Senior Linux, Automation & Identity Engineer

Senior Linux, Automation & Identity Engineer

Posted 2 days ago by Next Ventures Ltd

Negotiable
Undetermined
Undetermined
Europe, UK

Summary: The Senior Linux, Automation & Identity Engineer role focuses on designing, building, and delivering automation, identity, and security foundations for the Linux environment. This position is crucial for modernizing identity federation and enhancing integration with Active Directory while implementing secure lifecycle management for secrets and certificates. Collaboration with the Architecture Lead and Platform Engineers is essential for embedding automation and infrastructure-as-code practices. The role demands strong Linux administration skills and hands-on experience with automation tools.

Key Responsibilities:

  • Own Linux automation, configuration management, and infrastructure-as-code delivery.
  • Harden Linux and infrastructure platforms to meet security and compliance requirements.
  • Deploy and configure SSO and identity federation integrated with existing Active Directory.
  • Integrate Linux infrastructure with Windows/Active Directory (host enrolment, authentication, authorisation, access control).
  • Design and deliver secrets management for dynamic credentials and PKI.
  • Implement automated rotation for secrets, TLS/SSL certificates, and service credentials.
  • Extend just-in-time (JIT) access models to on-prem infrastructure.
  • Automate Linux OS patching and coordinate with Windows/VM patching processes.
  • Automate certificate lifecycle management and integrate with infrastructure and security platforms.
  • Collaborate with the Architecture Lead on identity design and with Platform Engineers on IaC integration.

Key Skills:

  • Strong Linux administration skills (preferably RHEL-based): system administration, networking, troubleshooting, and hardening.
  • Hands-on experience with Ansible, Bash, or Python for automation and configuration management.
  • Practical experience with OpenTofu/Terraform for repeatable, maintainable infrastructure provisioning.
  • Experience deploying and configuring an SSO/identity broker federated with Active Directory, including group-to-role mapping; ideally Kerberos-based desktop SSO.
  • Working knowledge of Active Directory, domain controllers, DNS integration, group policies, and identity dependencies.
  • Hands-on experience integrating Linux hosts and services with AD (SSSD, realmd, winbind, Kerberos authentication, AD-backed sudo/access control, cross-platform file access).
  • Experience designing and delivering secrets management for dynamic credentials and PKI, including automated rotation.
  • Experience automating certificate and credential lifecycle management (request, renewal, rotation, deployment).
  • Working knowledge of virtualisation platforms (eg, VMware vSphere, Hyper-V, KVM/Proxmox, OpenShift Virtualization).

Salary (Rate): undetermined

City: undetermined

Country: UK

Working Arrangements: undetermined

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Senior Linux, Automation & Identity Engineer

We are looking for a Senior Linux, Automation & Identity Engineer to design, build, and deliver the automation, identity, and security foundations of our Linux estate. This role is central to modernising identity federation, strengthening cross-platform integration with Active Directory, and implementing secure, automated lifecycle management for secrets and certificates.

You will collaborate closely with the Architecture Lead on identity strategy and with Platform Engineers to embed automation and infrastructure-as-code across the environment.

Key Responsibilities
  • Own Linux automation, configuration management, and infrastructure-as-code delivery.

  • Harden Linux and infrastructure platforms to meet security and compliance requirements.

  • Deploy and configure SSO and identity federation integrated with existing Active Directory.

  • Integrate Linux infrastructure with Windows/Active Directory (host enrolment, authentication, authorisation, access control).

  • Design and deliver secrets management for dynamic credentials and PKI.

  • Implement automated rotation for secrets, TLS/SSL certificates, and service credentials.

  • Extend just-in-time (JIT) access models to on-prem infrastructure.

  • Automate Linux OS patching and coordinate with Windows/VM patching processes.

  • Automate certificate lifecycle management and integrate with infrastructure and security platforms.

  • Collaborate with the Architecture Lead on identity design and with Platform Engineers on IaC integration.

Required Experience
  • Strong Linux administration skills (preferably RHEL-based): system administration, networking, troubleshooting, and hardening.

  • Hands-on experience with Ansible, Bash, or Python for automation and configuration management.

  • Practical experience with OpenTofu/Terraform for repeatable, maintainable infrastructure provisioning.

  • Experience deploying and configuring an SSO/identity broker federated with Active Directory, including group-to-role mapping; ideally Kerberos-based desktop SSO.

  • Working knowledge of Active Directory, domain controllers, DNS integration, group policies, and identity dependencies.

  • Hands-on experience integrating Linux hosts and services with AD (SSSD, realmd, winbind, Kerberos authentication, AD-backed sudo/access control, cross-platform file access).

  • Experience designing and delivering secrets management for dynamic credentials and PKI, including automated rotation.

  • Experience automating certificate and credential lifecycle management (request, renewal, rotation, deployment).

  • Working knowledge of virtualisation platforms (eg, VMware vSphere, Hyper-V, KVM/Proxmox, OpenShift Virtualization).

Nice to Have
  • Exposure to container platforms (eg, OpenShift).

  • Experience with Ansible automation platforms (eg, AWX).

  • Experience with golden image tooling (eg, Packer).

  • Experience with security compliance scanning (eg, CIS hardening baselines).

  • Familiarity with SCIM provisioning.

The post Senior Linux, Automation & Identity Engineer appeared first on Next Ventures.