IAM Platform Engineer - Authentication, Credentials & PAM
G-Research is a leading quantitative research and technology firm, based in London.
Work with PingFederate, PingAM, SAML, OAuth2, OpenID Connect, Teleport, Active Directory, LDAP, Kubernetes, and languages like C#, Java, Python, or Go. You will own and evolve authentication, identity federation, credential management, and privileged access platforms for G-Research, a quantitative research firm solving complex problems in finance.
Free Tailor for ATS: 10/10 runs left
We tackle the most complex problems in quantitative finance, by bringing scientific clarity to financial complexity.
From our London HQ, we unite world-class researchers and engineers in an environment that values deep exploration and methodical execution - because the best ideas take time to evolve. Together we’re building a world-class platform to amplify our teams’ most powerful ideas.
Security is foundational to this mission and must be delivered in a way that supports how our engineering teams build and operate complex systems at scale.
Take the next step in your career.
The role
We're looking for an experienced Identity and Access Management (IAM) Platform Engineer to own and evolve our authentication, identity federation, credential management and privileged access platforms.
You will help modernise our identity infrastructure, replacing bespoke authentication patterns with scalable, standards-based IAM services that are secure, automated and easy for engineering teams to consume.
You'll help shape the future of authentication and privileged access within one of the world's leading quantitative research firms, working on large-scale engineering problems rather than traditional operational IAM.
Key responsibilities
Key responsibilities of the role include:
Designing, implementing and supporting enterprise authentication and identity federation services
Developing standard onboarding patterns for applications using SAML, OAuth2 and OpenID Connect
Improving and rationalising our identity provider estate, including PingFederate, PingAM and cloud identity platforms
Engineering secure privileged access solutions using Teleport and Just-in-Time access principles
Defining standards for service accounts, certificates, secrets and machine identities
Building APIs and automation to simplify identity platform operations
Partnering with engineering teams to deliver reusable, secure authentication services
Improving operational maturity through monitoring, alerting, logging, documentation and automation
Supporting migration away from bespoke authentication implementations towards enterprise IAM standards
Who are we looking for?
The ideal candidate will have the following skills and experience:
Experience engineering and operating enterprise IAM platforms
Experience with enterprise identity providers such as PingFederate, PingAM, Microsoft Entra ID or Okta
Strong understanding of authentication, authorisation, Active Directory, LDAP and privileged access management
Experience applying modern platform engineering practices, including infrastructure as code, CI/CD, automation and observability
Software engineering experience in languages such as C#, Java, Python or Go
Experience building APIs and automating identity platform services
Experience supporting hybrid on-premises and cloud identity platforms, including Kubernetes
Why join us?
Highly competitive compensation plus annual discretionary bonus.
Lunch provided via Just Eat for Business and dedicated barista bar.
35 days’ annual leave.
9% company pension contributions.
Informal dress code and excellent work-life balance.
Comprehensive healthcare and life assurance.
Cycle-to-work scheme.
Monthly company events.
G-Research is committed to cultivating and preserving an inclusive work environment. We are an ideas-driven business and we place great value on diversity of experience and opinions.
We want to ensure that applicants receive a recruitment experience that enables them to perform at their best. If you have a disability or special need that requires accommodation please let us know in the relevant section