Global IT Director - Principal Security Engineer in Bushey

Global IT Director - Principal Security Engineer in Bushey

Bushey Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
Boston Consulting Group

At a Glance

  • Tasks: Lead the design and implementation of cutting-edge identity services across global platforms.
  • Company: Join Boston Consulting Group, a pioneer in business strategy and transformation.
  • Benefits: Competitive salary, diverse culture, and opportunities for professional growth.
  • Other info: Collaborative environment with a focus on continuous learning and innovation.
  • Why this job: Make a real impact in cybersecurity while working with innovative technologies.
  • Qualifications: 10+ years in information security with hands-on IAM experience required.

The predicted salary is between 70000 - 90000 £ per year.

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact. To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.

The Principal IAM Engineer is the senior technical authority for identity services, responsible for designing, implementing, and governing enterprise-wide IAM capabilities across workforce, partner, and customer identities. This role combines deep hands-on engineering with architecture and leadership, driving the modernization of authentication, authorization, identity lifecycle, and privileged access controls across our cloud and on-prem environments.

Responsibilities:

  • Own the end‑to‑end technical delivery of IAM services, including identity lifecycle management, authentication, authorization, SSO, and privileged access controls, ensuring they are secure, scalable, and highly available.
  • Lead design sessions, collaborating with Enterprise Architecture, and implementation of IAM integrations for SaaS, on‑prem, and AWS cloud platforms, including federation (SAML, OIDC, OAuth), MFA, and Passwordless capabilities.
  • Serve as the primary escalation point for complex IAM engineering issues; perform root‑cause analysis and drive long‑term remediation and hardening of IAM platforms and related services.
  • Partner with security architecture, infrastructure, application, and HR/IT teams to align IAM solutions with enterprise security strategy, compliance obligations, and business objectives.
  • Define IAM engineering standards, patterns, and reference architectures; guide other engineers in implementing secure onboarding patterns for applications into IGA, PAM, and SSO platforms.
  • Lead modernization initiatives.
  • Contribute to audits, risk assessments, and regulatory reviews by providing technical evidence, designing compensating controls, and closing identified IAM control gaps.
  • Mentor and coach IAM engineers and analysts, promoting engineering excellence, documentation discipline, and a culture of continuous learning and improvement.

What You'll Bring:

  • 10+ years of experience in information security or infrastructure engineering, with at least 5 years of hands-on-keyboard experience with core IAM platforms.
  • Deep expertise with the majority of our IAM stack.
  • Strong hands-on experience with Microsoft Entra ID and Active Directory as foundational directory services, and extensive experience implementing federation protocols (SAML, OIDC, OAuth2).
  • Proven track record designing and implementing IAM solutions in hybrid multi-cloud environments, including the automation of provisioning, access reviews, and RBAC/ABAC models.
  • Experience with secrets management solutions.
  • Proficiency in at least one scripting or programming language (such as PowerShell, Python, or Java) to automate tasks and build custom connectors for our IAM tools.
  • Excellent communication skills with the ability to translate complex technical concepts related to our IAM ecosystem for both technical and non-technical stakeholders.
  • Exceptional sense of ownership and the ability to work with a limited set of requirements.
  • Highly advanced ability to breakdown work to deliver value incrementally.
  • Experience leading large-scale IAM programs.
  • Prior responsibility as a technical lead or architect for IAM, including mentoring teams and influencing roadmaps beyond direct reporting lines.
  • Demonstrated ability to balance security, usability, and operational efficiency, with a strong bias toward automation and measurable risk reduction.
  • Define and lead the implementation of the organization’s security strategy, with a focus on Cloud Security, Identity Access Management, and all other aspects of Cybersecurity.
  • Oversee the deployment of IAM solutions across both on-premise and cloud environments, ensuring they meet the highest standards of security.
  • Lead the most complex security assessments, including threat modeling, red teaming, and cloud security reviews.
  • Collaborate with executive leadership to ensure that security initiatives align with the organization’s strategic goals and risk appetite.
  • Act as the technical lead for large-scale security projects, coordinating cross-functional teams to ensure successful delivery.
  • Architect and implement solutions across workforce IAM, PAM, and customer IAM ecosystems.
  • Provide thought leadership in adopting passwordless authentication, passkeys, adaptive MFA, and AI-driven access orchestration strategies.
  • Engineer integrations with Agentic AI tools for intelligent decisioning, policy enforcement, and autonomous identity lifecycle operations.
  • Develop and implement automated provisioning/deprovisioning workflows.
  • Ensure integration of IAM with cloud platforms (Azure, AWS, GCP) and SaaS applications.
  • Mentor and develop the skills of senior security engineers, fostering a culture of continuous improvement and innovation.

Technical Experience Must-Have:

  • Privileged Access management (CyberArk)
  • Authentication/AuthN (Okta)
  • Federated Identity (EntraID)
  • Cloud Identity (AWS, GCP, Azure)
  • Automation (terraform, codex, claude)
  • Application SSO (OIDC, SAML)
  • Identity Governance (Sailpoint, Okta, Veza)

Global IT Director - Principal Security Engineer in Bushey employer: Boston Consulting Group

Boston Consulting Group is an exceptional employer that offers a unique Medical Elective Internship in London, providing medical students with invaluable insights into healthcare management. With a strong focus on employee growth and collaboration, BCG fosters a dynamic work culture where diverse perspectives drive innovation and transformation in the healthcare sector. Interns will benefit from exposure to industry leaders, cutting-edge technologies, and the opportunity to tackle real-world challenges, all while being part of a globally respected firm committed to shaping a sustainable future.

Boston Consulting Group

Contact Details:

Boston Consulting Group Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Global IT Director - Principal Security Engineer in Bushey

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Boston Consulting Group, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Boston Consulting Group

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Boston Consulting Group. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Global IT Director - Principal Security Engineer in Bushey

Identity Access Management (IAM)
Authentication and Authorisation
Single Sign-On (SSO)
Federation Protocols (SAML, OIDC, OAuth2)
Privileged Access Management (PAM)
Cloud Security (AWS, Azure, GCP)
Automation (Terraform, Codex, Claude)

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Boston Consulting Group insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Boston Consulting Group that you’re committed to staying ahead in the game.

How to prepare for a job interview at Boston Consulting Group

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Boston Consulting Group to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Boston Consulting Group.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.