Jobs Career Advice Post Job
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Mar 12, 2026
    Deadline: Not specified
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • IBM Services is a team of business, strategy, and technology consultants that design, build, and run foundational systems and services that is the backbone of the world's economy. IBM Services partners with the world's leading companies in over 170 countries to build smarter businesses by reimagining and reinventing through technology, with its outcome-focus...
    Read more about this company

     

    Cyber Security Consultant - Identity & Access Management

    In this role, you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology.

    Your role and responsibilities

    • As a Security Consultant specializing in Identity & Access Management (IAM), you will design, build, and modernise enterprise identity foundations that enable secure, seamless access across complex environments. 
    • You will work hands-on with leading IAM platforms to implement authentication, authorization, lifecycle automation, and identity governance at scale. By applying standards and protocols such as SAML, OAuth, OpenID Connect, and SCIM - as well as scripting and automation to support large multi-cloud estates - you will strengthen access controls, reduce risk, and streamline user journeys across cloud, on-prem, and hybrid platforms.

    This is a technical, client-facing consulting role that requires translating identity requirements into scalable, secure, business-aligned solutions.

    Key Responsibilities:

    • Design and implement IAM solutions across cloud and on-prem environments using platforms such as Azure AD/Entra ID, Okta, Ping, SailPoint, Saviynt, or similar.
    • Lead end-to-end identity lifecycle projects, including provisioning, de-provisioning, workflow automation, and access governance setup.
    • Develop secure authentication and authorization patterns using SAML, OAuth, OpenID Connect, SCIM, and Zero Trust principles.
    • Create and enforce RBAC, ABAC, and least-privilege access models to strengthen security posture and simplify access management.
    • Integrate IAM controls into enterprise platforms, applications, APIs, and CI/CD pipelines, ensuring seamless user access and strong security boundaries.
    • Automate IAM operations through scripting and tooling (e.g., PowerShell, Python, Terraform) to improve efficiency, consistency, and compliance.
    • Conduct IAM assessments and identity posture reviews, providing actionable recommendations aligned with regulatory frameworks and client requirements.
    • Troubleshoot complex identity issues across authentication, federation, directory services, and cross-platform access scenarios.
    • Collaborate with engineering, security, and architecture teams to embed secure-by-design identity controls into new and existing services.
    • Deliver client-facing workshops and documentation, translating identity requirements and technical design decisions into clear, business-aligned outcomes.

    Required education

    • None

    Preferred education

    • Bachelor's Degree

    Required technical and professional expertise

    • Hands-on experience with at least one major IAM platform, such as Azure AD/Entra ID, Okta, Ping Identity, SailPoint, Saviynt, CyberArk, or equivalent.
    • Strong understanding of IAM fundamentals, including authentication, authorization, identity lifecycle management, access governance, and federation.
    • Deep knowledge of identity standards and protocols, including SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), SCIM, LDAP, Kerberos, and MFA patterns.
    • Practical experience designing and implementing IAM controls across cloud (Azure/AWS/GCP), hybrid, and on-premise environments.
    • Ability to build and automate IAM processes using scripting or automation tools (PowerShell, Python, Terraform, or similar).
    • Experience delivering Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), least-privilege models, and access review processes.
    • Hands-on experience integrating IAM with enterprise applications, SaaS platforms, APIs, directories, and CI/CD or DevOps workflows.
    • Strong understanding of Zero Trust principles, particularly identity-centric access patterns.
    • Experience conducting IAM assessments and producing recommendations aligned to industry frameworks and regulatory requirements.
    • Proven consulting experience, including client-facing delivery, stakeholder engagement, and the ability to translate identity requirements into technical solutions.

    This role requires eligibility for UK Government security clearance. Candidates with existing clearance (SC or DV) are encouraged to apply, but those who meet the baseline eligibility criteria and can obtain clearance will also be fully considered.

    Preferred Professional

    Preferred technical and professional experience

    • Microsoft: SC-300 (Identity & Access Administrator), AZ-500, SC-100
    • IAM platforms: Okta Professional/Administrator, Ping Identity, SailPoint, Saviynt
    • Security: CISSP, CCSP, or relevant practitioner-level credentials
    • Experience implementing or supporting Identity Governance & Administration (IGA) tooling, including access reviews, SoD policies, or recertification processes.
    • Familiarity with Privileged Access Management (PAM) solutions (e.g., CyberArk, Delinea, BeyondTrust) and their integration into broader identity workflows.
    • Experience designing Zero Trust architectures where identity acts as the primary control plane, including device trust and conditional access policies.
    • Hands-on experience integrating IAM with API gateways, custom applications, microservices, or serverless architectures.
    • Exposure to multi-cloud IAM patterns, including AWS IAM roles/policies, GCP IAM, workload identity federation, permissions boundaries, and SCPs.
    • Demonstrated ability to deliver client-facing workshops, discovery sessions, and architectural recommendations in a consulting context.
    • Experience supporting or leading IAM delivery within regulated or compliance-driven environments (e.g., ISO 27001, NIST CSF, CIS, GDPR).
    • Familiarity with IAM considerations in OT, IoT, or hybrid environments, such as legacy directory integration or constrained protocol support.
    • Ability to produce high-quality design documentation, HLDs/LLDs, standards, and operational runbooks for identity solutions.
    • Experience with automation pipelines, policy-as-code, or CI/CD integration for identity deployments.
    • Understanding of threat modelling and secure design as applied to authentication flows, session management, and identity-centric attack paths.

    Check how your CV aligns with this job

    Method of Application

    Interested and qualified? Go to IBM on careers.ibm.com to apply

    Build your CV for free. Download in different templates.

  • Send your application

    View All Vacancies at IBM Back To Home

Related Companies Hiring Now

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail