At a Glance
- Tasks: Design and implement secure access management solutions for a global music company.
- Company: Join Universal Music Group, the world's leading music company with a vibrant culture.
- Benefits: Enjoy competitive pay, private medical insurance, and generous annual leave.
- Other info: Inclusive workplace committed to diversity and personal growth.
- Why this job: Be part of a passionate team shaping the future of music through technology.
- Qualifications: 5+ years in Identity & Access Management with strong technical skills.
The predicted salary is between 60000 - 80000 £ per year.
Music is Universal. It’s the passionate and dedicated team at Universal Music who help make us the world’s leading music company. From A&R to finance, legal to digital, sales to marketing, Universal Music is the place to grow and develop your career within a truly commercial and innovative business that leads in everything it does.
Everyone is welcome to apply for our roles, and we are determined to ensure that no applicant or employee receives less favourable treatment because of gender, race, disability, sexual orientation, religion, belief, age, marital status, background, pregnancy, or caring responsibilities. We also recognise the importance of diversity of thought within our teams and are fully committed to embracing the talents of people with autism, dyslexia, ADHD, and other forms of neurocognitive variation. We will always seek to make appropriate adjustments to recruitment, workplaces, and work processes to be fully inclusive to people with different needs and working styles. If you need us to make any reasonable adjustments for you from application onwards, including alternatives to the online form or to disclose a neurocognitive condition, please email UniversalMusicCareers@umusic.com.
We are currently seeking an Identity & Access Management Engineer with specialization in Access Management to join UMG’s global Tech Security & Identity organization. Reporting to the Manager, Access Management VP, Tech Security & Identity, this is a hands‑on engineering role responsible for designing, implementing, and operating enterprise access management capabilities across a global, hybrid environment – including workforce, partner, customer, and consumer experiences. This engineer will play a critical role in securing authentication and authorization for workforce and application access, delivering scalable solutions across Single Sign‑On (SSO), federation, and multi‑factor authentication (MFA). The role emphasises strong technical execution, platform reliability, and automation, working closely with application, infrastructure, and security teams to enable secure access while maintaining a strong user experience. The ideal candidate brings deep experience with modern access management platforms and protocols, and the ability to operate access services at enterprise scale.
Job Functions
- Design, engineer, deploy, and operate Access Management solutions across the enterprise.
- Implement and support Single Sign‑On (SSO) and federation services using modern identity protocols.
- Engineer and maintain authentication and authorization services including MFA, adaptive access, and conditional access policies.
- Integrate applications and platforms with enterprise access management systems across on‑premises and cloud environments.
- Partner with application owners and platform teams to onboard applications to SSO and enforce consistent authentication standards.
- Design and maintain secure federation integrations using protocols such as SAML, OAuth 2.0, and OpenID Connect (OIDC).
- Develop and maintain automation and tooling to support access onboarding, configuration, and lifecycle management.
- Troubleshoot and resolve complex authentication, authorization, and federation issues impacting users or applications.
- Ensure access management services meet availability, performance, and resiliency requirements in a global environment.
- Support audit, compliance, and security review activities related to access controls and authentication mechanisms.
- Maintain technical documentation, standards, and runbooks for access management platforms and integrations.
- Continuously improve access security and user experience through platform enhancements, automation, and adoption of modern authentication patterns.
Essential Qualifications
- 5+ years of hands‑on experience in Identity & Access Management or Security Engineering roles, with strong focus on Access Management.
- Demonstrated experience implementing and operating enterprise access management platforms (e.g., Ping Identity, Okta, Microsoft Entra ID, or equivalent).
- Strong understanding of authentication and authorization concepts, including SSO, federation, MFA, and adaptive access.
- Hands‑on experience with identity protocols and standards such as SAML, OAuth 2.0, OpenID Connect (OIDC), and LDAP.
- Experience integrating identity platforms with cloud applications, SaaS platforms, and custom‑built applications.
- Proficiency in scripting and automation using tools such as PowerShell or Python.
- Experience operating access services in hybrid and cloud environments (Azure and/or AWS).
- Ability to independently own complex technical implementations while collaborating across a global organisation.
- Strong troubleshooting, documentation, and communication skills.
Desirable Qualifications
- Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical discipline.
- Experience with passwordless authentication technologies and modern identity standards.
- Familiarity with Zero Trust and conditional access models.
- Experience supporting authentication services in high‑availability, 24x7 enterprise environments.
- Experience with identity verification solutions and technologies.
- Professional certifications such as Ping Identity Certified Professional, Microsoft Certified: Identity and Access Administrator, Security+, or CISSP.
- Experience operating IAM platforms within a large, global, or highly regulated enterprise environment.
Benefits
- Group Personal Pension Scheme (between 3% and 9%)
- Private Medical Insurance
- 25 paid days of annual leave
- Interest Free Season Ticket Loan
- Holiday Purchase scheme
- Dental and Travel Insurance options
- Cycle to Work Scheme
- Salary Sacrifice Cars
- Subsidised Gym Membership
- Employee Discounts (Reward Gateway)
Equal Opportunity Statement
We strive for a fair and inclusive hiring process and encourage applications from all backgrounds. All qualified applicants will be considered for employment without regard to race, colour, religion, sex, gender identity, sexual orientation, national origin, age, disability, or any other protected characteristic.
About UMG UK: We are Universal Music Group UK – the UK’s leading music‑based entertainment company. We exist to shape culture through the power of artistry. We help UK artists produce, distribute and promote the most critically acclaimed and commercially successful music to inspire and entertain fans at home and around the world.
IAM Engineer - SSO employer: Dormont Manufacturing Co
Universal Music Group is an exceptional employer that fosters a vibrant and inclusive work culture, where creativity and innovation thrive. With a commitment to employee growth, we offer extensive benefits including a generous pension scheme, private medical insurance, and opportunities for professional development in the dynamic music industry. Located in the heart of the UK's entertainment scene, our team enjoys a collaborative environment that values diversity and empowers individuals to make a meaningful impact.
StudySmarter Expert Advice🤫
We think this is how you could land IAM Engineer - SSO
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Dormont Manufacturing Co, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Dormont Manufacturing Co
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Dormont Manufacturing Co. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace IAM Engineer - SSO
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Dormont Manufacturing Co insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Dormont Manufacturing Co that you’re committed to staying ahead in the game.
How to prepare for a job interview at Dormont Manufacturing Co
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Dormont Manufacturing Co to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Dormont Manufacturing Co.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.