Global IT Director - Principal Security Engineer - London

Global IT Director - Principal Security Engineer - London

London Full-Time 100000 - 130000 € / year (est.) No home office possible
Boston Consulting Group

At a Glance

  • Tasks: Lead the design and implementation of cutting-edge identity services across global platforms.
  • Company: Join Boston Consulting Group, a leader in business strategy and transformation.
  • Benefits: Competitive salary, diverse culture, and opportunities for professional growth.
  • Other info: Collaborative environment with a focus on continuous learning and innovation.
  • Why this job: Make a real impact on security strategies while working with innovative technologies.
  • Qualifications: 10+ years in information security with hands-on IAM experience required.

The predicted salary is between 100000 - 130000 € per year.

Who We Are

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation - inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact. To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.

What You'll Do

The Principal IAM Engineer is the senior technical authority for identity services, responsible for designing, implementing, and governing enterprise-wide IAM capabilities across workforce, partner, and customer identities. This role combines deep hands-on engineering with architecture and leadership, driving the modernization of authentication, authorization, identity lifecycle, and privileged access controls across our cloud and on-prem environments.

  • Own the end-to-end technical delivery of IAM services, including identity lifecycle management, authentication, authorization, SSO, and privileged access controls, ensuring they are secure, scalable, and highly available.
  • Lead design sessions, collaborating with Enterprise Architecture, and implementation of IAM integrations for SaaS, on-prem, and AWS cloud platforms, including federation (SAML, OIDC, OAuth), MFA, and Passwordless capabilities.
  • Serve as the primary escalation point for complex IAM engineering issues; perform root-cause analysis and drive long-term remediation and hardening of IAM platforms and related services.
  • Partner with security architecture, infrastructure, application, and HR/IT teams to align IAM solutions with enterprise security strategy, compliance obligations, and business objectives.
  • Define IAM engineering standards, patterns, and reference architectures; guide other engineers in implementing secure onboarding patterns for applications into IGA, PAM, and SSO platforms.
  • Lead modernization initiatives.
  • Contribute to audits, risk assessments, and regulatory reviews by providing technical evidence, designing compensating controls, and closing identified IAM control gaps.
  • Mentor and coach IAM engineers and analysts, promoting engineering excellence, documentation discipline, and a culture of continuous learning and improvement.

What You'll Bring

  • 10+ years of experience in information security or infrastructure engineering, with at least 5 years of hands-on-keyboard experience with core IAM platforms.
  • Deep expertise with the majority of our IAM stack.
  • Strong hands-on experience with Microsoft Entra ID and Active Directory as foundational directory services, and extensive experience implementing federation protocols (SAML, OIDC, OAuth2).
  • Proven track record designing and implementing IAM solutions in hybrid multi-cloud environments, including the automation of provisioning, access reviews, and RBAC/ABAC models.
  • Experience with secrets management solutions.
  • Proficiency in at least one scripting or programming language (such as PowerShell, Python, or Java) to automate tasks and build custom connectors for our IAM tools.
  • Excellent communication skills with the ability to translate complex technical concepts related to our IAM ecosystem for both technical and non-technical stakeholders.
  • Exceptional sense of ownership and the ability to work with a limited set of requirements.
  • Highly advanced ability to breakdown work to deliver value incrementally.
  • Experience leading large-scale IAM programs.
  • Prior responsibility as a technical lead or architect for IAM, including mentoring teams and influencing roadmaps beyond direct reporting lines.
  • Demonstrated ability to balance security, usability, and operational efficiency, with a strong bias toward automation and measurable risk reduction.

Define and lead the implementation of the organization's security strategy, with a focus on Cloud Security, Identity Access Management, and all other aspects of Cybersecurity. Oversee the deployment of IAM solutions across both on-premise and cloud environments, ensuring they meet the highest standards of security. Lead the most complex security assessments, including threat modeling, red teaming, and cloud security reviews. Collaborate with executive leadership to ensure that security initiatives align with the organization's strategic goals and risk appetite. Act as the technical lead for large-scale security projects, coordinating cross-functional teams to ensure successful delivery. Architect and implement solutions across workforce IAM, PAM, and customer IAM ecosystems. Provide thought leadership in adopting passwordless authentication, passkeys, adaptive MFA, and AI-driven access orchestration strategies. Engineer integrations with Agentic AI tools for intelligent decisioning, policy enforcement, and autonomous identity lifecycle operations. Develop and implement automated provisioning/deprovisioning workflows. Ensure integration of IAM with cloud platforms (Azure, AWS, GCP) and SaaS applications. Mentor and develop the skills of senior security engineers, fostering a culture of continuous improvement and innovation.

Technical Experience Must-Have:

  • Privileged Access management (CyberArk)
  • Authentication/AuthN (Okta)
  • Federated Identity (EntraID)
  • Cloud Identity (AWS, GCP, Azure)
  • Automation (terraform, codex, claude)
  • Application SSO (OIDC, SAML)
  • Identity Governance (Sailpoint, Okta, Veza)

Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.

BCG is an E-Verify Employer.

Global IT Director - Principal Security Engineer - London employer: Boston Consulting Group

At Boston Consulting Group, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters collaboration and innovation. Our London office provides unique opportunities for professional growth, with access to cutting-edge technology and a commitment to employee development through mentorship and continuous learning. Join us to be part of a diverse team that drives meaningful change and delivers impactful solutions for our clients.

Boston Consulting Group

Contact Detail:

Boston Consulting Group Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Global IT Director - Principal Security Engineer - London

Tip Number 1

Network like a pro! Reach out to your connections on LinkedIn or attend industry events. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their values and how they align with your skills, especially in IAM and security. This will help you stand out as a candidate who truly gets what they're about.

Tip Number 3

Practice your technical skills! Brush up on your IAM knowledge and be ready to discuss your hands-on experience with tools like Microsoft Entra ID and CyberArk. Show them you’re not just talk; you can walk the walk too.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at StudySmarter.

We think you need these skills to ace Global IT Director - Principal Security Engineer - London

Identity Access Management (IAM)
Authentication and Authorisation
Single Sign-On (SSO)
Federation Protocols (SAML, OIDC, OAuth2)
Privileged Access Management (PAM)
Cloud Security (AWS, GCP, Azure)
Microsoft Entra ID

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the role of Global IT Director - Principal Security Engineer. Highlight your experience with IAM solutions and any relevant projects you've led. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you the perfect fit. Don’t forget to mention specific technologies or methodologies you’ve worked with that relate to our needs.

Showcase Your Achievements:When detailing your experience, focus on achievements rather than just responsibilities. Use metrics where possible to demonstrate the impact of your work. We love seeing how you've driven results in previous roles!

Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s super easy and ensures your application goes directly to us. Plus, we can’t wait to see what you bring to the table!

How to prepare for a job interview at Boston Consulting Group

Know Your IAM Stack Inside Out

Make sure you have a solid grasp of the IAM technologies mentioned in the job description, especially Microsoft Entra ID and Active Directory. Be prepared to discuss your hands-on experience with these platforms and how you've implemented federation protocols like SAML and OAuth2 in past projects.

Showcase Your Leadership Skills

As a Principal Security Engineer, you'll need to demonstrate your ability to lead design sessions and mentor other engineers. Think of examples where you've successfully guided teams through complex IAM challenges or modernisation initiatives, and be ready to share those stories during the interview.

Communicate Complex Concepts Simply

You’ll be working with both technical and non-technical stakeholders, so practice explaining intricate IAM concepts in layman's terms. This will show your communication skills and your ability to bridge the gap between different teams, which is crucial for this role.

Prepare for Scenario-Based Questions

Expect to face scenario-based questions that assess your problem-solving skills in real-world IAM situations. Think about past experiences where you had to perform root-cause analysis or drive long-term remediation, and be ready to walk the interviewer through your thought process.