office. For new team members, an initial period will be spent full-time in the office to help you immerse yourself in our business and build valuable relationships with your colleagues. Inclusion & diversity We re committed to creating an inclusive environment where everyone feels respected, supported and able to be themselves at work. We welcome applications from all backgrounds and make hiring decisions based on skills, experience and potential. Agency information This vacancy is being managed exclusively by our in-house Recruitment team. We are not partnering with recruitment agencies on this opportunity and will only accept applications submitted directly by candidates.
Aug 04, 2026
Full time
Due to growth within our security engineering department we are now looking for a Principal Information Security Engineer to join the team. The role will support the Senior Information Security Engineering Manager by providing technical leadership and oversight across the Information Security Engineering team. This role is responsible for the day-to-day technical execution by our security engineering team, ensuring that project engagements are delivered to a high standard and support activities are dealt with in line with organisational SLAs. You will act as the team s primary technical lead and escalation point, driving efficiency, validating designs, and ensuring that all engineering outputs remain consistent and aligned with the security strategy. The key responsibilities of the role are: Act as the primary technical escalation point for the team, providing hands-on guidance and decision-making for complex technical challenges. Oversee the day-to-day execution of security engineering, ensuring that BAU work is delivered to high standards and that all team SLAs are consistently met. Ensure the quality and consistency of engineering outputs, specifically for project engagements, technical tasks, and documentation, ensuring they align with established security standards. Support the technical delivery of our security tooling roadmap, helping to bridge the gap between high-level strategic objectives and operational outcomes. Work closely with the Information Security Architecture team to validate design concepts, ensuring solutions are robust, scalable, and fit for our enterprise environment. Collaborate with the Information Security Operations team to drive operational efficiency, quality improvements, and the seamless integration of security controls across the estate. Provide technical leadership and mentoring to the engineering team, ensuring they have the support and direction needed to deliver secure, automated, and effective solutions Technical Skills: Demonstrable experience implementing enterprise security platforms Strong hands-on experience with of Microsoft security stack Strong hands-on experience using, managing, and securing diverse end-user compute environments, including Windows, MacOS, Linux, and mobile device platforms. Knowledge/experience working with firewalls and cloud security solutions is highly advantageous Deep understanding of Information Security solutions e.g. email / web gateways, Privileged Account Management (PAM), Identity Governance and Administration (IGA), Security Information and Event Management (SIEM), Endpoint protection Strong understanding and knowledge of Information Security risk management tools and techniques. Awareness of Information Security control standards and frameworks Knowledge/experience working with firewalls and cloud security solutions is highly advantageous. Knowledge/experience working with firewalls is highly advantageous Experience of Cloud security solutions and standards is highly advantageous Hands-on experience with automation and scripting highly desirable Competence: Experience working within recognised Information Security frameworks and best practices such as ISO27001, NIST etc. 5 years experience in an Information Security role gained in a financial services or e-commerce environment is preferred Attained or working towards CISSP certification About AJ Bell At AJ Bell, we believe investing should feel good. Whether you're looking for an ISA, pension or dealing account, whether you want to invest with the help of a financial adviser or do it yourself, we have easy-to-use solutions to suit people from all walks of life. We're one of the UK's fastest-growing investment platform businesses, trusted by everyone from professional financial advisers to first-time investors. Today, over 762,000 customers trust us to manage more than £121.5 billion of assets. By continually striving to make investing simpler and more accessible, we're helping more people take control of their financial futures. We're proud to be recognised as one of the UK's Best 100 Companies to Work For for six consecutive years, and a Great Place to Work in 2025 and 2026, a reflection of our supportive and collaborative culture. What we offer We offer a competitive package including: Starting holidays of 26 days, increasing to 31 with length of service as well as buy/sell options Matched pension contributions up to 7% Discretionary bonus scheme Free share awards & BAYE scheme Private healthcare options & Health Cash Plan Free onsite gym Ongoing technical training & professional qualification support Hybrid working (minimum 50% Manchester office) For the full list of benefits and more detail about the role, click apply or visit our careers page. Our ways of working At AJ Bell, our people are the heart of our culture. We believe in building strong connections by working together. That's why we offer a hybrid working model, where you'll spend a minimum of 50% of working time per month in the office. For new team members, an initial period will be spent full-time in the office to help you immerse yourself in our business and build valuable relationships with your colleagues. Inclusion & diversity We re committed to creating an inclusive environment where everyone feels respected, supported and able to be themselves at work. We welcome applications from all backgrounds and make hiring decisions based on skills, experience and potential. Agency information This vacancy is being managed exclusively by our in-house Recruitment team. We are not partnering with recruitment agencies on this opportunity and will only accept applications submitted directly by candidates.
Hays Technology
Senior Linux IAM Engineer
Hays Technology City, Edinburgh
Senior Linux IAM Engineer Edinburgh or Glasgow Relaxed Hybrid and Flexible Working Environment 58,281- 68,621 per annum + 28.97% employer contributory pension and 38 days annual holiday Introduction to the Role Hays' Cyber practice have partnered exclusively with Registers of Scotland (RoS) on the search for an experienced Linux IAM/PAM Engineer to lead on identity, authentication, and privileged access across their Linux estate, driving least-privilege access, improving automation, and strengthening security as they scale our cloud platforms. This is a high-impact role where you'll act as a trusted expert, working across security, infrastructure, and cloud teams to influence key decisions and protect critical services. Ideal for someone with deep Linux identity expertise who thrives on solving complex security challenges and driving real change. About the Organisation Registers of Scotland (RoS) manages 21 land, property and other legal registers which are a critical asset for the Scottish economy. They aim to provide the best public service for Scotland and are on a mission to make some of the oldest public land registers in the world into some of the most modern. You can get an idea of their mission and culture by viewing this short video: Registers of Scotland Promotional Video - youtube(.)com/watch?v=ku6olOJkSpU Registers of Scotland (RoS) is an award-winning organisation recognised for its technology and innovation. Registers of Scotland is a world-leading pioneer in land and property registration. Their full-stack teams design, architect, and build all our registration products in-house, and they work to create digital solutions for the people of Scotland. You will get an opportunity to nurture your creativity and develop with RoS through access to the latest data, software engineering and product delivery techniques. What the Role Entails As a senior Unix / Linux identity subject-matter expert, you will be responsible for designing, implementing, and maintaining Linux identity, authentication, and privileged access controls across Red Hat and Ubuntu platforms. You will play a key role in strengthening least-privilege access, integrating security tooling, and increasing automation maturity across the estate. In this role you will: Design, deploy, and manage Linux identity and authentication services across RHEL and Ubuntu estates, including Red Hat Identity Management (IdM). Lead the implementation and continuous improvement of Privileged Access Management (PAM) controls for Unix/Linux systems, including policy enforcement, just-in-time access, and least-privilege models. Deploy and integrate security controls to support vulnerability and threat management tooling within the Linux estate. Develop and maintain a standardised role-based access control (RBAC) approach for Linux systems. Support the design and delivery of secure, automated builds for RHEL 8 & 9. Develop and maintain automation using Python and shell scripting to support identity, access, and security operations. Create and maintain documentation, including architecture diagrams, operating procedures, and technical standards. Act as a senior technical escalation point for Linux identity and access-related incidents and complex issues. Collaborate with cross-functional teams to integrate Linux identity services with enterprise identity platforms, cloud services, and security tooling. Contribute to continuous improvement of disaster recovery readiness, supporting recovery time objectives of 2 hours and recovery point objectives of zero. Provide mentorship and technical guidance to junior engineers and colleagues across the wider cyber and infrastructure teams. What I'm Looking For Significant commercial experience in a senior Linux / Unix engineering or identity-focused role. Strong hands-on experience with RHEL 6/7/8/9 system administration. Experience implementing and managing Red Hat Identity Management (IdM). Strong automation and scripting capability using Python and shell scripting. Proven experience applying principles of least privilege, just-in-time access, and privileged access controls. Experience integrating Linux systems with enterprise identity, PAM, and security platforms. Solid understanding of networking fundamentals, including TCP/IP, DNS, and authentication flows. Strong documentation skills and experience producing maintainable, supportable designs. Excellent communication skills, with the ability to explain complex technical concepts to non-technical audiences. Benefits Competitive salary package Pension contribution of 28.97% employer contribution Generous 38 days annual leave plus parental and special leave policies Flexible and hybrid working arrangements Strong focus on professional development and career progression Inclusive and supportive working culture Further information For further information relating to RoS, including: Additional details on pay & benefits The Civil Service Code Complaints process Use of AI in the application/recruitment process, Please view our additional information page online. ros.gov(.)uk/about/publications/governance-and-corporate/2026/recruitment-information Nationality and immigration status In general, only nationals from the following countries (and associations of countries) are eligible for employment in the Civil Service: the United Kingdom, the Republic of Ireland, and the Commonwealth. EU nationals (with settled or pre-settled status), certain EEA nationals, Swiss and Turkish nationals are also eligible for employment. Detailed provisions on determining eligibility on the grounds of nationality and, where relevant, immigration status can be reviewed here. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Aug 03, 2026
Full time
Senior Linux IAM Engineer Edinburgh or Glasgow Relaxed Hybrid and Flexible Working Environment 58,281- 68,621 per annum + 28.97% employer contributory pension and 38 days annual holiday Introduction to the Role Hays' Cyber practice have partnered exclusively with Registers of Scotland (RoS) on the search for an experienced Linux IAM/PAM Engineer to lead on identity, authentication, and privileged access across their Linux estate, driving least-privilege access, improving automation, and strengthening security as they scale our cloud platforms. This is a high-impact role where you'll act as a trusted expert, working across security, infrastructure, and cloud teams to influence key decisions and protect critical services. Ideal for someone with deep Linux identity expertise who thrives on solving complex security challenges and driving real change. About the Organisation Registers of Scotland (RoS) manages 21 land, property and other legal registers which are a critical asset for the Scottish economy. They aim to provide the best public service for Scotland and are on a mission to make some of the oldest public land registers in the world into some of the most modern. You can get an idea of their mission and culture by viewing this short video: Registers of Scotland Promotional Video - youtube(.)com/watch?v=ku6olOJkSpU Registers of Scotland (RoS) is an award-winning organisation recognised for its technology and innovation. Registers of Scotland is a world-leading pioneer in land and property registration. Their full-stack teams design, architect, and build all our registration products in-house, and they work to create digital solutions for the people of Scotland. You will get an opportunity to nurture your creativity and develop with RoS through access to the latest data, software engineering and product delivery techniques. What the Role Entails As a senior Unix / Linux identity subject-matter expert, you will be responsible for designing, implementing, and maintaining Linux identity, authentication, and privileged access controls across Red Hat and Ubuntu platforms. You will play a key role in strengthening least-privilege access, integrating security tooling, and increasing automation maturity across the estate. In this role you will: Design, deploy, and manage Linux identity and authentication services across RHEL and Ubuntu estates, including Red Hat Identity Management (IdM). Lead the implementation and continuous improvement of Privileged Access Management (PAM) controls for Unix/Linux systems, including policy enforcement, just-in-time access, and least-privilege models. Deploy and integrate security controls to support vulnerability and threat management tooling within the Linux estate. Develop and maintain a standardised role-based access control (RBAC) approach for Linux systems. Support the design and delivery of secure, automated builds for RHEL 8 & 9. Develop and maintain automation using Python and shell scripting to support identity, access, and security operations. Create and maintain documentation, including architecture diagrams, operating procedures, and technical standards. Act as a senior technical escalation point for Linux identity and access-related incidents and complex issues. Collaborate with cross-functional teams to integrate Linux identity services with enterprise identity platforms, cloud services, and security tooling. Contribute to continuous improvement of disaster recovery readiness, supporting recovery time objectives of 2 hours and recovery point objectives of zero. Provide mentorship and technical guidance to junior engineers and colleagues across the wider cyber and infrastructure teams. What I'm Looking For Significant commercial experience in a senior Linux / Unix engineering or identity-focused role. Strong hands-on experience with RHEL 6/7/8/9 system administration. Experience implementing and managing Red Hat Identity Management (IdM). Strong automation and scripting capability using Python and shell scripting. Proven experience applying principles of least privilege, just-in-time access, and privileged access controls. Experience integrating Linux systems with enterprise identity, PAM, and security platforms. Solid understanding of networking fundamentals, including TCP/IP, DNS, and authentication flows. Strong documentation skills and experience producing maintainable, supportable designs. Excellent communication skills, with the ability to explain complex technical concepts to non-technical audiences. Benefits Competitive salary package Pension contribution of 28.97% employer contribution Generous 38 days annual leave plus parental and special leave policies Flexible and hybrid working arrangements Strong focus on professional development and career progression Inclusive and supportive working culture Further information For further information relating to RoS, including: Additional details on pay & benefits The Civil Service Code Complaints process Use of AI in the application/recruitment process, Please view our additional information page online. ros.gov(.)uk/about/publications/governance-and-corporate/2026/recruitment-information Nationality and immigration status In general, only nationals from the following countries (and associations of countries) are eligible for employment in the Civil Service: the United Kingdom, the Republic of Ireland, and the Commonwealth. EU nationals (with settled or pre-settled status), certain EEA nationals, Swiss and Turkish nationals are also eligible for employment. Detailed provisions on determining eligibility on the grounds of nationality and, where relevant, immigration status can be reviewed here. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Picture More
IAM Operations Engineer
Picture More
Location: London (City) - (4 days office/1 remote) Salary: £75,000 - £85,000 + annual discretionary bonus Hours: 11am-7pm (fixed shift) About the firm Our client is a leading global law firm with world-class offices in the heart of the City. The firm has recently moved into a brand-new building offering outstanding facilities, including free breakfast, lunch and dinner, a fully equipped on-site gym, and a modern, collaborative working environment. The opportunity This is a new role within the EMEA Identity & Access Management team, supporting a global user base and working closely with teams in the US and APAC. The position offers a mix of hands-on BAU operations and project delivery focused on improving automation, access controls and privileged account management across the firm's enterprise environment. You'll work alongside experienced IAM engineers to maintain and enhance the firm's Microsoft identity platforms, supporting the joiner-mover-leaver lifecycle and driving continuous improvement in identity security and governance. Key responsibilities Manage and maintain Active Directory, Azure/Entra ID and M365 identity services Support and enhance the firm's PAM platform (Delinea) - experience with CyberArk or BeyondTrust also welcome Administer PIM, Conditional Access and MFA policies across the Entra environment Develop and maintain PowerShell scripts for automation and reporting Collaborate with global IAM and Infrastructure teams on projects and incident resolution Ensure access governance, compliance and audit requirements are met across systems Contribute to roadmap development and platform improvements within the EMEA region What we're looking for Strong hands-on experience with Active Directory and Azure/Entra ID administration Knowledge of PAM solutions such as Delinea, CyberArk or BeyondTrust Good understanding of M365, Intune and identity security principles Confident using PowerShell for automation and troubleshooting Familiarity with PIM, MFA and Conditional Access Experience working in large, global or professional services environments Collaborative mindset and a genuine interest in identity security What's on offer Salary up to £85,000 depending on experience Annual discretionary bonus On-site working (4 days office/1 remote) Free breakfast, lunch and dinner each day Free on-site gym Excellent benefits package Genuine career progression - clear path to Senior Engineer or IAM Architect as the team expands If you're an experienced IAM or Infrastructure Engineer looking to step into a global role with a strong Microsoft and PAM focus, we'd love to hear from you. Please apply with your CV
Oct 08, 2025
Full time
Location: London (City) - (4 days office/1 remote) Salary: £75,000 - £85,000 + annual discretionary bonus Hours: 11am-7pm (fixed shift) About the firm Our client is a leading global law firm with world-class offices in the heart of the City. The firm has recently moved into a brand-new building offering outstanding facilities, including free breakfast, lunch and dinner, a fully equipped on-site gym, and a modern, collaborative working environment. The opportunity This is a new role within the EMEA Identity & Access Management team, supporting a global user base and working closely with teams in the US and APAC. The position offers a mix of hands-on BAU operations and project delivery focused on improving automation, access controls and privileged account management across the firm's enterprise environment. You'll work alongside experienced IAM engineers to maintain and enhance the firm's Microsoft identity platforms, supporting the joiner-mover-leaver lifecycle and driving continuous improvement in identity security and governance. Key responsibilities Manage and maintain Active Directory, Azure/Entra ID and M365 identity services Support and enhance the firm's PAM platform (Delinea) - experience with CyberArk or BeyondTrust also welcome Administer PIM, Conditional Access and MFA policies across the Entra environment Develop and maintain PowerShell scripts for automation and reporting Collaborate with global IAM and Infrastructure teams on projects and incident resolution Ensure access governance, compliance and audit requirements are met across systems Contribute to roadmap development and platform improvements within the EMEA region What we're looking for Strong hands-on experience with Active Directory and Azure/Entra ID administration Knowledge of PAM solutions such as Delinea, CyberArk or BeyondTrust Good understanding of M365, Intune and identity security principles Confident using PowerShell for automation and troubleshooting Familiarity with PIM, MFA and Conditional Access Experience working in large, global or professional services environments Collaborative mindset and a genuine interest in identity security What's on offer Salary up to £85,000 depending on experience Annual discretionary bonus On-site working (4 days office/1 remote) Free breakfast, lunch and dinner each day Free on-site gym Excellent benefits package Genuine career progression - clear path to Senior Engineer or IAM Architect as the team expands If you're an experienced IAM or Infrastructure Engineer looking to step into a global role with a strong Microsoft and PAM focus, we'd love to hear from you. Please apply with your CV
Salt
CyberArk Engineer Secret Management
Salt
CyberArk Secret Manager Engineer | Freelance | London/Paris/Brussels/Hybrid (8 days/month onsite) Duration: 12 months Rate: Flexible Inside of IR35 We're looking for an experienced CyberArk Engineer to join Euroclear's Chief Information Security Office (CISO) within the Identity and Access Management (IDAM) team. This is a fantastic opportunity to play a key role in strengthening Euroclear's Privileged Access Management (PAM) posture by deploying and integrating CyberArk Secret Manager across a complex enterprise environment. You'll lead the end-to-end implementation of CyberArk's Application Access Manager (AAM) capabilities - including Credential Provider (CP) , Central Credential Provider (CCP) , and Application Service Credential Provider (ASCP) . Your focus will be on enabling secure, automated, and compliant management of service and functional accounts across Windows and Linux systems. Key Responsibilities: Deploy, configure, and integrate CyberArk Secret Manager/AAM components (CP, CCP, ASCP). Design credential management solutions for service accounts, ensuring high availability and compliance. Integrate CyberArk with applications, Middleware, and databases for secure credential retrieval and rotation. Automate deployments and configuration using Ansible , PowerShell , Bash , and REST APIs . Manage Safes, platforms, permissions, and onboarding in CyberArk PAM. Produce design documentation, runbooks, and integration guides. Collaborate with application and infrastructure teams to troubleshoot issues and optimise integrations. What We're Looking For: ? Proven hands-on experience with CyberArk Secret Manager/AAM (non-negotiable). ? Strong PAM administration skills - Safes, platforms, permissions. ? Windows & Linux integration experience. ? Automation experience with Ansible , Scripting (PowerShell, Bash), and APIs. ? Independent, proactive, and solutions-oriented mindset. Please do send across to me the most up to date CV to (see below) *Rates depend on experience and client requirements
Oct 06, 2025
Contractor
CyberArk Secret Manager Engineer | Freelance | London/Paris/Brussels/Hybrid (8 days/month onsite) Duration: 12 months Rate: Flexible Inside of IR35 We're looking for an experienced CyberArk Engineer to join Euroclear's Chief Information Security Office (CISO) within the Identity and Access Management (IDAM) team. This is a fantastic opportunity to play a key role in strengthening Euroclear's Privileged Access Management (PAM) posture by deploying and integrating CyberArk Secret Manager across a complex enterprise environment. You'll lead the end-to-end implementation of CyberArk's Application Access Manager (AAM) capabilities - including Credential Provider (CP) , Central Credential Provider (CCP) , and Application Service Credential Provider (ASCP) . Your focus will be on enabling secure, automated, and compliant management of service and functional accounts across Windows and Linux systems. Key Responsibilities: Deploy, configure, and integrate CyberArk Secret Manager/AAM components (CP, CCP, ASCP). Design credential management solutions for service accounts, ensuring high availability and compliance. Integrate CyberArk with applications, Middleware, and databases for secure credential retrieval and rotation. Automate deployments and configuration using Ansible , PowerShell , Bash , and REST APIs . Manage Safes, platforms, permissions, and onboarding in CyberArk PAM. Produce design documentation, runbooks, and integration guides. Collaborate with application and infrastructure teams to troubleshoot issues and optimise integrations. What We're Looking For: ? Proven hands-on experience with CyberArk Secret Manager/AAM (non-negotiable). ? Strong PAM administration skills - Safes, platforms, permissions. ? Windows & Linux integration experience. ? Automation experience with Ansible , Scripting (PowerShell, Bash), and APIs. ? Independent, proactive, and solutions-oriented mindset. Please do send across to me the most up to date CV to (see below) *Rates depend on experience and client requirements
Vallum
Lead Security Solution Architect- PAM
Vallum Sheffield, Yorkshire
Job Title: Lead Security Solution Architect- PAM Location: Hybrid-London, UK (Days/Week Onsite) Duration: 6months+ 550GBP/Day Inside IR35 Project Overview CLIENT is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the bank. One of the pillars of that programe is Privileged Access Management (PAM). CLIENT is working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Lead Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents in line with functional and non-functional business requirements, strategies, principles, standards, and patterns. Alongside the creation of high-level designs, Security Solution Architects will be required to record key decisions, design deviations, and technical risks and issues where appropriate. Security Solution Architects should be comfortable presenting and sharing solutions at design authorities and senior leadership & stakeholders. The Lead Security Solution Architect will provide technical thought leadership and direction to their project team and may represent the project/programme as subject matter expert. This role will require someone experienced in managing a team of on-shore and off-shore resources to deliver High- and Low-level designs to the required quality and standard. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level Experience in both operational and transformation cybersecurity roles or a clear working understanding of both perspectives Experience working in large-scale IT transformation programmes Experience working with PAM solutions such as CyberArk, Centrify, Delinea and OneIdentity Preparing end-to-end configuration of the strategic PAM capability - including on-prem deployments as well as Cloud native toolings Assisting in preparation of demonstrable journeys on the configured PAM tooling Platform & Technology: BizzDesign, Archi, or generic UML visualisation experience for high-level designs High proficiency and expertise in Jira for project & tasks management Working proficiency in Confluence for documentation Principal Accountabilities and Responsibilities Architecture & Design: Produce, manage, and update end-to-end solution designs in line with reference architecture & business requirements (including High and Low Level Designs Articulate and publish key design decision records and options to ensure all solutions follow a logical, transparent decision-making process Articulate, publish, and ensure approval of any design deviations resulting in technical debt Ensure any technical risks or issues arising from a solution design are recorded and mitigated. Produces, manages and translates the requirements into the architecture for that solution, ensuring technology and services meet the customer needs and expected business outcomes Ensures the design of the solutions are efficient, timely and cost effective throughout the project life cycle Clear understanding of both the motivations of the business and technical security Promote strong documentation and clerkship Governance: Ensures all high-level designs, architecture patterns, decision records, deviation requests, and technical risks or issue records undergo architectural and project governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Ability to map design decisions to resultant technical risks & issues to articulate the cause and rationale which leads to any negatively impacting change Leadership & Teamwork Provides technical thought leadership to the Design Team and the Project Ability to manage a project team of technical architects, engineers, and/or analysts Ability to take a deputised role in programme management-related tasks where necessary Qualifications & Certifications: Masters or doctorate degree in cybersecurity, computer science, software engineering, or related field CISSP/CISM certification or other broad cybersecurity industry-recognised certificate SABSA or TOGAF certified preferred Priyanka Sharma Senior Delivery Consultant
Oct 02, 2025
Contractor
Job Title: Lead Security Solution Architect- PAM Location: Hybrid-London, UK (Days/Week Onsite) Duration: 6months+ 550GBP/Day Inside IR35 Project Overview CLIENT is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the bank. One of the pillars of that programe is Privileged Access Management (PAM). CLIENT is working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Lead Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents in line with functional and non-functional business requirements, strategies, principles, standards, and patterns. Alongside the creation of high-level designs, Security Solution Architects will be required to record key decisions, design deviations, and technical risks and issues where appropriate. Security Solution Architects should be comfortable presenting and sharing solutions at design authorities and senior leadership & stakeholders. The Lead Security Solution Architect will provide technical thought leadership and direction to their project team and may represent the project/programme as subject matter expert. This role will require someone experienced in managing a team of on-shore and off-shore resources to deliver High- and Low-level designs to the required quality and standard. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level Experience in both operational and transformation cybersecurity roles or a clear working understanding of both perspectives Experience working in large-scale IT transformation programmes Experience working with PAM solutions such as CyberArk, Centrify, Delinea and OneIdentity Preparing end-to-end configuration of the strategic PAM capability - including on-prem deployments as well as Cloud native toolings Assisting in preparation of demonstrable journeys on the configured PAM tooling Platform & Technology: BizzDesign, Archi, or generic UML visualisation experience for high-level designs High proficiency and expertise in Jira for project & tasks management Working proficiency in Confluence for documentation Principal Accountabilities and Responsibilities Architecture & Design: Produce, manage, and update end-to-end solution designs in line with reference architecture & business requirements (including High and Low Level Designs Articulate and publish key design decision records and options to ensure all solutions follow a logical, transparent decision-making process Articulate, publish, and ensure approval of any design deviations resulting in technical debt Ensure any technical risks or issues arising from a solution design are recorded and mitigated. Produces, manages and translates the requirements into the architecture for that solution, ensuring technology and services meet the customer needs and expected business outcomes Ensures the design of the solutions are efficient, timely and cost effective throughout the project life cycle Clear understanding of both the motivations of the business and technical security Promote strong documentation and clerkship Governance: Ensures all high-level designs, architecture patterns, decision records, deviation requests, and technical risks or issue records undergo architectural and project governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Ability to map design decisions to resultant technical risks & issues to articulate the cause and rationale which leads to any negatively impacting change Leadership & Teamwork Provides technical thought leadership to the Design Team and the Project Ability to manage a project team of technical architects, engineers, and/or analysts Ability to take a deputised role in programme management-related tasks where necessary Qualifications & Certifications: Masters or doctorate degree in cybersecurity, computer science, software engineering, or related field CISSP/CISM certification or other broad cybersecurity industry-recognised certificate SABSA or TOGAF certified preferred Priyanka Sharma Senior Delivery Consultant

Modal Window

  • Blog
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Instagram
  • Pinterest
  • Youtube
Parent and Partner sites: IT Job Board | Search Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | London Jobs | Property jobs
© 2008-2026 Jobs Hiring Near Me