Company Logo
Software Engineer

Netflix - 1d ago

Company Logo
Senior Software Engineer

Reddit - 4d ago

Identity and Access Management Lead

Requirements

  • Strong experience leading IAM, IGA, PAM, or identity-security engineering in a complex technology environment.
  • Deep knowledge of identity governance, privileged access, secrets management, authentication, and authorization.
  • Practical experience with SailPoint, Active Directory, Entra ID, Okta, PAM technologies, and HashiCorp Vault.
  • Experience redesigning production access and implementing least-privilege and time-bound access models.
  • Strong understanding of human, service, workload, and machine identities.
  • Experience delivering SSO, MFA, passwordless authentication, and modern application-authorization models.
  • Strong technical capability across APIs, automation, scripting, and system integration.
  • A good understanding of Windows, Linux, cloud, and modern software-delivery environments.
  • Experience leading technical teams and turning complex security risks into practical engineering priorities.

What You'll Be Doing

  • Lead QRT’s IAM and IGA strategy, architecture, roadmap, and delivery.
  • Develop identity lifecycle management, application onboarding, entitlement governance, and access certification.
  • Redesign Active Directory groups, legacy permissions, and access models, establishing clear ownership of applications, roles, entitlements, and access decisions.
  • Develop pragmatic role- and attribute-based access models and improve the automation and accuracy of joiner, mover, and leaver processes.
  • Own the global PAM programme, including the continued development and adoption of PrivX.
  • Redesign privileged access to production, infrastructure, cloud, and trading-critical environments.
  • Reduce standing privileges through controlled, time-bound, and auditable access, with effective controls for administrative accounts, emergency access, and privilege escalation.
  • Own the enterprise secrets-management programme and HashiCorp Vault platform.
  • Define how credentials, certificates, API keys, and other secrets are created, stored, rotated, and revoked.
  • Reduce embedded, shared, and long-lived credentials, while establishing governance for service accounts, workloads, applications, and AI-agent identities.
  • Lead authentication and authorization programs across the workforce, infrastructure, cloud, and internally developed applications.
  • Develop strategies and reusable patterns for SSO, MFA, passwordless authentication, phishing-resistant credentials, applications, APIs, platforms, and production systems.
  • Lead and develop the IAM team, manage specialist partners and vendors, and work closely with Security, Infrastructure, Cloud, Engineering, application owners, and business teams.
  • Maintain a clear roadmap, define meaningful measures, communicate progress and risks, and support security incidents, audits, and regulatory reviews involving identity or access.

Perks and Benefits

  • QRT is an equal opportunity employer.
  • Initiatives and programs to enable employees to achieve a healthy work-life balance.
AI Summary ✨
QRT logo

QRT

London, UK

Experience: Senior
Posted: September 7, 2026
Last seen: 2 hours ago
security

Why we track QRT

Qube Research & Technologies (QRT) is a global quantitative hedge fund with major engineering hubs in London, Paris, Amsterdam, and Zurich. One of the most active EU tech hirers in the quant space—they post hundreds of roles across software engineering, data engineering, FPGA, infrastructure, and security. Senior engineers earn £91–134K in London and comparable in Paris/Amsterdam.

Similar jobs

  • 20 days ago
  • a month ago
    Remote
  • 2 months ago
    Remote
  • See all jobs in UK