Talent.com
Tesco
Workplace Technology - Systems Engineer III - Identity (Active Directory, Entra ID, PKI, Modern[...]Tesco • Welwyn Garden City, England
No longer accepting applications
Workplace Technology - Systems Engineer III - Identity (Active Directory, Entra ID, PKI, Modern[...]

Workplace Technology - Systems Engineer III - Identity (Active Directory, Entra ID, PKI, Modern[...]

Tesco • Welwyn Garden City, England
23 days ago
Job type
  • Full-time
Job description
This role sits within the workplace Identity team which is part of the Tesco Workplace Technology engineering team, part of a global engineering function delivering secure, scalable, and modern workplace solutions for Tesco colleagues. As a senior engineer and domain expert in Identity technologies, you will lead the full technology lifecycle — from strategy and design through to engineering, testing, and delivery — for the services that underpin our digital colleague experience. Strategic Leadership * Act as a senior engineer for Identity within the Workplace Technology team, setting the direction, roadmap, and architectural standards for core identity services including Active Directory, Entra ID, PKI, and modern authentication protocols. * Align identity strategy to Tesco’s broader digital workplace vision, collaborating closely with architects, product managers, security, and infrastructure teams. * Stay ahead of market trends and emerging technologies in identity and access management, advocating for their adoption where beneficial. Engineering & Delivery * Design and deliver secure, scalable identity platforms that support global business needs and enable modern digital workplace capabilities. * Engineer solutions across the identity lifecycle: concept, evaluation, prototyping, testing, production deployment, and service transition. * Implement automation, codification (IaC), and integration with CI/CD practices to drive efficiency and resilience. * Act as a senior escalation point for complex issues related to authentication, replication, certificate lifecycle, hybrid identity, and directory services. Operational Excellence * Build systems that are secure, stable, and easy to operate, with monitoring, alerting, and lifecycle planning embedded by design. * Champion remediation of legacy identity components and uplift the security and operational posture of all identity services. * Ensure knowledge is well documented and transitions smoothly into operational support with clear SLAs and handover practices. Governance & Security * Drive adoption of Zero Trust principles, secure admin tiering, modern auth standards, conditional access, and multifactor authentication. * Own the health, design, and policy of PKI infrastructure and associated services (including certificate templates, CRLs, and HSMs). * Work closely with the Security and Risk teams to ensure compliance with internal controls, regulatory obligations, and audit findings. Leadership & Influence * Represent Workplace Technology Identity Engineering across Tesco Technology and into broader cross‑functional initiatives. * Lead by example in engineering excellence, stakeholder engagement, and mentoring of less experienced engineers. * Promote a culture of simplification, technical rigour, and continuous improvement. You will need * Deep expertise in: o Active Directory: design, hardening, replication, domain controller lifecycle, GPOs, admin tiering. o Azure AD / Entra ID: hybrid identity, conditional access, MFA, identity protection, SSO, SCIM. o Public Key Infrastructure (PKI): policy, lifecycle, templates, automation, CRL/OCSP, HSMs. o Authentication protocols: OAuth2, OpenID Connect, SAML, Kerberos, NTLM, WS‑Fed. * Demonstrated ability to design and deliver identity platforms in large, complex environments. * Understanding of identity’s role in enterprise security frameworks and compliance requirements. * Proficiency with scripting and automation tools (PowerShell, Terraform, etc.). * Familiar with monitoring, backup, recovery, and DR practices for identity systems. * Ensure identity services are designed with built‑in resilience, supporting high availability, fault tolerance, and fast recovery across hybrid environments. * Contribute to and maintain Business Continuity Plans (BCPs), ensuring critical identity components are documented with clear recovery priorities. * Design and validate Disaster Recovery (DR) strategies for directory services, authentication systems, and PKI, with regular fail‑over testing and documented RTO/RPO. Whats in it for you? * Annual bonus scheme of up to 20% of base salary * Holiday starting at 25 days plus a personal day (plus Bank holidays) * Private medical insurance * 26 weeks maternity and adoption leave (after 1 year’s service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay; 4 weeks fully paid paternity leave * Free 24/7 virtual GP service, Employee Assistance Programme (EAP) for you and your family, and free access to a range of experts to support your mental wellbeing We are proud to have an inclusive culture at Tesco where everyone truly feels able to be themselves. We celebrate diversity, recognise the value and opportunity it brings, and are committed to providing a fully inclusive and accessible recruitment process. All colleagues are given the same opportunities. We are a Disability Confident Leader and provide the accessibility support you may require. #J-18808-Ljbffr
Create a job alert for this search

Workplace Technology - Systems Engineer III - Identity (Active Directory, Entra ID, PKI, Modern[...] • Welwyn Garden City, England

Similar jobs

Senior Systems Engineer - MBSE for Critical ATM Systems

LeidosHam, England, GB
Full-time

Leidos is seeking an experienced Systems Engineer in Ham, England to support ATM system development.The role involves working in an agile team to deliver high-quality solutions.Candidates should ha... Show more

 • Promoted

Cloud & Systems Reliability Engineer

Hydrogen GroupHatfield, England, GB
Temporary

Hydrogen Group is seeking a Senior Infrastructure Engineer for an initial 6 month contract in Hatfield.This role focuses on supporting a hybrid Microsoft environment, with emphasis on day-to-day op... Show more

 • Promoted

Hybrid/Remote MBSE Systems Design Engineer - RF & Radar

Energy Jobline CVLStevenage, England, United Kingdom
Remote
Temporary

World Class Defence Organisation is currently looking to recruit 2x Systems Design Engineer subcontractors on an initial 12 month contract.Overtime Rate: Hours worked over the standard 37 hours per... Show more

 • Promoted

Senior Software Engineer (Design System) (Milton Keynes, ENG, GB, MK7 6AA)

The Open UniversityFlitwick, East of England, United Kingdom
Part-time

Senior Software Engineer (Design System) (Milton Keynes, ENG, GB, MK7 6AA).Change your career, change lives.The Open University is the UKs largest university, a world leader in flexible part-time e... Show more

 • Promoted

Systems Design Engineer

Certain AdvantageStevenage, United Kingdom
Temporary

World Class Defence Organisation is currently looking to recruit 2x Systems Design Engineer.Hours worked over the standard 37 hours per week, will be paid at time and a quarter.The role can be base... Show more

 • Promoted

Systems Design Engineer: MBSE & RF Seeker (Hybrid)

Advantage Resourcing UK LtdStevenage, England, United Kingdom
Temporary

World Class Defence Organisation is currently looking to recruit 2x Systems Design Engineer subcontractors on an initial 12 month contract.Hours worked over the standard 37 hours per week will be p... Show more

 • Promoted

Google Workspace Systems Engineer

Valueseverything BarclaysWatford, England, United Kingdom
Full-time

Set up and manage Google Workspace for all staff members.Lead the organization’s migration from Microsoft Office to the Google stack, manage highly sensitive data, and establish data loss preventio... Show more

 • Promoted

Lead Systems Engineer - Defence Tech & AI/ML Innovation

Leonardo UK LtdCaddington, England, GB
Full-time

A leading defence technology company in the UK seeks a Lead Systems Engineer.This role involves defining system requirements, leading studies, and solving complex integration challenges.Additionall... Show more

 • Promoted

Systems Engineer- Design/Analysis/Integration- Defence

Positiv Cohort LtdHounslow, England, GB
Full-time

We are seeking a Systems Engineer to support defence programmes requiring deep, complex systems thinking.This is a hands-on technical role suited to someone who thrives in highly intricate environm... Show more

 • Promoted

System Engineer

Anson McCadeStevenage, England, GB
Full-time

Direct message the job poster from Anson McCade.Europe’s #1 Integrated Defence Company seeks a talented Systems Engineer to support the design and delivery of next-gen weapons and missile systems, ... Show more

 • Promoted

Senior Security Platform Engineer

NTT Global Data Centers EMEA UK ltdHemel Hempstead, Hertfordshire, United Kingdom
Full-time

The Senior Security Platform Engineer (m/f/d), is an advanced subject matter expert, responsible for facilitating problem resolution and mentoring for the overall Global Data Centers Office of Info... Show more

 • Promoted • New!

Systems Integration Project Engineer

United Cerebral Palsy of GeorgiaStevenage, England, United Kingdom
Temporary

United Cerebral Palsy of Georgia is seeking a Project Engineer for a 12-month contract based in Stevenage.The role involves supporting integration tools delivery, working with project leads, and de... Show more

 • Promoted

Systems Engineer

DefenceLuton, Bedfordshire, GB
Temporary

Considering making an application for this job Check all the details in this job description, and then click on Apply.Onsite in Luton (4-5 days p/w).Please note, this role requires SC level Securit... Show more

 • Promoted

Senior Systems Engineer II

Ultra Electronics GroupGreenford, Scotland, United Kingdom
Full-time

Powering the Future of Naval Technology.Ultra Maritime is a global leader in advanced maritime defence solutions.We operate at the forefront of innovation, delivering technologies that protect live... Show more

 • Promoted

MBSE Systems Design Engineer – RF/Signal & SysML

ARMStevenage, England, United Kingdom
Temporary

ARM is seeking a Systems Design Engineer based in Stevenage, with potential for positions in Bristol or Bolton.This 12-month contract role offers up to £80 per hour inside IR35.The ideal candidate ... Show more

 • Promoted

Principal Systems Engineer - Workplace Technology

TescoWelwyn Garden City, England, GB
Full-time

We're hiring a Principal Workplace Architect to shape the future of how more than 300,000 Tesco colleagues work across stores, offices, and distribution.This WL3, principal‑level role sits at the h... Show more

 • Promoted

Principal Systems Engineer - Workplace Technology

Tesco TechnologyWelwyn Garden City, England, GB
Full-time

We're hiring a Principal Workplace Architect to shape the future of how more than 300,000 Tesco colleagues work across stores, offices, and distribution.This WL3, principal‑level role sits at the h... Show more

 • Promoted

MBSE Systems Design Engineer – SysML & DOORS Expert

Advanced Resource ManagersStevenage, England, United Kingdom
Full-time

Based in Stevenage (Bristol or Bolton possible).Offering up to £80ph Inside IR35.Do you have experience generating functional and physical architecture?.Do you have experience with tools such as DO... Show more

 • Promoted

Principal Engineer

Corecom Consultingbedford, uk
Full-time

Principal Engineer | AI Systems & Distributed Platforms</b></p><p><b>Remote (UK) | £90,000 to £120,000 | Early-Stage AI Start-Up</b></p><p>Were partner... Show more

 • Promoted • New!

MBSE Systems Design Engineer — 12-Month Contract

Advanced Resource Managers LtdStevenage, England, United Kingdom
Temporary

Based in Stevenage (Bristol or Bolton possible).Offering up to £80ph Inside IR35.Do you have experience generating functional and physical architecture?.Do you have experience with tools such as DO... Show more