Posted 02 August, 2026
IDAM Architect, Farnborough
Hackajob Ltd
Cove, ENG, GB
Full Time
Job Description
Job Description:Location: Farnborough, Hampshire, UKEmployment Type: Permanent, Full-TimeSecurity Clearance: Developed Vetting (DV) - EssentialAbout DXC Technology DXC Technology is a Fortune 500 company with over 40 years' UK presence, recently establishing its Aerospace and Defence Hub in Farnborough. We deliver secure identity, access and data management solutions enabling defence and aerospace organisations to operate securely at scale.About the Role The IDAM (Identity, Access and Data Management) Architect designs, governs and implements enterprise-scale identity and access management solutions for defence and aerospace environments. You will architect secure authentication, authorisation and identity governance frameworks, lead IDAM modernisation programmes, and ensure compliance with stringent defence security and regulatory requirements. This role demands deep expertise in identity platforms, security architecture and MOD-compliant IDAM design.Key Responsibilities IDAM Architecture & StrategyDesign enterprise-scale identity and access management architectures supporting defence operationsArchitect secure authentication, multi-factor authentication (MFA) and authorisation frameworksDesign role-based access control (RBAC), attribute-based access control (ABAC) and privilege access management (PAM) solutionsDevelop identity governance, access lifecycle management and entitlement management strategiesLead IDAM technology evaluation and vendor selection processesSecurity & ComplianceEnsure IDAM architectures comply with MOD Classification Guides, Defence Security Policy and ITAR regulationsDesign identity solutions supporting defence contractor personnel vetting (PRF) requirementsArchitect data protection and encryption strategies aligned with defence security standardsLead security risk assessments for IDAM systems and vulnerabilitiesDesign audit and logging capabilities supporting MOD compliance and forensic requirementsIDAM Modernisation & ImplementationLead design and implementation of modern IDAM platforms (AD/Azure AD, Okta, Ping, ForgeRock)Design cloud-ready and hybrid identity solutions supporting multi-cloud environmentsGuide API-driven identity architecture and microservices-based identity solutionsLead IDAM system migrations and technology modernisation programmesTechnical Leadership & GovernanceLead IDAM technical teams and provide architectural mentoringEstablish IDAM design standards, architecture patterns and operational governanceDrive technical decision-making through IDAM design reviewsDocument IDAM architecture decisions and design specificationsIntegration & OperationsDesign IDAM integration with enterprise applications, systems and cloud platformsArchitect identity federation, single sign-on (SSO) and cross-domain authenticationSupport IDAM operational readiness, performance monitoring and incident responseEstablish IDAM lifecycle management and continuous improvement processesCustomer & Stakeholder EngagementServe as technical authority for IDAM architecture discussions with customer leadershipPresent identity and access management recommendations to defence programme teamsLead IDAM design workshops and customer validation activitiesEssential Requirements Security ClearanceMust hold or be eligible to obtain DV clearance - Essential10 years continuous UK residency requiredExperience & ExpertiseMinimum 12 years' identity and access management experience with 5+ years in architecture roleProven experience designing enterprise-scale IDAM solutionsStrong background in defence, aerospace or government IDAM programmesDemonstrated expertise with modern identity platforms (Azure AD, Okta, Ping, ForgeRock)Track record of leading IDAM modernisation and technology transformation programmesTechnical KnowledgeDeep expertise in IDAM architecture patterns, methodologies and best practicesExpert-level knowledge of identity technologies including LDAP, Active Directory, OAuth, SAML and OpenID ConnectStrong understanding of Azure AD, Office 365 identity, hybrid identity and cloud-native identity solutionsProficiency in privilege access management (PAM), role/attribute-based access control (RBAC/ABAC)Knowledge of identity governance, access certification and entitlement managementExpertise in API security, service-to-service authentication and microservices identityFamiliarity with MOD security requirements, Classification Guides and defence complianceUnderstanding of cryptography, encryption and security protocolsPersonal AttributesExceptional strategic thinking with strong technical depthOutstanding communication and stakeholder engagement skillsStrong problem-solving and analytical capabilitiesProven ability to lead technical teams and influence senior stakeholdersCommitment to security and compliance excellenceDesirable Requirements Experience with defence or aerospace IDAM programmesCISSP, CISM or equivalent security certificationsAzure AD or Okta advanced certificationsExperience with identity-driven security and zero-trust architectureKnowledge of ITAR compliance and export controlsWhat We Offer Highly competitive salary and comprehensive benefits packageEnhanced pension and private medical insuranceFlexible working and professional development supportOpportunity to architect critical identity systems for major defence organisationsApplication Process & Security Vetting Existing DV clearance is essential. Applicants must have 10 years continuous UK residency.At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We're committed to fostering an inclusive environment where everyone can thrive.Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here .TPBN1_UKTJ
