Principal Engineer, Workforce, Customer & Agentic Identity
Belfast City District, Northern Ireland
Posted 3 days ago
About the role
- Define and drive technical strategy and architecture for workforce, customer, machine, and agentic identity platforms across the enterprise
- Improve customer authentication experiences while maintaining security, governance, and compliance standards
- Partner with engineering, architecture, product, and security teams to design, implement, and modernize identity solutions
- Provide technical leadership for authentication, authorization, federation, identity governance, lifecycle management, privileged access management, and access certification
- Evaluate, design, and adopt identity platforms and technologies including Ping Identity and SailPoint
- Drive Zero Trust initiatives through MFA, risk-based authentication, fine-grained authorization, identity governance, and least-privilege controls
- Define governance models and lifecycle processes for machine identities, service accounts, workload identities, and AI agents
- Establish controls for autonomous and agentic systems, including delegated authority, ownership, governance, and privileged access management
- Drive enterprise adoption of identity modernization initiatives and communicate business value, customer impact, and security outcomes
- Collaborate with digital product teams to create secure, scalable customer identity experiences
- Participate in architecture, troubleshooting, integration design, and implementation while mentoring engineering teams
- Establish engineering standards, reference architectures, and best practices for Allstate's identity roadmap and Zero Trust strategy
Requirements
- Legal right to work in the UK; Allstate is not providing sponsorship
- 5+ years of experience designing and implementing enterprise Identity and Access Management (IAM) solutions
- 5+ years of experience managing engineering teams
- Working knowledge of Ping Identity, SailPoint, or similar IAM platforms
- Strong knowledge of customer and workforce identity, federation, SSO, MFA, privileged access management, identity governance, and access certification
- Experience designing and implementing Zero Trust identity architectures, including conditional access, risk-based authentication, fine-grained authorization, and least-privilege access controls
- Experience supporting machine identities, workload identities, service accounts, certificates, secrets management, and cloud-native identity models
- Familiarity with emerging AI and agentic identity concepts, governance models, and authorization frameworks
- Ability to influence senior leaders, drive enterprise adoption, and communicate complex technical strategies across diverse stakeholder groups
- Ability to influence enterprise strategy and drive adoption of identity modernization initiatives
- Strong change leadership and stakeholder management skills
- Technical leadership experience guiding architectures, engineering standards, and best practices
- Customer-centric mindset balancing security, usability, and business outcomes
- Ability to lead through influence, navigate ambiguity, and drive enterprise-wide change without direct authority
- Experience influencing vendor roadmaps and product strategies
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related technical field is desirable
- Relevant IAM or security certifications such as CISSP, CCSP, SailPoint, Ping Identity, Microsoft Security, or equivalent are desirable
- Supervisory duties are included
Core Competencies
Demonstrates expertise in designing and implementing enterprise Identity and Access Management (IAM) solutions, with a strong focus on Zero Trust architectures and customer-centric identity experiences. Proven ability to lead engineering teams, influence enterprise strategy, and drive adoption of identity modernization initiatives while ensuring compliance and security.
Highest-signal resume keywords
- Identity And Access Management (IAM)
- Zero Trust Architecture
- Ping Identity
- SailPoint
- Privileged Access Management
ATS Optimization Keywords
Hard Skills
- Identity Governance
- Federation
- Single Sign-On (SSO)
- Multi-Factor Authentication (MFA)
- Risk-Based Authentication
- Fine-Grained Authorization
- Lifecycle Management
About this listing
Screened by Joboru
This role passed our automated spam and quality filters and was active in our feed when last checked. Joboru is an aggregator — here is how we screen listings. If anything looks off, tell us.
Similar jobs you may like
Electrical Testing and Inspection Engineer
1 month agoHays
AV Technician
1 month agoEOS IT Solutions
Project Engineer - Groundwater Engineering
1 day agoP R Marriott Drilling Ltd
Facilities Maintenance Engineer
1 day agoGXO Logistics
Gas Engineer (Commercial)
1 day agoErnest Gordon Recruitment
Site Maintenance Engineer
1 day agoStoneacre Motor Group.
EMC Test Engineer
1 day agoMorson Edge
Workshop Engineer (Pump)
1 day agoRubix
Design Engineer Electrical
1 day agoBAE Systems