Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Lead Security Architect – Identity and Access Management (IAM)

Bupa
Surrey
1 week ago
Create job alert

Job Description:

Lead Security Architect – Identity and Access Management (IAM)

Permanent

London / Staines / Manchester (Hybrid Working)

We make health happen

At Bupa, our purpose is simple but powerful — helping people live longer, healthier, happier lives and making a better world. We’re a global healthcare provider and insurer with no shareholders, which means our customers come first in everything we do.

As our Lead Security Architect – IAM, you’ll play a key role in protecting the digital identities of our people, customers, and partners. You’ll help shape and deliver a secure, scalable, and user-friendly identity and access management strategy that supports our digital transformation and keeps our systems safe.

This is your chance to join a team that’s passionate about innovation, security, and making a real difference to people’s lives.

Key Responsibilities

As our Lead Security Architect – IAM, you’ll:

Define and maintain our enterprise IAM architecture, aligned with Zero Trust principles. Develop reusable design patterns and reference models for IAM services like identity lifecycle, RBAC/ABAC, SSO, MFA, and PAM. Lead the integration of IAM solutions across cloud, SaaS, and on-prem platforms including Azure, GCP, Kubernetes, and legacy systems. Evaluate and select IAM technologies such as Entra ID, Okta, CyberArk, and SailPoint. Design scalable identity governance and administration (IGA) solutions for staff, customers, and third parties. Collaborate with teams across Cybersecurity, Risk, Engineering, and Compliance to embed IAM controls. Stay ahead of emerging trends like decentralised identity and passkeys and guide architectural innovation. Provide expert consultancy during audits, incident response, and solution design. Support internal and external risk, compliance, and audit reviews.


What We’re Looking For

We’re looking for someone who brings deep technical expertise and a collaborative mindset. You’ll need:

7+ years’ experience in IAM, security architecture, or cloud engineering with a strong IAM focus. Proven experience designing and implementing enterprise IAM strategies. Strong knowledge of IAM governance, access reviews, and compliance frameworks. Hands-on experience with platforms like Azure AD, Okta, SailPoint, CyberArk, and BeyondTrust. Familiarity with identity protocols (SAML, OAuth2, OpenID Connect) and Zero Trust models. Experience with hybrid and multi-cloud environments, including Kubernetes and SaaS integrations. Relevant certifications (e.g. SC-300, CIAM, CISSP, CCSP, SABSA) are a plus. Excellent communication skills — able to explain complex ideas to technical and non-technical audiences. A passion for continuous improvement and a proactive approach to problem-solving.


Benefits

Our benefits are designed to make health happen for our people. Viva is our global wellbeing programme and includes all aspects of our health – from mental and physical, to financial, social and environmental wellbeing. We support flexible working and have a range of family-friendly benefits.

Joining Bupa in this role, you’ll receive the following benefits and more:

25 days holiday, increasing through length of service, with the option to buy or sell Enhanced parental leave Company-matched pension scheme Annual performance-based bonus Private medical insurance Access to our health assessments and wellbeing services Discounts on Bupa products and services


Why Bupa

We’re a health insurer and provider. With no shareholders, our customers are our focus. Our people are all driven by the same purpose – helping people live longer, healthier, happier lives and making a better world. We make health happen by being brave, caring and responsible in everything we do.

Related Jobs

View all jobs

Lead Security Architect – Identity and Access Management (IAM)

Lead Security Architect – Identity and Access Management (IAM)

Lead Information Security Architect

Security Architects (DV Security Clearance)

Enterprise Identity Architect - IAM Architect

SAP Security Architect

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

The Future of Cybersecurity Jobs: Careers That Don’t Exist Yet

Cybersecurity has moved from a specialist concern to a national and global priority. Once seen as an IT issue, it is now a boardroom subject, a government responsibility, and a daily reality for individuals. With the increasing reliance on digital infrastructure, cloud platforms, and artificial intelligence, the risks posed by cyber threats have never been higher. The UK’s cybersecurity sector is thriving. It is home to thousands of companies offering defence services, penetration testing, encryption solutions, and critical infrastructure protection. Demand for cybersecurity skills continues to rise, with both the public and private sector investing heavily to defend against ransomware, nation-state cyber operations, and new forms of digital crime. Yet the industry is still at the beginning of its journey. The technologies that will define the next two decades—artificial intelligence, quantum computing, extended reality, and the Internet of Things—are only just starting to reshape cybersecurity. This means that many of the most important cybersecurity jobs of the future don’t even exist today. This article explores why new roles will emerge, what they might look like, how today’s jobs will evolve, why the UK is well-positioned to lead, and how professionals can prepare.

Seasonal Hiring Peaks for Cybersecurity Jobs: The Best Months to Apply & Why

The UK's cybersecurity sector has emerged as one of the most critical and lucrative technology markets, with roles spanning from security analysts to penetration testers and chief information security officers. With cybersecurity positions commanding salaries from £28,000 for junior security analysts to £140,000+ for senior security architects, understanding when organisations actively recruit can dramatically impact your career trajectory in this essential field. Unlike traditional IT sectors, cybersecurity hiring follows distinct patterns influenced by threat landscapes, regulatory compliance cycles, and incident response requirements. The sector's unique combination of perpetual threat evolution, regulatory pressures, and skills shortages creates predictable hiring windows that strategic professionals can leverage to advance their careers in protecting Britain's digital infrastructure. This comprehensive guide explores the optimal timing for cybersecurity job applications in the UK, examining how cyber threat cycles, compliance deadlines, and government initiatives influence recruitment patterns, and why strategic timing can determine whether you join a cutting-edge security consultancy or miss the opportunity to defend against tomorrow's cyber threats.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.