At a Glance
- Tasks: Drive identity security improvements and manage access control across various environments.
- Company: Join a forward-thinking organisation committed to security and innovation.
- Benefits: Enjoy competitive pay, generous holiday, healthcare support, and career growth opportunities.
- Other info: Diverse and inclusive workplace with excellent support for mental health and well-being.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
- Qualifications: Experience in security tools, mentoring skills, and strong communication abilities required.
The predicted salary is between 60000 - 75000 € per year.
Based at least 2 days a week in our Bath Head Office, you will report to the Cyber Security Engineering Team Leader. You will develop the Cyber Security Identity and Access Management (IdAM) functions, deliveries and continuous improvement of identity security across the organisation. You will ensure identity security operates as a strategic control pillar rather than a reactive support function.
The Cyber Security IdAM Senior Specialist drives the operational effectiveness, resilience and continuous improvement of the organisation's Identity and Access Management capabilities. The role ensures robust access control, secure authentication standards and regulatory alignment across on-premises, cloud and hybrid environments. It provides senior technical authority in identity security, working across IT, security, governance and business teams to embed best practice, reduce identity-related risk exposure and enhance the organisation's overall security posture.
In particular, you will:
- Investigate and resolve identity-related security incidents, including unauthorised access, privilege misuse and credential compromise.
- Develop and refine SIEM detection use cases and identity-centric analytics to enable earlier identification and containment of threats.
- Drive adoption of evolving identity security practices, including Zero Trust principles, modern authentication standards and identity analytics.
- Deliver roadmap enhancements to ensure IdAM capabilities remain aligned to the threat landscape and business risk profile.
- Act as technical service owner for key security platforms, ensuring performance, resilience and continual optimisation.
- Oversee monitoring and analysis of identity telemetry, authentication patterns and privilege usage to detect anomalous behaviour and systemic risk.
- Provide clear, risk-focused reporting and recommendations to senior management, supporting informed decision-making and prioritisation of remediation efforts.
- Provide authoritative identity security input into projects, architectural design reviews and technology implementations.
- Ensure new systems, integrations and application deployments align with enterprise authentication, authorisation and lifecycle standards.
- Maintain and continuously improve secure configuration baselines across identity infrastructure, including both cloud and on-premise environments.
- Lead optimisation and hardening of enterprise IdAM platforms, including privileged access controls, identity governance and directory security.
- Oversee access governance activities, including periodic access reviews, privilege rationalisation and enforcement of least-privilege principles.
- Identify and remediate systemic identity risk through conditional access enforcement, legacy protocol reduction, authentication strengthening and directory security enhancement.
- Produce and maintain high-quality documentation, including standards, procedures, runbooks and post-incident reports.
- Provide identity risk metrics and performance insight to support operational planning and strategic decision-making.
- Provide senior technical guidance and mentorship to analysts, engineers and apprentices, building identity security capability within the team.
- Act as a trusted advisor on identity and access matters across the business, balancing security requirements with operational practicality.
- Provide considered, proportionate guidance where security deviations are identified, ensuring remediation without unnecessary disruption.
- Promote a culture of shared accountability for identity security, strengthening collaboration between technical and business stakeholders.
Essential areas of expertise include:
- Advanced working knowledge of enterprise security tooling, including PAM, IAG, SIEM, EDR, and NDR platforms.
- Advanced working knowledge of enterprise IdPs such as AD and Entra ID.
- Proven ability to mentor, coach and uplift junior security professionals and apprentices.
- Extensive experience analysing, investigating and responding to security events within cloud environments.
- Extensive experience analysing and responding to threats within on-premise infrastructure.
- Demonstrated commitment to continuous improvement of security posture.
- Highly developed written communication skills.
- Strong verbal communication skills.
- Ability to operate effectively across multi-disciplinary teams.
- Comprehensive knowledge of security protocols, authentication mechanisms, cryptographic standards and modern access control technologies.
- Strong understanding of adversary tactics, techniques and procedures (TTPs).
What you’ll receive:
- A combined pension contribution of up to 20%.
- Career progression and professional development opportunities.
- 25 days' holiday rising to 28 with length of service.
- The opportunity to sell up to five days of holiday every year.
- The opportunity to buy up to ten days of holiday each year (subject to conditions).
- A healthcare package that allows you to claim back healthcare costs.
- Life assurance of up to eight times your salary.
- The opportunity to lease a new electric car through salary sacrifice (subject to conditions).
- Cashback and discounts from more than 3,000 retailers.
- One paid volunteering day each year.
- Enhanced family leave and pay arrangements.
- Access to an interactive health and wellbeing platform.
- Support from trained mental health first aiders.
- A £1,000 referral fee if you recommend someone who is successfully recruited by us.
We are passionate about diversity and inclusion – with that in mind, all applicants are welcome. We are delighted to have signed the Armed Forces Covenant and are a Disability Confident Employer.
Cyber Security IdAM Senior Specialist in Bath employer: YTL UK Group
Join our dynamic team in Bath as a Cyber Security IdAM Senior Specialist, where we prioritise employee growth and well-being. With a strong focus on continuous improvement and collaboration, we offer extensive professional development opportunities, a generous benefits package including a combined pension contribution of up to 20%, and a supportive work culture that values diversity and inclusion. Experience the unique advantage of working in a vibrant city while contributing to cutting-edge identity security initiatives.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security IdAM Senior Specialist in Bath
✨Tip Number 1
Network like a pro! Reach out to current employees on LinkedIn or at industry events. Ask them about their experiences and any tips they might have for landing a role at the company. Personal connections can make all the difference!
✨Tip Number 2
Prepare for the interview by researching the latest trends in Cyber Security, especially around Identity and Access Management. Show us you’re not just knowledgeable but also passionate about staying ahead of the curve in this ever-evolving field.
✨Tip Number 3
Practice your technical skills! Be ready to discuss specific tools and technologies mentioned in the job description, like PAM, SIEM, and EDR platforms. We want to see that you can walk the walk, not just talk the talk.
✨Tip Number 4
Don’t forget to showcase your soft skills! Communication is key in this role, so be prepared to demonstrate how you can explain complex security concepts to both technical and non-technical stakeholders. We love candidates who can bridge that gap!
We think you need these skills to ace Cyber Security IdAM Senior Specialist in Bath
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience with identity security and access management. We want to see how your skills align with the specific requirements of the Cyber Security IdAM Senior Specialist role.
Showcase Your Communication Skills:Since this role involves a lot of collaboration, emphasise your ability to communicate complex technical concepts clearly. Include examples of how you've effectively communicated with both technical and non-technical stakeholders in the past.
Highlight Continuous Improvement:We love candidates who are proactive about enhancing security postures. Share any experiences where you identified control gaps and drove measurable improvements in identity security or related areas.
Apply Through Our Website:Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensure you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at YTL UK Group
✨Know Your Stuff
Make sure you brush up on your knowledge of enterprise security tooling, especially PAM, IAG, SIEM, and EDR platforms. Be ready to discuss how you've designed detection logic or optimised telemetry in complex environments. This will show that you’re not just familiar with the tools but can also apply them effectively.
✨Showcase Your Experience
Prepare to share specific examples of how you've handled identity-related security incidents in both cloud and on-premise environments. Highlight your experience with privilege escalation and control bypass scenarios, as well as any successful remediation efforts you've led. Real-world examples will make your expertise stand out.
✨Communicate Clearly
Practice articulating complex technical risks in a way that’s easy for non-technical stakeholders to understand. You’ll need to demonstrate strong verbal communication skills, so think about how you can explain your past projects and their impact on security posture without getting too technical.
✨Emphasise Continuous Improvement
Be prepared to discuss how you proactively identify control gaps and drive measurable remediation. Share your commitment to continuous improvement in security posture and how you’ve fostered technical growth within teams. This shows that you’re not just reactive but also strategic in your approach to identity security.