This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a Senior Technical IAM Analyst (L5) who operates with strong independence, technical depth, and risk awareness. This role is responsible not only for executing IAM processes, but for shaping, strengthening, and scaling them. You will take ownership of complex IAM challenges across governance, engineering integration, and compliance, ensuring our controls are not only effective but demonstrably audit-ready. You will partner closely with Security, Engineering, GRC, IT, and business stakeholders to design sustainable, scalable access solutions aligned to least privilege and regulatory obligations. This role requires someone who can think strategically while delivering tactically - balancing risk, control effectiveness, operational efficiency, and business enablement.
Job Responsibility:
IAM Governance & Control Ownership: Own and continuously improve Joiners/Movers/Leavers (JML) processes, ensuring completeness, accuracy, and timeliness of provisioning and deprovisioning
Lead and enhance User Access Reviews (UARs), ensuring SOX compliance, audit defensibility, and measurable control effectiveness
Identify control weaknesses, segregation of duties (SoD) conflicts, and systemic risk patterns - and implement corrective improvements
Act as a control owner or delegate for key IAM SOX controls, partnering with Internal Audit and GRC
Drive measurable reduction in manual intervention, control exceptions, and audit findings
Advanced Technical Execution: Design and implement IAM configurations across tools such as Okta, Azure AD, SailPoint, Conductor1, AWS IAM, or equivalent
Analyse and remediate complex access structures, including nested groups, 1-to-many mappings, and over-provisioned access
Interpret and influence infrastructure-as-code (Terraform, YAML, JSON) and workflow automations affecting identity governance
Collaborate with engineering teams to embed IAM controls into application architecture and CI/CD pipelines
Use data analytics to validate access models, detect anomalies, and assess risk exposure
Complex Problem Solving & Strategic Contribution: Break down ambiguous or cross-functional IAM issues into structured, executable plans
Evaluate tactical vs strategic solutions, recommending the right approach based on risk, scale, and long-term maintainability
Lead remediation efforts for systemic access risks or audit findings
Proactively identify scalability gaps in tooling, process, or governance frameworks
Contribute to IAM roadmap initiatives and support future-state access models (RBAC/ABAC evolution)
Requirements:
High Ownership: Drives initiatives independently with minimal oversight
Risk-Oriented Thinking: Understands control design principles, not just process execution
Structured Problem Solver: Breaks complex systems into logical components and identifies root causes
Audit-Ready Mindset: Designs processes with evidence, traceability, and defensibility in mind
Influential Communicator: Engages engineering and business stakeholders confidently and credibly
Continuous Improver: Seeks efficiency, automation, and simplification at scale
Strong hands-on experience in IAM governance and administration in a complex environment
Deep understanding of: Joiners / Movers / Leavers lifecycle controls
User Access Reviews and certification models
Segregation of Duties (SoD)
RBAC and/or ABAC models
Least privilege enforcement
Demonstrated experience supporting SOX audits, including evidence preparation, walkthroughs, and remediation
Experience analysing control design for completeness and accuracy
Proven ability to manage complex access models (multi-app group mappings, cloud access, privileged roles)
Strong analytical and data skills (Excel, SQL, dashboards, scripting preferred)
Ability to read and reason through IAM-related code or automation logic
Nice to have:
Experience working in engineering-led, high-growth organisations
Exposure to cloud-native and just-in-time (JIT) access models
Experience designing or improving role models at scale
Background in risk management, compliance, or security governance
What we offer:
Benefits differ by country, but we offer many benefits in areas including healthcare, well-being, parental leave, pensions, and generous annual leave allowances, including time off to support a charitable cause of your choice
A competitive and comprehensive compensation and benefits package
Up to 5% matched pension contributions
Some roles may be eligible for share awards
Free Deliveroo Plus: free delivery and access to special offers
Team lunches from the best local restaurants
25 days annual leave plus bank holidays, increasing with length of time spent working at Deliveroo
One day of paid leave per year to volunteer with a registered charity
Funded single cover healthcare on our core plan, with the option to add family members at own cost
Access to wellbeing apps such as LesMills+, Strava, Headspace, Yogaia via GymPass
Discounted dental insurance and a range of other flexible benefits, such as critical illness cover, partner life cover, travel insurance, health assessments
Life assurance
Maternity, paternity and maternity and shared parental leave, eligible from day one of employment
Excellent kit to enable working from home and a parent-friendly working culture
Access to free mortgage advice
Cycle to Work Scheme or Season Ticket Loans, depending how you wish to travel
Excellent learning and development opportunities and access to RooLearn, our learning platform, packed with high-quality training and content
Regular Employee Resource Group (ERG) led social events – examples include dinners, dance lessons and in-office yoga sessions