Ref: #73215

Senior Linux, Automation & Identity Engineer

  • Practice Cloud & Infrastructure

  • Technologies Infrastructure & Cloud

  • Location europe, United Kingdom

  • Type Contract

Senior Linux, Automation & Identity Engineer 

We are looking for a Senior Linux, Automation & Identity Engineer to design, build, and deliver the automation, identity, and security foundations of our Linux estate. This role is central to modernising identity federation, strengthening cross‑platform integration with Active Directory, and implementing secure, automated lifecycle management for secrets and certificates.

You will collaborate closely with the Architecture Lead on identity strategy and with Platform Engineers to embed automation and infrastructure‑as‑code across the environment.

Key Responsibilities

  • Own Linux automation, configuration management, and infrastructure‑as‑code delivery.

  • Harden Linux and infrastructure platforms to meet security and compliance requirements.

  • Deploy and configure SSO and identity federation integrated with existing Active Directory.

  • Integrate Linux infrastructure with Windows/Active Directory (host enrolment, authentication, authorisation, access control).

  • Design and deliver secrets management for dynamic credentials and PKI.

  • Implement automated rotation for secrets, TLS/SSL certificates, and service credentials.

  • Extend just‑in‑time (JIT) access models to on‑prem infrastructure.

  • Automate Linux OS patching and coordinate with Windows/VM patching processes.

  • Automate certificate lifecycle management and integrate with infrastructure and security platforms.

  • Collaborate with the Architecture Lead on identity design and with Platform Engineers on IaC integration.

Required Experience

  • Strong Linux administration skills (preferably RHEL‑based): system administration, networking, troubleshooting, and hardening.

  • Hands‑on experience with Ansible, Bash, or Python for automation and configuration management.

  • Practical experience with OpenTofu / Terraform for repeatable, maintainable infrastructure provisioning.

  • Experience deploying and configuring an SSO/identity broker federated with Active Directory, including group‑to‑role mapping; ideally Kerberos‑based desktop SSO.

  • Working knowledge of Active Directory, domain controllers, DNS integration, group policies, and identity dependencies.

  • Hands‑on experience integrating Linux hosts and services with AD (SSSD, realmd, winbind, Kerberos authentication, AD‑backed sudo/access control, cross‑platform file access).

  • Experience designing and delivering secrets management for dynamic credentials and PKI, including automated rotation.

  • Experience automating certificate and credential lifecycle management (request, renewal, rotation, deployment).

  • Working knowledge of virtualisation platforms (e.g., VMware vSphere, Hyper‑V, KVM/Proxmox, OpenShift Virtualization).

Nice to Have

  • Exposure to container platforms (e.g., OpenShift).

  • Experience with Ansible automation platforms (e.g., AWX).

  • Experience with golden image tooling (e.g., Packer).

  • Experience with security compliance scanning (e.g., CIS hardening baselines).

  • Familiarity with SCIM provisioning.

Attach a resume file. Accepted file types are DOC, DOCX, PDF, HTML, and TXT.

We are uploading your application. It may take a few moments to read your resume. Please wait!