Lead IAM Engineer

Lead IAM Engineer

Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
Morningstar Credit Ratings, LLC

At a Glance

  • Tasks: Lead and mentor a team in enterprise identity and access management using Microsoft and Okta.
  • Company: Join a forward-thinking tech company with a collaborative and innovative culture.
  • Benefits: Competitive salary, bonus potential, hybrid work model, and flexible benefits.
  • Other info: Dynamic role with opportunities for professional growth and development.
  • Why this job: Make a real impact by shaping secure identity solutions in a fast-paced environment.
  • Qualifications: Experience in IAM solutions, leadership skills, and strong technical expertise required.

The predicted salary is between 60000 - 80000 £ per year.

Role Summary: Lead Platform Engineer working in the IAM team is responsible for enterprise-wide identity and access management across both Microsoft and Okta platforms. This highly visible role partners closely with teams across the organization, requiring a proactive, innovative mindset and a willingness to think beyond conventional approaches. Operating within an Agile environment, the team moves at pace to adapt to evolving business needs. Our technologists bring a diverse range of expertise and share a commitment to treating technology as a craft, with a strong focus on delivering high‑quality, customer‑centric outcomes. The team underpins critical business services, enabling key functions across the organization to deliver seamless and exceptional user experiences.

Responsibilities:

  • Lead, mentor, and develop a team of IAM Engineers, fostering a culture of technical excellence, collaboration, and continuous improvement.
  • Define engineering standards, best practices, and technical direction across the IAM platform.
  • Provide technical leadership through architecture reviews, design discussions, and coaching.
  • Drive project planning, prioritisation, and team capacity planning to ensure successful delivery.
  • Contribute to the long‑term IAM strategy and technology roadmap.
  • Design, build, and evolve enterprise Identity and Access Management solutions using Okta and Microsoft Entra ID.
  • Engineer and automate Joiner, Mover, Leaver (JML) lifecycle processes using Okta Workflows.
  • Design and implement secure Single Sign-On (SSO), Multi‑Factor Authentication (MFA), and identity governance solutions.
  • Integrate enterprise applications using SAML, OAuth, OpenID Connect (OIDC), SCIM, and other modern authentication standards.
  • Engineer and maintain hybrid identity services across Active Directory and Microsoft Entra ID.
  • Develop PowerShell automation to improve provisioning, administration, and operational efficiency.
  • Own the health, scalability, resilience, and security of the enterprise identity platform.
  • Lead the planning, design, and implementation of IAM projects and platform enhancements.
  • Produce and maintain technical documentation, architecture diagrams, runbooks, and engineering standards.
  • Provide technical guidance during major incidents and act as the escalation point for complex identity‑related issues.
  • Collaborate with Security, Infrastructure, Cloud, and Application teams to deliver secure identity solutions.
  • Evaluate emerging identity technologies and recommend improvements that enhance security, automation, and user experience.

Qualifications:

  • Bachelor's degree in Computer Science, Information Technology, or a related discipline (or equivalent practical experience).
  • Experience leading or mentoring engineering teams in an enterprise technology environment.
  • Strong hands‑on experience engineering enterprise Identity and Access Management solutions.
  • 3+ years' experience with Okta Single Sign-On (SSO) and Lifecycle Management.
  • 3+ years' experience with Okta Identity Governance (OIG).
  • 3+ years' experience designing and building solutions using Okta Workflows.
  • 5+ years' experience working with Active Directory in complex enterprise environments.
  • Strong knowledge of Active Directory Group Policy and hybrid identity architectures.
  • Experience with Microsoft Entra ID (Azure Active Directory).
  • Experience with Azure Application Proxy or similar application proxy technologies.
  • Strong PowerShell scripting skills with a focus on automation.
  • Experience with Microsoft Certificate Services.
  • Excellent troubleshooting, analytical, and problem‑solving skills.
  • Ability to lead technical initiatives while remaining hands‑on with engineering work.
  • Excellent communication and stakeholder management skills.
  • Self‑motivated with the ability to work autonomously in a fast‑moving environment.

Desirable:

  • ServiceNow
  • Splunk
  • Basic knowledge of System for Cross‑domain Identity Management (SCIM)

Salary & Benefits:

Base Salary Compensation Range GBP 59,400.00‑82,866.66. Bonus Target: 12.5% annual. Morningstar’s hybrid work environment gives you the opportunity to collaborate in‑person each week as we’ve found that we’re at our best when we’re purposely together. In most of our locations, our hybrid work model is four days in‑office each week. A range of other benefits are also available to enhance flexibility as needs change.

EEO Statement:

Morningstar is strongly committed to creating and preserving equal opportunity for all employees and applicants. We make all employment decisions—including recruitment, hiring, compensation, training, promotion, transfer, discipline, termination, and other personnel matters—without regard to race, color, ancestry, religion, sex, national origin, age, disability, protected veteran status, marital status, sexual orientation, genetic information, citizenship, gender identity and expression, parental status, or other legally protected characteristics or conduct. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the employment process, please call +1 312 384-3900 or email AskHR@morningstar.com and let us know the nature of your request and your contact information.

Lead IAM Engineer employer: Morningstar Credit Ratings, LLC

At Morningstar, we pride ourselves on being an exceptional employer, offering a dynamic hybrid work environment that fosters collaboration and innovation. Our commitment to employee growth is evident through mentorship opportunities and a culture that values technical excellence and continuous improvement. With competitive compensation, a strong focus on work-life balance, and a diverse team dedicated to delivering high-quality, customer-centric solutions, we provide a rewarding workplace for those looking to make a meaningful impact in the field of identity and access management.

Morningstar Credit Ratings, LLC

Contact Details:

Morningstar Credit Ratings, LLC Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Lead IAM Engineer

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Morningstar Credit Ratings, LLC, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Morningstar Credit Ratings, LLC

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Morningstar Credit Ratings, LLC. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Lead IAM Engineer

Identity and Access Management (IAM)
Okta
Microsoft Entra ID
Single Sign-On (SSO)
Multi-Factor Authentication (MFA)
Lifecycle Management
Okta Workflows

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Morningstar Credit Ratings, LLC insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Morningstar Credit Ratings, LLC that you’re committed to staying ahead in the game.

How to prepare for a job interview at Morningstar Credit Ratings, LLC

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Morningstar Credit Ratings, LLC to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Morningstar Credit Ratings, LLC.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.