IAM Security Engineer

Open 15d
Contract Role: IAM Security Engineer
Contract Location: London/Belfast (Hybrid)
Contract Duration: 6 months initially (with potential extension)
Contract Start Date: Immediate
Contract Classification: Inside IR35

Daily Rate breakdown
Traditional Daily Rate: £450
Agreed Contract Rate (ACR): £346.95
Equivalent Annual Salary: £90,206 + £10,887 holiday pay
Payroll provider: Rockford Payroll Info for Contingent Workers - Rockford Pay

Overview
This is an exciting opportunity to join a leading global Tier 1 financial institution undergoing a major transformation of its technology landscape.

We are seeking experienced IAM Security Engineers to join a Tier 1 Global Bank, designing and implementing secure Identity & Access Management solutions across AWS and GCP cloud platforms. This role focuses on cloud security engineering, automation, Infrastructure as Code and secure software delivery.

Key Responsibilities
• Collaborate with Security, Infrastructure, Engineering and Application teams to define and implement IAM roles and policies.
• Design and implement IAM security controls aligned with enterprise cloud security standards.
• Build automation and reusable libraries enabling self-service IAM provisioning.
• Deliver IAM solutions using CI/CD pipelines with automated testing and validation.
• Develop secure cloud-native IAM solutions across AWS and GCP.
• Develop and secure REST and SOAP APIs.
• Contribute to DevOps and Agile delivery practices.

Essential Skills & Experience
• Minimum 6 years’ IT experience, including at least 4 years within Cyber Security/Information Security.
• Minimum 3 years’ hands-on experience with AWS and/or GCP cloud-native services.
• Experience designing enterprise security solutions within Financial Services or other complex global organisations.
• Strong knowledge of cloud IAM security models.
• Experience using Infrastructure as Code tools including Terraform and CloudFormation.
• Demonstrated expertise in Threat Modelling methodologies such as STRIDE, PASTA or MITRE ATT&CK/ATLAS.
• Strong understanding of authentication, authorisation, encryption, logging & monitoring, infrastructure security and network segmentation.
• Ability to design and review secure technical architectures.
• Strong understanding of SDLC and CI/CD pipelines.
• Hands-on Python coding experience (Java or Go also considered).
• Experience with automated testing frameworks such as PyTest, Behave or JUnit.
• Experience developing secure REST and SOAP web services.

Qualifications:
• Associate or Professional AWS or GCP Cloud Certification (mandatory).
• Associate or Professional Cyber Security Certification (mandatory).
• Excellent communication and stakeholder management.
• Strong analytical and problem-solving skills.
• Self-starter with the ability to work independently.
• Experience working within Agile and DevOps environments.
• CISSP, AWS Security Specialty or Google Professional Cloud Security Engineer desirable.