Senior Identity Security Engineer
Listed on 2026-02-16
-
Engineering
Systems Engineer, Cybersecurity -
IT/Tech
Systems Engineer, Cybersecurity
We are seeking a Senior Identity Security Engineer to design, implement and enhance large‑scale identity environments across Microsoft Active Directory, Entra , PKI/ADCS and modern hybrid platforms. This role combines hands‑on engineering with leadership in security design, implementation and assessment, requiring someone who can resolve complex identity challenges end‑to‑end and deliver robust, high‑impact solutions.
You will work closely with engineering, architecture and operational teams, across a range of sectors, to deliver secure, resilient identity and certificate services across on‑premises, hybrid and cloud environments.
Responsibilities- Design and architect modern Microsoft identity platforms
, including new Active Directory and Entra , design patterns, standards and long‑term roadmaps for secure, scalable foundations - Integrate third‑party identity services
, including platforms such as Okta, Ping, Duo, Auth0 and Yubico - Assess and improve existing identity environments by identifying risks, technical debt, reliability issues and leading the engineering work to implement practical, measurable improvements
- Engineer PKI and certificate lifecycle services at scale
, including PKI/ADCS design and operation, certificate automation, cloud integrations and modern machine‑identity use cases - Plan and lead safe migrations and legacy exits
, including decommissioning legacy AD forests, MIM, ADFS and outdated identity components - Drive adoption of passwordless and modern authentication
, implementing solutions such as Windows Hello, passkeys, FIDO2 and supporting clients through change and adoption - Evolve organisations toward cloud‑first identity models
, implementing hybrid identity strategies, modern authentication, attribute mastering and secure workload/device identity patterns - Automate identity and certificate operations using automation, Dev Sec Ops practices and infrastructure‑as‑code to deliver secure, consistent and maintainable identity services
- Advising clients on IAM best practices, standards and regulatory requirements
, including GDPR, ISO 27001, NIST Frameworks
- Strong engineering background with deep expertise across Active Directory, Entra PKI/ADCS in large, complex environments.
- Pragmatic, methodical problem‑solver able to diagnose and resolve identity issues end‑to‑end in hybrid platforms.
- Effective communicator and collaborator, working across architecture, engineering and operations teams
- Trusted by clients and colleagues; delivers practical, secure solutions that reduce real‑world risk.
- Broad experience across Active Directory, PKI, hybrid identity and modern authentication, including tiering, automation and identity hygiene.
- Skilled in identity migrations and legacy exits, covering AD consolidation, ADFS/MIM retirement and modernisation.
- Strong automation capability with Power Shell, CI/CD, monitoring and IaC to improve reliability and consistency.
- Microsoft identity & security certifications (SC-300, SC-100, AZ-500 or equivalent AD/Entra/PKI qualifications)
- Security or architecture credentials like CISSP, ISSAP, CRISC, TOGAF or SABSA
- Cloud platform certifications across Azure, AWS, GCP or Terraform
- Strong alignment with FSP values and ethos
- Commitment to teamwork, quality and mutual success
- Proactivity with an ability to operate with pace and energy
- Strong communication and interpersonal skills
- Dedication to excellence and quality
FSP is a leading consultancy specialising in Digital, Security and AI solutions. Our success is enabled by our unwavering commitment to excellence, our people centric culture alongside best-in-class operations, ensuring impactful and sustainable outcomes for our clients.
As a long standing and highly accredited Microsoft Partner, with extensive solution designations, we partner with clients across a range of commercial sectors, enabling digital transformation, innovation and robust cyber security.
We navigate the complexities of data sensitivity, confidentiality, governance and compliance. We blend strategic insight, depth of technical expertise, delivery and operational…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: