If you need support in completing the application or if you require a different format of this document, please get in touch with at UKI.recruitment@tcs.com with the subject line: “Application Support Request”.
Role: Identity Security Lead
Job Type: Permanent
Location: Dublin (2 days per week in the office and monthly travel to Letterkenny, Donegal)
Careers at TCS: It means more
TCS is a purpose-led transformation company, built on belief. We do not just help businesses to transform through technology. We support them in making a meaningful difference to the people and communities they serve - our clients include some of the biggest brands in the UK and worldwide. For you, it means more to make an impact that matters, through challenging projects which demand ambitious innovation and thought leadership.
Gain access to endless learning opportunities.
Fast track your growth with diverse career opportunities internally.
Grow your career, while being exposed to new technologies.
The Role
The Identity Security Lead is accountable for the end‑to‑end ownership of identity security across the organisation. This includes the strategy, design, governance, and effectiveness of identity platforms and controls, with a strong focus on Microsoft Entra ID and end‑to‑end identity lifecycle management.
The role provides security architecture assurance for identity‑related designs to ensure they align with security standards, Zero Trust principles, organisational risk appetite, and regulatory requirements. The Identity Security Lead also drives continuous improvement of identity security posture, reducing identity‑related risk, strengthening access governance, and responding to emerging threats within the identity estate. The role works closely with platform, infrastructure, application, and risk teams to embed identity security by design across the enterprise.
Key Responsibilities
Own and govern identity security end to end, including Entra ID, authentication, authorisation, privileged access, and identity lifecycle processes across workforce, service, and partner identities.
Provide identity security architecture assurance for new and changed solutions, ensuring alignment to Zero Trust, least‑privilege access, and organisational security standards.
Own identity lifecycle management, including Joiner / Mover / Leaver (JML) processes, role management, entitlement provisioning, and de‑provisioning to ensure timely and secure access.
Define and maintain identity security posture and governance, including policies, standards, access models, and control assurance across identity platforms.
Lead privileged access management (PAM) and strong authentication controls, ensuring effective protection of administrative, sensitive, and high‑risk access paths.
Drive continuous improvement of identity security controls, reducing standing privilege, improving automation, eliminating access debt, and strengthening resilience against identity‑based attacks.
Ensure effective monitoring and detection of identity‑related risks, integrating identity telemetry (sign‑in logs, audit logs, risk signals) into SIEM/SOAR and defining actionable detection use cases.
Support identity‑related security incidents, leading containment and remediation activities, conducting root cause analysis, and driving post‑incident improvements.
Govern identity integrations with third parties and suppliers, ensuring secure federation, access governance, and compliance with organisational and regulatory requirements.
Your Profile
Essential skills/knowledge/experience
Extensive experience in cybersecurity or identity security, with at least 4+ years in a senior or lead role focused on enterprise identity platforms and access governance.
Senior identity security professional with strong end‑to‑end ownership of identity controls in complex, regulated enterprise environments.
Strong expertise in Microsoft Entra ID, including authentication methods, Conditional Access, identity protection, access reviews, and lifecycle governance.
Proven experience designing and assuring identity security architectures, aligned to Zero Trust principles and organisational risk appetite.
Deep understanding of identity lifecycle management, including JML processes, role‑based and entitlement‑based access models, and access certification.
Operationally focused leader who drives continuous improvement, reduces identity‑related risk, and improves control effectiveness through automation and standardisation.
Strong incident response and problem‑solving capability, acting as escalation lead for identity‑related security incidents and embedding lessons learned into identity controls.
Effective stakeholder and supplier manager, comfortable engaging application teams, platform teams, architecture boards, and risk/compliance stakeholders.
Relevant identity and security certifications (e.g. Microsoft Certified: Identity and Access Administrator Associate, Microsoft Certified: Security Identity and Access Administrator, CISSP, SC‑300).
Experience with Identity Governance and Administration (IGA) capabilities, including access reviews, entitlement management, and role design.
Strong knowledge of modern authentication and access models, including MFA, passwordless, risk‑based access, and adaptive Conditional Access policies.
Experience securing hybrid identity environments, including Entra ID integrated with on‑prem Active Directory and cloud applications.
Practical understanding of Privileged Access Management (PAM) and just‑in‑time / just‑enough access approaches.
Experience with identity security monitoring and investigation, including sign‑in analysis, identity threat detection, and response automation.
Knowledge of identity governance, risk, and compliance, including audit support, control assurance, and regulatory frameworks.
Exposure to third‑party identity federation, B2B/B2C identity scenarios, and shared responsibility models.
TCS is consistently voted a Top Employer in the UK and globally. Our competitive salary packages feature pension, health care, life assurance, laptop and access to extensive training resources and discounts within the larger Tata network.
We offer health & wellness initiatives and sports events; we are the proud sponsor of the London Marathon and partner with our local communities in Ireland.
Diversity, Inclusion and Wellbeing
Tata Consultancy Services UK&I is committed to meeting the accessibility needs of all individuals in accordance with the Ireland Employment Equality Acts 1998-2011 (as amended) and the Equal Status Acts 2000-2012 (as amended).
We welcome and embrace diversity in race, nationality, ethnicity, disability, neurodiversity, gender identity, age, physical ability, gender reassignment, sexual orientation. We are a disability inclusive employer and encourage disabled people to apply for this role.
As a Disability Confident Employer, we offer an interview to applicants with disabilities or long‑term conditions who meet the minimum criteria for the role. Please email us at UKI.recruitment@tcs.com if you would like to opt in.
If you are an applicant who needs any adjustments to the application process or interview, please contact us at UKI.recruitment@tcs.com with the subject line: “Adjustment Request” or email jennifer.long@tcs.com to request an adjustment. We welcome requests prior to you completing the application and at any stage of the recruitment process.
Beware of Fraudulent offers
This is to notify you that TCS does not ask for any sort of payment or security deposit from candidates at any stage of the recruitment process. The firm never sends out job offers from free internet email services like Gmail, Yahoo Mail, and so on. TCS has not authorised any third‑party company to collect money on their behalf. As a vigilant job seeker, beware of fraudulent recruitment activity and protect your interests! You can write to UKI.recruitment@tcs.com to report any fraudulent activity.
Due to the high volume of applications, we will be unable to contact each applicant individually on the status of their application. If you have not received a direct response within 30 days, then it should be deemed unsuccessful on this occasion.
Join us and do more of what matters. Apply online now
#J-18808-Ljbffr