Why Deliveroo
Our mission is to transform the way you shop and eat, bringing the neighbourhood to your door by connecting consumers, restaurants, shops and riders. We are transforming the way the world eats and shops by making access to food and products more convenient and enjoyable. We give people the opportunity to buy what they want, as they want it, when and where they want it.
We are a technology-driven company at the forefront of the most rapidly expanding industry in the world. We are still a small team, making a very large impact, looking to answer some of the most interesting questions out there. We move fast, value autonomy and ownership, and we are always looking for new ideas.
About the role
We are seeking a Senior Technical IAM Analyst (L5) who operates with strong independence, technical depth, and risk awareness. This role is responsible not only for executing IAM processes, but for shaping, strengthening, and scaling them.
You will take ownership of complex IAM challenges across governance, engineering integration, and compliance, ensuring our controls are not only effective but demonstrably audit-ready. You will partner closely with Security, Engineering, GRC, IT, and business stakeholders to design sustainable, scalable access solutions aligned to least privilege and regulatory obligations.
This role requires someone who can think strategically while delivering tactically - balancing risk, control effectiveness, operational efficiency, and business enablement.
What you'll be doing :
IAM Governance & Control Ownership
Own and continuously improve Joiners/Movers/Leavers (JML) processes, ensuring completeness, accuracy, and timeliness of provisioning and deprovisioning.
Lead and enhance User Access Reviews (UARs), ensuring SOX compliance, audit defensibility, and measurable control effectiveness.
Identify control weaknesses, segregation of duties (SoD) conflicts, and systemic risk patterns - and implement corrective improvements.
Act as a control owner or delegate for key IAM SOX controls, partnering with Internal Audit and GRC.
Drive measurable reduction in manual intervention, control exceptions, and audit findings.
Advanced Technical Execution
Design and implement IAM configurations across tools such as Okta, Azure AD, SailPoint, Conductor1, AWS IAM, or equivalent.
Analyse and remediate complex access structures, including nested groups, 1-to-many mappings, and over-provisioned access.
Interpret and influence infrastructure-as-code (Terraform, YAML, JSON) and workflow automations affecting identity governance.
Collaborate with engineering teams to embed IAM controls into application architecture and CI/CD pipelines.
Use data analytics to validate access models, detect anomalies, and assess risk exposure.
Complex Problem Solving & Strategic Contribution
Break down ambiguous or cross-functional IAM issues into structured, executable plans.
Evaluate tactical vs strategic solutions, recommending the right approach based on risk, scale, and long-term maintainability.
Lead remediation efforts for systemic access risks or audit findings.
Proactively identify scalability gaps in tooling, process, or governance frameworks.
Contribute to IAM roadmap initiatives and support future-state access models (RBAC/ABAC evolution).
Requirements:
High Ownership: Drives initiatives independently with minimal oversight.
Risk-Oriented Thinking: Understands control design principles, not just process execution.
Structured Problem Solver: Breaks complex systems into logical components and identifies root causes.
Audit-Ready Mindset: Designs processes with evidence, traceability, and defensibility in mind.
Influential Communicator: Engages engineering and business stakeholders confidently and credibly.
Continuous Improver: Seeks efficiency, automation, and simplification at scale.
Strong hands-on experience in IAM governance and administration in a complex environment.
Deep understanding of:
Joiners / Movers / Leavers lifecycle controls
User Access Reviews and certification models
Segregation of Duties (SoD)
RBAC and/or ABAC models
Least privilege enforcement
Demonstrated experience supporting SOX audits, including evidence preparation, walkthroughs, and remediation.
Experience analysing control design for completeness and accuracy.
Proven ability to manage complex access models (multi-app group mappings, cloud access, privileged roles).
Strong analytical and data skills (Excel, SQL, dashboards, scripting preferred).
Ability to read and reason through IAM-related code or automation logic.
Nice to have :
Experience working in engineering-led, high-growth organisations.
Exposure to cloud-native and just-in-time (JIT) access models.
Experience designing or improving role models at scale.
Background in risk management, compliance, or security governance.
Workplace & Benefits
At Deliveroo we know that people are the heart of the business and we prioritise their welfare. Benefits differ by country, but we offer many benefits in areas including healthcare, well-being, parental leave, pensions, and generous annual leave allowances, including time off to support a charitable cause of your choice. Benefits are country-specific, please ask your recruiter for more information.
Diversity
At Deliveroo, we believe a great workplace is one that represents the world we live in and how beautifully diverse it can be. That means we have no judgement when it comes to any one of the things that make you who you are - your gender, race, sexuality, religion or a secret aversion to coriander. All you need is a passion for (most) food and a desire to be part of one of the fastest-growing businesses in a rapidly growing industry.
We are committed to diversity, equity and inclusion in all aspects of our hiring process. We recognise that some candidates may require adjustments to apply for a position or fairly participate in the interview process. If you require any adjustments, please don't hesitate to let us know. We will make every effort to provide the necessary adjustments to ensure you have an equitable opportunity to succeed.
Top Skills
Deliveroo London, England Office
The River Building, Level 1, Cannon Bridge House, 1 Cousin Lane, London, United Kingdom, EC4R 3TE



