We tackle the most complex problems in quantitative finance, by bringing scientific clarity to financial complexity.
From our London HQ, we unite world-class researchers and engineers in an environment that values deep exploration and methodical execution - because the best ideas take time to evolve. Together we’re building a world-class platform to amplify our teams’ most powerful ideas.
Take the next step in your career.
As part of our engineering team, you’ll shape the platforms and tools that drive high-impact research - designing systems that scale, accelerate discovery and support innovation across the firm.
The role
G-Research is going through an exciting period of growth and transforming the way we run and build platforms. As part of our transformation, we are looking for a highly skilled engineer to join our expanding Security Technology team.
The Identity & Access Management (IAM) team at G-Research safeguards digital identities to ensure secure, compliant access to our technology infrastructure. Our mission is to implement cutting-edge IAM solutions that balance security with efficiency, enabling seamless access control while protecting organisational assets. By embracing automation and modern development practices, we aim to enhance productivity and foster a culture of security across the enterprise.
As an Engineer in the IAM team, you will play a pivotal role in designing and implementing solutions that enhance and scale our authentication, authorisation and user lifecycle management infrastructure. Reporting to the Head of IAM, you will collaborate with stakeholders across Technology to translate complex business requirements into technical solutions that are secure, efficient and scalable.
Key responsibilities of the role include:
- Administering, operating, and supporting an on-prem SailPoint IdentityIQ
- Designing and implementing custom IIQ functionality using BeanShell rules and Java extensions
- Maintaining and enhancing IIQ integrations with Active Directory, Azure and AWS
- Writing and maintaining automated tests in Java for custom IIQ functionality
- Performin IIQ upgrades, patching, troubleshooting and performance tuning
- Influencing IAM architecture and technical direction, and mentoring other team members
- Maintaining and extending C#/.NET services within the IAM domain, including new feature development
- Participating in on-call and overnight production support, as well as responding to and resolving IAM-related incidents
- Producing clear technical documentation and supporting audit and compliance activities
Who are we looking for?
The ideal candidate will have the following skills and experience:
- Demonstrable hands-on SailPoint IdentityIQ experience
- Strong experience customising IIQ using BeanShell and Java
- Solid understanding of Identity lifecycle management (JML), access requests and approvals, certifications and compliance controls
- Strong troubleshooting, debugging and production support skills
The following skills and experiences are beneficial, but not essential:
- Domain knowledge of IAM tooling and processes, such as JML processes, authentication, authorisation, SAML, OIDC, MFA, PAM and PKI
- Experience with directory services such as LDAP/Active Directory
- Proficiency in Linux
- Familiarity with security standards, such as ISO, CIS and NIST
- Familiarity with automation tools such as Jenkins and Ansible
- Experience with platforms such as Kubernetes, OpenStack and SaaS platforms, such as AWS and Azure
- Good knowledge of secure development practices, such as input sanitisation, container security and cryptography
- Concurrent and distributed systems design
Why join us?
- Highly competitive compensation plus annual discretionary bonus
- Lunch provided (via Just Eat for Business) and dedicated barista bar
- 30 days’ annual leave
- 9% company pension contributions
- Informal dress code and excellent work/life balance
- Comprehensive healthcare and life assurance
- Cycle-to-work scheme
- Monthly company events