368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$82k – $171k per year (Estimated)
Location
In office (Manchester)
Seniority
Senior
Employment
Contractor
Overview
Company
Impact
Profile match
HelloKindred is a global talent and creative services provider headquartered in London, United Kingdom, founded in 2009. The company offers specialized staffing solutions for marketing, digital, and technology sectors alongside an on-demand creative studio providing design, content, and digital production services. It operates internationally with physical offices in the United Kingdom, United States, Canada, South Africa, and India, serving major corporate clients such as Accenture and Thomson Reuters.

Who is HelloKindred?

HelloKindred are specialists in staffing marketing, creative and technology roles, offering a range of talent solutions that can be delivered on-site, remotely or hybrid.

Our vision is to make work accessible and people’s lives better. We do this by disrupting traditional employment barriers - connecting ambitious talent to flexible opportunities with trusted brands.

Anticipated Contract End Date/Length: 6 months

Work Set Up: On-site, 5 days per week

Clearance Required: BPSS

Our client in the Information Technology and Services industry is looking for a Senior Identity Infrastructure Engineer to support and maintain the core identity infrastructure platforms underpinning the organisation's Identity and Access Management (IDAM) services. The successful candidate will be responsible for the administration, support, security, and continuous improvement of Active Directory, PKI, DNS, Group Policy, and authentication infrastructure, while providing L2/L3 operational support across the identity estate.

What you will do:

  • Administer and maintain enterprise Active Directory forests, domains, and domain controllers.
  • Manage Active Directory Sites and Services, replication topology, trusts, and directory services infrastructure.
  • Administer AD-integrated DNS and support enterprise authentication services.
  • Manage Group Policy architecture, including policy design, implementation, troubleshooting, and lifecycle management.
  • Support Active Directory backup, recovery, disaster recovery, and business continuity processes.
  • Monitor Active Directory platform health, performance, security, and replication.
  • Support Active Directory upgrades, migrations, consolidation projects, and infrastructure improvements.
  • Implement and maintain Active Directory security hardening standards and privileged access controls.
  • Administer and support Microsoft Active Directory Certificate Services (AD CS).
  • Manage Certificate Authorities, certificate templates, enrolment, and certificate lifecycle processes.
  • Support Offline Root CA and Issuing CA infrastructure.
  • Administer Certificate Revocation Lists (CRL), Authority Information Access (AIA), and certificate distribution services.
  • Monitor certificate compliance, renewals, revocations, and expiration management.
  • Maintain PKI operational documentation, recovery procedures, and security standards.
  • Troubleshoot cryptographic and certificate-related issues across infrastructure and security platforms.
  • Support Microsoft Entra Connect and hybrid identity infrastructure.
  • Maintain LDAP, LDAPS, Kerberos, and NTLM authentication services.
  • Support integrations between Active Directory and enterprise identity platforms, including MIM, Entra ID, Okta, and BeyondTrust.
  • Support authentication, directory, and identity infrastructure incidents through to resolution.
  • Provide L2/L3 support for identity-related incidents and service requests.
  • Troubleshoot user provisioning, synchronisation, and authentication issues.
  • Collaborate with IDAM engineers to investigate root causes and implement long-term solutions.
  • Develop and maintain PowerShell automation for identity infrastructure administration.
  • Drive service improvements, platform optimisation, and operational efficiencies.
  • Contribute to security improvement initiatives, vulnerability remediation, and infrastructure modernisation.
  • Produce and maintain technical documentation, operational procedures, and support runbooks.
  • Possess extensive hands-on experience administering enterprise Active Directory environments.
  • Demonstrate strong knowledge of Active Directory Domain Services (AD DS), Sites and Services, forest and domain administration, DNS, Group Policy, LDAP/LDAPS, Kerberos, trusts, replication, and AD backup and recovery.
  • Have experience troubleshooting complex authentication and directory service issues.
  • Possess strong experience administering Microsoft Active Directory Certificate Services (AD CS).
  • Have experience managing Certificate Authorities, certificate templates, CRL and AIA infrastructure, certificate lifecycle management, enrolment services, key recovery, and archival.
  • Possess experience supporting enterprise PKI environments.
  • Have experience administering Windows Server 2016, 2019, and/or 2022 environments.
  • Demonstrate strong PowerShell scripting and automation capabilities.
  • Possess experience with security hardening, privileged administration, high availability, disaster recovery, infrastructure monitoring, and operational support.
  • Have working knowledge of Microsoft Entra ID, Microsoft Entra Connect/Cloud Sync, Microsoft Identity Manager (MIM), Okta, and BeyondTrust.
  • Understand Identity and Access Management (IAM), Joiner-Mover-Leaver processes, identity lifecycle management, authentication and authorisation, access governance, and Role-Based Access Control (RBAC).
  • Have experience supporting hybrid identity architectures, preferably including MIM and Okta administration and integration.
  • Possess knowledge of BeyondTrust PAM or Endpoint Privilege Management.
  • Have experience with Tier 0 administration and privileged access models.
  • Demonstrate familiarity with CrowdStrike, Zscaler, and security platform integrations.
  • Possess experience supporting highly regulated or secure environments and ITIL-based operational support models.
  • Have experience supporting large-scale enterprise identity programmes.
  • Demonstrate the ability to operate independently in complex, security-focused environments and troubleshoot critical identity infrastructure issues.
  • Collaborate effectively with operational, security, engineering, and IDAM teams.
  • Meet BPSS eligibility requirements.
  • Be willing to work on-site 5 days per week from secure facilities in Manchester or Inverness.
  • Be willing to work through an umbrella company on a PAYE basis.

Candidates must be legally authorized to live and work in the country where the position is based, without requiring employer sponsorship.

HelloKindred is committed to fair, transparent, and inclusive hiring practices. We assess candidates based on skills, experience, and role-related requirements.

We appreciate your interest in this opportunity. While we review every application carefully, only candidates selected for an interview will be contacted.

HelloKindred is an equal opportunity employer. We welcome applicants of all backgrounds and do not discriminate on the basis of race, colour, religion, sex, gender identity or expression, sexual orientation, age, national origin, disability, veteran status, or any other protected characteristic under applicable law.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Manchester
$153k – $207k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Cooper
PowerShell
DevOps
Azure
Docker
Kubernetes
Windows Server
IAM
Cybersecurity
Keycloak
Microsoft Entra ID
Okta
Zero Trust
Apply
$149k – $201k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • United States
DevOps
AWS
Azure
IAM
Cybersecurity
Microsoft Entra ID
Okta
Zero Trust
Apply
$13k – $14k per year (gross) • In office • Full-Time
PowerShell
DevOps
Windows Server
Apply
$13k – $14k per year (gross) • In office • Full-Time • Moscow
PowerShell
DevOps
Windows Server
Apply
$20k – $51k per year (Estimated) • In office • Omsk
PowerShell
Python
Cybersecurity
MITRE ATT&CK
Apply
Platform Engineer 3 days ago
up to $105k per year • In office • Contractor • London
Apply
up to $41k per year • In office • Contractor • Bachelor's Degree • Johannesburg
Apply
$84k – $174k per year (Estimated) • In office • Contractor • Sheffield
PowerShell
DevOps
Azure
Azure DevOps
Bicep
CI/CD
GitHub Actions
Packer
Platform Engineering
Terraform
GitHub
Cybersecurity
Microsoft Entra ID
Apply
up to $115k per year • In office • Contractor • Sheffield
Management
Confluence
Jira
ServiceNow
Apply
up to $106k per year • In office • Contractor • London
Databases
Databricks
AI/ML
LLM
LLM Guardrails
DevOps
Azure
CI/CD
FinOps
Platform Engineering
Terraform
Apply
Remote/Hybrid • Full-Time • Glasgow • Bristol • London • Manchester • Cambridge
Design
AutoCAD
SpaceTech
QGIS
Apply
$77k – $140k per year (Estimated) • In office • Internship • PhD • Manchester
C#
C++
C#
.NET
AI/ML
Text-to-Speech
DevOps
CI/CD
Vercel
Apply
$82k – $148k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Manchester
Python
AI/ML
Text-to-Speech
DevOps
Docker
GCP
Terraform
Vercel
Apply
$88k – $199k per year (Estimated) • In office • Full-Time • Northampton • Manchester
Apply
UX Designer 4 days ago
$83k – $181k per year (Estimated) • In office • Full-Time • Manchester
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.