IAM Security Engineer
Financial Conduct Authority Leeds, England, United Kingdom · £54K–£80K/yr
Financial Services · 1,001-5,000 employees
About the role
The role involves designing, implementing, and optimizing identity and access management products while providing technical support for PAM, IGA, and PKI platforms. You will also collaborate with cloud security engineers to manage AI and non-human identities within a secure, digital-first regulatory environment.
What they look for
Requirements
Candidates must have extensive experience in security engineering with deep knowledge of IAM, PAM, and IGA architectures. Practical experience with Microsoft Entra ID, AWS identity services, and privileged access management tools like Delinea or Saviynt is essential.
Benefits
Full description
Job Title: IAM Security Engineer
Division: Data, Technology and Innovation
Department: Technology Resilience
- Salary: National (Edinburgh and Leeds) ranging from £53,800 to £75,000 and London from £59,200 to £80,000 per annum (salary offered will be based on skills and experience)
- This role is graded as: Senior Associate – Regulatory
- Your external recruitment contact is Benjamin via benjamin.paulon@fca.org.uk
- Your internal recruitment contact is Pat via Patrycja.Matachowska@fca.org.uk
- Applications must be submitted through our online portal. Applications sent via social media or email will not be accepted.
About the FCA and team
We regulate financial services firms in the UK, to keep financial markets fair, thriving and effective. By joining us, you’ll play a key part in protecting consumers, driving economic growth, and shaping the future of UK finance services.
The Data, Technology and Innovation (DTI) division enables the FCA to be a digital-first, data-led smart regulator by delivering a secure, agile, and cost-effective technology and data ecosystem that drives better decisions, transparency, and operational efficiency.
Sitting within DTI, the Technology Resilience team safeguards the FCA's digital assets, services and suppliers to ensure the organisation remains secure and compliant
Role responsibilities
- Contribute to the design, implementation and optimisation of IDAM security products and automations
- Provide technical support and management of the FCA Privileged Access Management (PAM) platform
- Support the continued onboarding of FCA critical applications
- Work effectively and collaboratively within a team of cloud security engineers, promoting a culture of collaboration
- Provide technical support and management of the FCA Enterprise PKI platform
- Identify and manage AI and Non-Human Identities (NHIs)
- Gain access to a wide range of innovative cyber security tools and applications, exposure to Azure and AWS security platforms, and development opportunities across a multi-technology Cyber team
- Provide technical support and management of the FCA Identity Governance and Administration (IGA) platform
Skills required
Minimum:
- Extensive experience in Security Engineering, supporting enterprise security services, products, and architecture, with deep knowledge of IAM, PAM and IGA
- Effective architectural, leadership, and communication capabilities, with a demonstrated ability to design secure enterprise solutions and effectively communicate complex security concepts to both technical and non-technical stakeholders
- Knowledge of Microsoft Entra ID and AWS Identity services, with practical experience implementing and managing enterprise identity, authentication, authorization, and access governance solutions across cloud environments
- Working knowledge of Delinea Secret Server or Saviynt, including the design, implementation, administration, and optimisation of privileged access management and identity governance controls within an enterprise environment
Essential:
- Managing incidents, problem investigations, undertaking patching & release management activities in addition to managing product risks & mitigation activities
- Effective decision-making and problem-solving skills to address security challenges in dynamic cloud environments
- Demonstrated knowledge working with cloud computing environments especially Entra/ Azure
Benefits
- 25 days annual leave plus bank holidays
- Non-contributory pension (8–12% depending on age) and life assurance at eight times your salary
- Private healthcare with Bupa, income protection, and 24/7 Employee Assistance
- 35 hours of paid volunteering annually
- Colleagues spend a minimum of 50% of their working time in the office each month (60% for Directors and Executive Directors) across our London, Leeds and Edinburgh offices
- A flexible benefits scheme designed around your lifestyle
For a full list of our benefits, and our recruitment process as a whole visit our benefits page.
Our values & culture
Our colleagues are the key to our success as a regulator. We are committed to fostering a diverse and inclusive culture: one that’s free from discrimination and bias, celebrates difference, and supports colleagues to deliver at their best. We believe that our differences and similarities enable us to be a better organisation – one that makes better decisions, drives innovation, and delivers better regulation.
If you require any adjustments due to a disability or condition, your recruiter is here to help - reach out for tailored support.
We welcome diverse working styles and aim to find flexible solutions that suit both the role and individual needs, including options like part-time and job sharing where applicable.
Disability Confident: our hiring approach
We’re proud to be a Disability Confident Employer, and therefore, people or individuals with disabilities and long-term conditions who best meet the minimum criteria for a role will go through to the next stage of the recruitment process. In cases of high application volumes, we may progress applicants whose experience most closely matches the role’s key requirements.
Useful information and timeline
- Advert Closing: 20 September 11:59pm
- CV Review/Shortlist: 24 September
- This process will consist of two interview stages (technical and behavioural) commencing on 28 September
- Your Recruiter will discuss the process in detail with you during screening for the role, therefore, please make them aware if you are going to be unavailable for any date during this time.
SC Clearance is required for this role (SC Guidance) - you will hold or will be required to obtain Security Check (SC) level vetting
Similar roles
-
Information System Security Engineer III
TRISTAR INC Bloomington, Indiana, United States
-
Information System Security Engineer II
TRISTAR INC Bloomington, Indiana, United States
-
Network & Cybersecurity Engineer | C-sUAS
Sherpa 6 Alexandria, Virginia, United States · $165K–$200K/yr
-
Senior Cybersecurity Engineer
WSI (Warehouse Specialists, LLC) Town of Grand Chute, Wisconsin, United States
-
Associate Security Engineer
JPMorgan Chase & Co. Dublin, Leinster, Ireland
-
Cloud Security Engineer
Security Risk Advisors Philadelphia, Pennsylvania, United States · $90K–$130K/yr