# Lead Engineer – Identity & Access Security at Dyson

AI Level 1, AI centrality 10 out of 100. Malaysia - Kuala Lumpur Office.

## Details

- Company: [Dyson](https://jobsbylevel.com/companies/dyson)
- AI level: AI Level 1 (score 10 out of 100)
- Location: Malaysia - Kuala Lumpur Office
- Posted: October 7, 2026
- Apply: https://jobsbylevel.com/go/ce1e9318-23ee-4a1b-bd67-0535688adc5a

## Description

Role Purpose As the Identity and Access Security Engineer, you are accountable for designing, engineering, and operating robust identity security controls that protect workforce identities, endpoint devices, and corporate access pathways across the enterprise. Operating as a technical specialist, you will enforce strong authentication, zero-trust access, and identity governance controls. By engineering seamless protection mechanisms, managing privileged accounts, and securing Joiner, Mover, and Leaver processes, you will mitigate identity threats and continuously harden authentication pathways against compromise. In this role, you will lead and manage the following domains: Conditional Access and Authentication: Designing and managing Conditional Access policies, MFA, and passwordless capabilities. Privileged Identity Management (PIM): Engineering and governing high-privilege access workflows and just-in-time access controls. Identity Lifecycle and Governance: Implementing secure Joiner, Mover, and Leaver processes and identity lifecycle frameworks. Identity Threat Monitoring and Remediation: Monitoring identity-centric attack vectors and rapidly remediating active authentication weaknesses. Identity Improvement Initiatives: Leading technical projects aimed at modernizing and securing federation and single sign-on (SSO) pathways. Key Skills and Qualifications - Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field (or equivalent practical experience). - A minimum of 5 to 7 years of hands-on cybersecurity experience specializing in Identity and Access Management (IAM) within enterprise environments. - Deep hands-on experience designing and operating enterprise identity controls, federation protocols, and directory services. - Industry certifications such as Microsoft Certified: Identity and Access Administrator Associate (SC-300), CISSP, or CISM are highly desirable. Security Expertise and Architecture In-depth technical knowledge of modern identity protocols (SAML 2.0, OAuth 2.0, OIDC, FIDO2) and threat vectors targeting identities (password spraying, token theft, phishing-resistant MFA bypass). Tooling and Technical Proficiency Hands-on engineering expertise in Entra ID (Azure AD), Privileged Identity Management (PIM), Conditional Access, Entra ID Governance, SSO, Federation, and MFA controls. Risk Management and Prioritisation Ability to identify identity exposure risks, prioritize identity security controls based on privilege and threat context, and minimize identity attack surfaces. Governance, Process and Control Design Experience designing automated lifecycle management workflows (Joiner, Mover, Leaver) and establishing granular access control governance frameworks. Service Delivery and Operational Management Proven track record of managing identity control platforms, meeting operational SLAs, and executing seamless tenant-wide identity migrations. Data Analysis, Reporting and Insight Ability to extract insights from authentication logs and identity risk scores to visualize identity posture, sign-in risks, and policy enforcement effectiveness. Stakeholder Management and Influence Strong communication skills to collaborate with infrastructure, HR, and business applications teams to embed secure identity practices without hindering productivity. Threat Intelligence Integration Ability to incorporate real-time identity risk signals and CTI feeds into dynamic, risk-based authentication and access policies. Leadership and Influence Capability to drive identity security outcomes across technical groups through influence, clear technical guidance, and collaborative problem-solving. Continuous Improvement and Automation A strong focus on automation using PowerShell, Graph API, or SCIM provisioning to eliminate manual access assignments and reduce operational drift. Key Accountabilities and Success Measures Conditional Access and Policy Engineering Accountability: Engineer, maintain,

The description is cut here. Read the full offer: https://jobsbylevel.com/jobs/lead-engineer-identity-access-security-at-dyson-3e1e11

Source: https://jobsbylevel.com/jobs/lead-engineer-identity-access-security-at-dyson-3e1e11

## Cite this page

Level. https://jobsbylevel.com/jobs/lead-engineer-identity-access-security-at-dyson-3e1e11.

Get job alerts: https://jobsbylevel.com/newsletter
