SME Engineer - Identity & Privilege Management
Welcome to Haleon. We’re a purpose-driven, world-class consumer company putting everyday health in the hands of millions. In just three years since our launch, we’ve grown, evolved and are now entering an exciting new chapter – one filled with bold ambitions and enormous opportunity.
Our trusted portfolio of brands – including Sensodyne®, Panadol®, Advil®, Voltaren®, Theraflu®, Otrivin®, and Centrum® – lead in resilient and growing categories. What sets us apart is our unique blend of deep human understanding and trusted science.
Now it’s time to fully realise the full potential of our business and our people. We do this through our Win as One strategy. It puts our purpose – to deliver better everyday health with humanity – at the heart of everything we do. It unites us, inspires us, and challenges us to be better every day, driven by our agile, performance-focused culture.
Role Summary
The SME Engineer - Identity & Privilege Management is a senior technical engineering role responsible for the expert design, implementation, optimization, and ongoing support of the organization’s identity and privilege management solutions.
This position provides deep technical expertise to ensure the effective delivery, integration, and BAU operation of identity governance, privileged access management, MFA, and SSO capabilities using SailPoint, CyberArk, Entra ID, Active Directory, and related technologies.
The role reports to the Identity and Privilege Management Product Manager and works closely with architecture and engineering teams to translate solution designs into robust, secure, and maintainable systems.
Key Responsibilities
• Act as the subject matter expert for the design, build, configuration, integration, and optimisation of identity and privilege management solutions, including SailPoint, CyberArk, Entra ID, Active Directory, MFA, and SSO.
• Lead the technical implementation and deployment of new identity and privilege management capabilities and enhancements.
• Provide expert engineering support for the day-to-day BAU operations, maintenance, troubleshooting, and performance tuning of identity and privilege management platforms.
• Collaborate with the Identity and Privilege Management Product Manager, Solution Architects, and delivery teams to ensure solutions are implemented effectively and meet business and security requirements.
• Develop and maintain technical standards, configuration baselines, automation scripts, and operational procedures for identity and privilege management systems.
• Lead vulnerability remediation, patching, and security hardening activities for identity and privilege management platforms.
• Support incident response and problem management activities related to identity and privilege systems, including root cause analysis and permanent fixes.
• Mentor and provide technical guidance to junior engineers and team members on identity and privilege management technologies.
• Monitor system performance, availability, and capacity, and drive continuous improvement and automation initiatives.
• Contribute to the evaluation and selection of new tools or enhancements within the identity and privilege management domain.
Your Profile
Required qualifications:
• Bachelor’s degree or equivalent relevant work experience
• 5+ years of professional experience in Identity and Privilege Management engineering
• Engineering and implementation experience, including configuration, integration, automation, and troubleshooting of identity and privilege management solutions
• Expertise with SailPoint, CyberArk, Microsoft Entra ID, Active Directory, MFA, SSO, and related identity technologies
• Experience in identity governance, privileged access workflows, access certification, and automation
• Experience implementing and supporting identity and privilege management solutions in large-scale, hybrid, or multi-cloud environments
• Problem-solving and analytical skills with a focus on operational stability and securit
• Ability to translate solution designs into practical, maintainable engineering deliverables
• Ability to collaborate effectively with technical teams and stakeholders.
• Knowledge-sharing and mentoring capabilities
Preferred Qualifications:
• Experience with scripting and automation technologies such as PowerShell, Python, and REST APIs
• Knowledge of relevant regulations and standards, including GDPR, NIS2, and ISO 27001
• Professional certifications such as CISSP, CISM, or equivalent
• Understanding of how identity and privilege management supports cybersecurity risk reduction
• Up-to-date knowledge of current and emerging identity-based threats and defensive technologies
Why Haleon?
None of us should ever feel like we’re standing still. At Haleon, we want you to feel supported, valued, and always progressing. Improving everyday health takes dedication, energy, and effort — so we reward your contribution with a benefits package that includes:
• Contract of employment
• Annual bonus that reflects performance
• Hybrid@Haleon our philosophy to hybrid work (2 days onsite per week)
• Private medical package (Medicover) with additional preventive healthcare services for employees and their eligible
• Multisport card or points on the Multicafeteria Benefits account
• Health and wellbeing programmes that take care of you physically and mentally
• Pension plan membership and savings programme (PPE)
• Personalized learning paths and access to diverse development tools to support your professional growth.
• Generali Life insurance
• Supportive community and integration events
• Family benefits (extra parental leave, caregiver’s policy)
• Free car and bike parking
#Li-hybrid
PLN 235 878,00 - PLN 324 331,70
The salary range for this position is indicative and provided as a guide. The final offer may vary depending on factors including relevant experience, skills, qualifications, and internal equity considerations. Further details regarding the total reward and benefits package will be shared during the recruitment process. Salary ranges may vary by location in line with local market conditions and applicable pay transparency regulations.
Compensation information is shared for the primary location of this role. Where the position is advertised with additional locations the compensation range will be discussed during the recruiting process.
Job Posting End Date
2026-08-30
Equal Opportunities
Haleon are committed to mobilising our purpose in a way that represents the diverse consumers and communities who rely on our brands every day. It guides us in creating an inclusive culture, where different backgrounds and views are valued and respected – all in support of understanding and best serving the needs of our consumers and unleashing the full potential of our people. It’s important to us that Haleon is a place where all our employees feel they truly belong.
During the application process, we may ask you to share some personal information, which is entirely voluntary. This information ensures we meet certain regulatory and reporting obligations and supports the development, refinement, and execution of our inclusion and belonging programmes that are open to all Haleon employees.
The personal information you provide will be kept confidential, used only for legitimate business purposes, and will never be used in making any employment decisions, including hiring decisions.
Adjustment or Accommodations Request
If you require a reasonable adjustment or accommodation or other assistance to apply for a job at Haleon at any stage of the application process, please let your recruiter know by providing them with a description of specific adjustments you are requesting. We’ll provide all reasonable adjustments to support you throughout the recruitment process and treat all information you provide us in confidence.
Note to candidates
The Haleon recruitment team will contact you using a Haleon email account (@haleon.com). If you are not sure whether the email you received is from Haleon, please get in touch.