Senior Security Engineer, IAM in London

Senior Security Engineer, IAM in London

London Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
Deliveroo

At a Glance

  • Tasks: Design and build secure identity systems while leading IAM initiatives.
  • Company: Join Deliveroo, a tech-driven company transforming how we shop and eat.
  • Benefits: Enjoy healthcare, generous leave, and support for charitable causes.
  • Other info: Diverse workplace committed to equity and inclusion.
  • Why this job: Shape IAM and security engineering at scale in a global tech company.
  • Qualifications: 5+ years in software/security engineering with strong IAM expertise.

The predicted salary is between 70000 - 90000 £ per year.

Our mission is to transform the way you shop and eat, bringing the neighbourhood to your door by connecting consumers, restaurants, shops and riders. We are transforming the way the world eats and shops by making access to food and products more convenient and enjoyable.

We are a technology-driven company at the forefront of the most rapidly expanding industry in the world. We are still a small team, making a very large impact, looking to answer some of the most interesting questions out there. We move fast, value autonomy and ownership, and we are always looking for new ideas.

We are looking for a Senior Security Engineer (L5) with deep expertise in Identity & Access Management (IAM) to help design, build, and evolve our identity, authentication, and access control capabilities across the organisation. This is a hands-on senior engineering role within Corporate Security Engineering. You will act as a technical leader across IAM and broader security engineering initiatives - designing scalable identity systems, building secure-by-default access controls, and developing internal integrations and automation that materially improve our risk posture.

You will combine strong security engineering capability with deep IAM domain knowledge, influencing architectural decisions, mentoring engineers, and partnering with stakeholders across engineering, IT, compliance, and product teams.

What you'll be doing:

  • Identity & Access Architecture
    • Own and evolve Deliveroo’s IAM architecture across identity providers (e.g., Okta, Azure AD, Google Cloud Identity), identity governance (e.g., ConductorOne, SailPoint IdentityNow), and cloud IAM (AWS/GCP).
    • Design scalable solutions for authentication, authorisation, provisioning, deprovisioning, RBAC/ABAC, JIT access, and privileged access management.
    • Drive improvements to access governance processes including certifications, SoD controls, and policy enforcement.
    • Lead implementations and technical integrations between domains, ensuring engineering core principles are adhered to.
    • Develop ‘Paved Roads’ for stakeholders enforcing IAM best good practices to teams.
  • Security Engineering
    • Maximise the value of security and IAM tooling by designing and building custom integrations, middleware, and complementary automation.
    • Develop bespoke integrations between IAM platforms and internal systems to ensure seamless lifecycle management and access governance.
    • Build middleware solutions to address edge cases (e.g. automated group creation where authoritative HR data does not exist).
    • Design and implement self-service RBAC capabilities that enable business teams to manage roles within defined guardrails.
    • Create automation layers that enhance ROI from commercial tooling by reducing manual effort and embedding controls into engineering workflows.
    • Extend off-the-shelf platforms with APIs, event-driven services, and workflow orchestration to meet Deliveroo’s scale and complexity.
  • Automation & Integration
    • Build scalable automation across IAM services using modern programming languages (e.g., Go, Java, Python, JavaScript).
    • Develop and maintain integrations using REST APIs, SCIM, webhooks, and event-driven architectures.
    • Embed IAM controls into CI/CD pipelines and infrastructure-as-code environments.
    • Improve reliability and reduce manual operational burden through engineering-led solutions.
  • Cloud & Platform Security
    • Work across AWS, GCP, or Azure environments to ensure IAM and security architecture aligns with cloud-native best practices.
    • Design and review IAM roles, policies, and trust boundaries in cloud environments.
    • Support Zero Trust and secure-by-default principles across infrastructure and application layers.
  • Technical Leadership & Influence
    • Act as a subject matter expert in IAM across the organisation.
    • Mentor and support engineers in secure design, IAM protocols, and security engineering practices.
    • Partner with Security GRC, IT, and Engineering leadership to balance risk reduction with developer experience.
    • Influence adoption of best practices across authentication, authorisation, and access governance.

Requirements:

  • 5+ years of experience in software or security engineering, with significant hands-on technical depth.
  • Strong experience in at least one modern programming language (Go, Java, Scala, Python, or similar).
  • Proven experience designing and operating IAM systems in a cloud-first environment.
  • Deep understanding of authentication and authorisation protocols: SAML, OAuth2 / OIDC, SCIM, MFA and modern identity assurance methods.
  • Experience with identity providers and directories such as Okta, Azure AD, Google Cloud Identity, or Active Directory.
  • Hands-on experience with identity governance platforms (e.g., ConductorOne, SailPoint IdentityNow), including lifecycle management, access reviews, and ABAC models.
  • Strong understanding of cloud IAM (AWS IAM, GCP IAM, Azure RBAC).
  • Experience building secure integrations and automation using REST APIs and event-driven architectures.
  • Experience leading significant cross-team security initiatives.
  • Strong knowledge of RBAC, ABAC, PAM, and Zero Trust architecture principles.
  • Experience working in high-growth, cloud-native environments.
  • Strong architectural thinking and ability to design resilient, scalable systems.
  • Excellent communication skills with the ability to influence cross-functional stakeholders and drive adoption of secure design patterns.

Nice to have:

  • Experience implementing or integrating Just-in-Time (JIT) access or Privileged Access Management tooling.
  • Experience embedding IAM controls into developer workflows (Terraform, CI/CD, GitOps).
  • Experience in regulated environments (SOX, GDPR, PCI).
  • Containerisation and orchestration experience (Docker, Kubernetes).

How you’ll make an impact:

  • Identity and access systems are scalable, automated, and secure-by-default.
  • Commercial IAM tooling delivers strong ROI through high-quality integrations and automation.
  • Manual access management effort is materially reduced through engineering solutions.
  • IAM controls are deeply integrated into cloud and engineering workflows.
  • Engineers across the company adopt authentication and authorisation best practices.
  • Security posture improves without negatively impacting developer velocity.

Why This Role is Exciting:

This is an opportunity to shape IAM and security engineering at scale within a global technology company. You will influence foundational systems that protect millions of users, work on high-impact security integrations, and help define the long-term identity and access strategy. You’ll operate at the intersection of security architecture, software engineering, and cloud platform design - solving complex identity challenges while building systems that make secure access seamless across the organisation.

Workplace & Benefits

At Deliveroo we know that people are the heart of the business and we prioritise their welfare. Benefits differ by country, but we offer many benefits in areas including healthcare, well-being, parental leave, pensions, and generous annual leave allowances, including time off to support a charitable cause of your choice. Benefits are country-specific, please ask your recruiter for more information.

Diversity

At Deliveroo, we believe a great workplace is one that represents the world we live in and how beautifully diverse it can be. That means we have no judgement when it comes to any one of the things that make you who you are - your gender, race, sexuality, religion or a secret aversion to coriander. All you need is a passion for (most) food and a desire to be part of one of the fastest-growing businesses in a rapidly growing industry. We are committed to diversity, equity and inclusion in all aspects of our hiring process. We recognise that some candidates may require adjustments to apply for a position or fairly participate in the interview process. If you require any adjustments, please don't hesitate to let us know. We will make every effort to provide the necessary adjustments to ensure you have an equitable opportunity to succeed.

Senior Security Engineer, IAM in London employer: Deliveroo

Deliveroo is an exceptional employer that prioritises the well-being of its employees while fostering a dynamic and inclusive work culture. With a focus on innovation and autonomy, team members are empowered to make impactful contributions in a fast-paced environment, all while enjoying comprehensive benefits including healthcare, generous leave policies, and opportunities for personal and professional growth. Located at the heart of a rapidly expanding industry, Deliveroo offers a unique chance to shape the future of identity and access management within a global technology company.

Deliveroo

Contact Details:

Deliveroo Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Engineer, IAM in London

Tip Number 1

Network like a pro! Reach out to folks in the industry, especially those at Deliveroo. A friendly chat can open doors and give you insights that a job description just can't.

Tip Number 2

Prepare for the interview by diving deep into IAM topics. Brush up on your knowledge of identity providers and security protocols. We want to see your passion and expertise shine through!

Tip Number 3

Showcase your hands-on experience! Be ready to discuss specific projects where you've designed or implemented IAM solutions. Real-world examples will make you stand out from the crowd.

Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets the attention it deserves. Plus, we love seeing candidates who are proactive about their journey.

We think you need these skills to ace Senior Security Engineer, IAM in London

Identity & Access Management (IAM)
Authentication Protocols
Authorisation Protocols
Cloud Security (AWS, GCP, Azure)
Programming Languages (Go, Java, Python, JavaScript)
REST APIs
Event-Driven Architectures

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter for the Senior Security Engineer role. Highlight your experience with IAM systems and any relevant projects that showcase your skills in security engineering. We want to see how you can make an impact at Deliveroo!

Show Off Your Technical Skills:Don’t hold back on showcasing your technical expertise! Mention the programming languages you’re proficient in, like Go or Python, and any hands-on experience you have with IAM tools. This is your chance to shine and show us why you're the right fit for the team.

Be Clear and Concise:When writing your application, keep it clear and to the point. Use bullet points where possible to make it easy for us to read. We appreciate a well-structured application that gets straight to the important bits without fluff!

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, you’ll find all the details about the role and our company culture there!

How to prepare for a job interview at Deliveroo

Know Your IAM Stuff

Make sure you brush up on your Identity & Access Management knowledge. Be ready to discuss specific protocols like SAML, OAuth2, and SCIM, as well as your experience with identity providers like Okta and Azure AD. The more you can demonstrate your expertise, the better!

Showcase Your Technical Skills

Since this role requires hands-on engineering, be prepared to talk about your experience with programming languages like Go, Java, or Python. Bring examples of projects where you've designed scalable IAM solutions or automated processes using REST APIs. Real-world examples will make you stand out.

Understand Cloud Security

Familiarise yourself with cloud environments like AWS, GCP, or Azure. Be ready to discuss how you've implemented IAM roles and policies in these settings. Highlight any experience with Zero Trust principles and how you've ensured security in cloud-native applications.

Be a Team Player

This role involves mentoring and collaborating with various teams. Prepare to share experiences where you've influenced cross-functional stakeholders or led significant security initiatives. Show that you can balance risk reduction with developer experience while fostering a culture of security best practices.