Senior Identity Protection Specialist in Billingham

Senior Identity Protection Specialist in Billingham

Billingham Full-Time 70000 - 90000 £ / year (est.) No working from home possible
FUJIFILM Holdings America Corporation

At a Glance

  • Tasks: Protect identities globally by leading detection and response for identity threats.
  • Company: Join a forward-thinking tech company focused on cybersecurity.
  • Benefits: Enjoy competitive pay, health coverage, and a supportive work-life balance.
  • Other info: Collaborate with global teams and grow your career in a dynamic environment.
  • Why this job: Make a real impact in identity security while solving complex challenges.
  • Qualifications: 8+ years in IT/cybersecurity with a focus on identity security.

The predicted salary is between 70000 - 90000 £ per year.

Protect identities at a global scale. We’re hiring a hands-on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity-based threats across Microsoft Entra ID/Azure AD, on-prem Active Directory, and connected SaaS/IaaS. You’ll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high-fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk.

What you’ll do:

  • Lead identity threat monitoring and triage
  • Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign-ins, MFA fatigue, and session hijacking
  • Validate true/false positives, prioritise by business impact, and escalate per playbooks/SLAs
  • Drive rapid containment and remediation
  • Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts)
  • Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure
  • Own identity-focused incident response
  • Lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement
  • Ensure evidence handling, root cause analysis, post-incident reviews, and lessons learned
  • Engineer detections and hunt for threats
  • Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK
  • Close visibility gaps, reduce false positives, and expand privileged activity monitoring
  • Strengthen privileged access controls
  • Detect anomalous privileged behaviour via SIEM/UEBA and Netskope telemetry
  • Recommend/enforce JIT, break-glass patterns, and mover/leaver privilege hygiene with IAM
  • Respond to dark web/credential exposure
  • Integrate sources like CyberInt; assess exposure and targeted campaigns
  • Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates
  • Administer platforms and sustain hygiene
  • Maintain coverage/health for identity monitoring; manage upgrades and changes via CAB
  • Keep operational runbooks, SOPs, and playbooks current
  • Automate and orchestrate at scale
  • Use PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardise workflows, and improve signal fidelity
  • Shape identity policy and controls
  • Advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared-responsibility model with IAM
  • Report outcomes and support audits
  • Produce executive-ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time)
  • Maintain audit-ready evidence and support internal/external audits

What you’ll bring:

  • Bachelor’s degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience
  • 8+ years in IT/cybersecurity, including 3–5+ years focused on identity security/operations (Entra ID/Azure AD, on-prem AD, MFA, Conditional Access, SSO/SCIM)
  • Hands-on enterprise experience administering/operating CrowdStrike Identity Protection
  • Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations
  • Demonstrated experience in identity-centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma)
  • Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR
  • Clear communication and documentation skills; comfortable producing executive-ready reports and audit evidence
  • Operates effectively within change control/CAB and under pressure during high-severity incidents

Bonus points:

  • Certifications: Microsoft SC-200/SC-300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent
  • Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow)
  • Experience with JIT/JEA, PAM concepts, and global on-call rotations

Location, work style, and travel:

  • Opportunities in the United States, United Kingdom, and Denmark
  • Onsite or hybrid depending on location and business needs
  • Occasional on-call coverage may be required

Why you’ll love it here:

  • Own a mission-critical identity defence stack and make measurable impact on MTTD/MTTR and privilege hygiene
  • Solve complex problems from dark web exposure to directory persistence and lateral movement
  • Collaborate with experienced global teams and leading vendors to continuously raise the bar
  • Grow your career in a modern, data-driven security operations environment

Our programs are designed to focus on maintaining and enhancing all pillars of health with a robust benefits package including medical, dental, vision and prescription drug coverage with the option of a Health Savings Account with company contributions. In addition, we offer an industry-leading 401(k) savings plan, insurance coverage, employee assistance programs and various wellness incentives. We support life-work balance with paid vacation time, sick time, and company holidays. Explore a supportive environment that enriches both your personal and professional growth!

EEO Information: Fujifilm is committed to providing equal opportunities in hiring, promotion and advancement, compensation, benefits, and training regardless of nationality, age, gender, sexual orientation or gender identity, race, ethnicity, religion, political creed, ideology, national, or social origin, disability, veteran status, etc.

ADA Information: If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our HR Department (fdbglobaltalent@fujifilm.com).

Senior Identity Protection Specialist in Billingham employer: FUJIFILM Holdings America Corporation

FUJIFILM Holdings America Corporation is an exceptional employer that fosters a dynamic work culture focused on innovation and collaboration. With a commitment to employee growth, you will have access to ongoing training and development opportunities, alongside competitive benefits that support work-life balance. Located in a vibrant area, this role not only offers the chance to make a meaningful impact in the biosciences sector but also provides unique networking opportunities at trade shows and industry events.

FUJIFILM Holdings America Corporation

Contact Details:

FUJIFILM Holdings America Corporation Recruitment Team

We think you need these skills to ace Senior Identity Protection Specialist in Billingham

Identity Protection
CrowdStrike Identity Protection
SIEM/UEBA
KQL
SQL
Regex
Sigma