Lead Identity Architect in Swindon

Lead Identity Architect in Swindon

Swindon Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
Mastek

At a Glance

  • Tasks: Lead the architecture of a complex identity service and guide teams to simplify processes.
  • Company: Join a secure government environment focused on innovative identity solutions.
  • Benefits: Permanent role with hybrid working, competitive salary, and opportunities for professional growth.
  • Other info: Work closely with diverse teams and enjoy a dynamic, supportive work culture.
  • Why this job: Make a real impact by shaping the future of identity management in a critical service.
  • Qualifications: Strong experience in identity management and proven leadership in complex platforms.

The predicted salary is between 70000 - 90000 £ per year.

We are looking for an experienced Lead Identity Architect to provide technical leadership across a live, business-critical identity service operating in a secure government environment. This is a senior architecture role requiring both strategic leadership and practical technical depth. The successful candidate will own the end-to-end architecture view across application development, data, service operations, L2/L3 support and supplier dependencies.

The role requires someone who can set direction with senior stakeholders, provide clear design authority, and work closely with engineering, data and service teams on detailed technical issues. This includes identity schemas, attributes, data flows, APIs, microservices, integration patterns, workflow behaviour, platform configuration and live-service supportability. The successful candidate will help ensure the platform remains stable, supportable and capable of evolving over time, while reducing avoidable complexity across processes, integrations and technical components.

Contract / Location

  • Employment type: Permanent
  • Clearance: Active SC clearance required
  • Working pattern: Hybrid
  • Onsite: 1-2 days per week in Chippenham, Wiltshire

Key Responsibilities

  • Architecture Leadership
    • Own the end-to-end architecture across development, data and service support workstreams.
    • Provide technical direction across identity workflows, lifecycle processes, integrations, data flows, platform behaviour and operational supportability.
    • Act as the senior architecture point of contact for delivery teams, service teams, suppliers and customer stakeholders.
    • Maintain architectural coherence across live-service change, backlog delivery, technical debt reduction and roadmap activity.
    • Ensure design decisions are pragmatic, supportable and aligned to business value.
  • Identity Platform Architecture
    • Lead architecture across enterprise identity and access management capabilities.
    • Provide oversight of identity lifecycle processes including onboarding, profile changes, role and access changes, recertification, leaver handling, audit and reporting.
    • Understand complex identity integrations across directories, authoritative sources, workflow systems, cloud-hosted services and downstream platforms.
    • Support simplification of identity journeys, data feeds, interfaces and platform components.
    • Identify opportunities to reduce avoidable customisation and use existing platform capability where appropriate.
  • Technical Depth and Design Ownership
    • Understand and challenge detailed identity designs, including schemas, attributes, data models, workflow rules, provisioning logic and integration behaviour.
    • Review APIs, data feeds, directory integrations, microservices, ETL / transformation logic and platform configuration.
    • Work with developers, data specialists, DevOps engineers and service teams to diagnose complex issues and make practical design decisions.
    • Provide architecture support during defect analysis, root-cause investigation, service support and backlog refinement.
    • Move comfortably between architecture diagrams, backlog items, logs, schemas, interface specifications and implementation detail.
    • Identify where existing components should be retained, simplified, consolidated, retired or replaced with simpler patterns.
    • Ensure architectural decisions are technically sound, supportable in live service, and understood by the teams who need to build and run them.
  • Platform Improvement and Roadmap
    • Review existing platform complexity, including interfaces, microservices, custom components and integration patterns.
    • Shape practical options for reducing complexity and improving supportability.
    • Support API-based integration patterns where they reduce complexity and improve resilience.
    • Work with cloud/platform specialists to identify monitoring, resilience, containerisation and operational improvement opportunities.
    • Provide architectural input into future identity patterns, including Microsoft Entra-aligned options where appropriate.
    • Reduce complexity without driving unnecessary re-engineering or business disruption.
  • Service Supportability
    • Work closely with Service Operations, L2/L3 support, Data, Dev and DevOps teams to improve ownership and reduce dependency on specialist intervention.
    • Support the development of runbooks, operational models, support routes and knowledge-transfer material.
    • Ensure the architecture is supportable by BAU, not just deliverable by project teams.
    • Help distinguish between application, data, infrastructure, supplier and service-operation ownership.
    • Support incident and problem analysis where architectural input is required.

Essential Experience

  • Strong enterprise identity and access management experience.
  • Proven experience as a lead or senior architect on complex live platforms.
  • Experience working in secure government, public sector or similarly regulated environments.
  • Strong understanding of identity lifecycle, access management, workflow, audit, governance and integration patterns.
  • Demonstrable ability to work at detailed technical level across identity schemas, data flows, APIs, microservices, platform configuration and live-service support issues.
  • Experience working across application development, data, infrastructure, service operations and supplier teams.
  • Ability to simplify complex technical landscapes and make pragmatic architecture decisions.
  • Strong stakeholder management and communication skills.
  • Active SC clearance.

Desirable Experience

  • Experience with enterprise IAM platforms such as OpenText / NetIQ, SailPoint, Microsoft Entra, ForgeRock, CyberArk, Okta or similar.
  • Microsoft Entra / Azure AD / M365 identity integration experience.
  • AWS-hosted application or platform experience.
  • API gateway, LDAP, directory services, data feeds and enterprise integration experience.
  • Experience with microservices, ETL patterns, workflow engines or complex integration platforms.
  • Experience of service transition, BAU readiness and operational handover.
  • Experience modernising or simplifying legacy-to-cloud services.
  • Familiarity with secure-by-design principles, auditability and regulated-service operation.

What We Are Looking For

  • An established senior architect with real identity-platform depth.
  • A technical leader who can own architecture across Dev, Data and Service Operations.
  • Someone credible with engineers, architects, service teams and senior stakeholders.
  • Someone who can go into schemas, interfaces, microservices and platform behaviour when needed.
  • A pragmatic architect who reduces complexity rather than creating more of it.
  • Someone who can produce clear architecture views and communicate well, but whose value is not limited to documentation or presentations.
  • Strong judgement in a live-service environment where stability, supportability and controlled change matter.

In Simple Terms

We need a senior identity architect who can own the architecture of a complex live service, understand the detail, guide the teams, reduce complexity, and make the platform easier to support and evolve.

Lead Identity Architect in Swindon employer: Mastek

As a Lead Identity Architect at our company, you will thrive in a dynamic and supportive work environment that prioritises employee growth and development. With a strong focus on collaboration and innovation, we offer unique opportunities to work on critical identity services within the secure government sector, all while enjoying a hybrid working model in the picturesque location of Chippenham, Wiltshire. Join us to make a meaningful impact while benefiting from a culture that values your expertise and encourages continuous learning.

Mastek

Contact Details:

Mastek Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Lead Identity Architect in Swindon

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Mastek, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Mastek

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Mastek. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Lead Identity Architect in Swindon

Identity and Access Management (IAM)
Architecture Leadership
Technical Direction
Identity Lifecycle Management
Data Flows
API Design and Integration
Microservices Architecture

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Mastek insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Mastek that you’re committed to staying ahead in the game.

How to prepare for a job interview at Mastek

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Mastek to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Mastek.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.