IT & Software

Principal Platform Engineer (Privileged Access Management)

Leonardo DRS

Yeovil · Somerset · United Kingdom

Overview

As a Principal Platform Engineer, you will shape secure platform design and delivery across on‑premise, hybrid, and cloud environments to support critical defence and public sector missions. You’ll act as a technical authority in your domain, drive architecture and secure-by-design solutions, and lead delivery within cross‑functional teams. You’ll mentor engineers and influence technology strategies while engaging with stakeholders to justify design decisions. This role blends hands‑on engineering with technical leadership in a fast‑moving, security‑driven environment.

Pay / Benefits
  • Time to Recharge: up to 12 flexi‑days
  • Pension scheme with up to 15% employer contribution
  • Mental health support and financial advice
  • 4,000+ online courses via Coursera and LinkedIn Learning
  • Flexible benefits such as private healthcare and gym memberships
  • Flexible working options and hybrid onsite/work‑from‑home
Responsibilities
  • Act as the technical authority on a platform engineering domain (e.g. virtualisation)
  • Lead design and implementation of secure platforms across on‑premise, hybrid, and cloud environments
  • Capture and interpret complex customer requirements to drive system design and architecture
  • Develop high‑ and low‑level designs aligned with secure‑by‑design principles
  • Own technical delivery within work packages including planning, estimation and progress reporting
  • Mentor and develop junior and senior engineers to raise technical capability
  • Contribute to technology strategies, feasibility studies and innovation projects
  • Engage with stakeholders and justify technical solutions and design decisions
Key requirements
  • Extensive technical expertise across multiple platform domains with track record of delivering secure solutions
  • Ability to balance hands‑on engineering with technical leadership and mentorship
  • Problem‑solving mindset with ability to innovate for complex challenges
  • Windows and Linux operating systems
  • Virtualisation platforms (VMware, Hyper‑V)
  • Privileged Access Management concepts and implementation (CyberArk or similar)
  • Secure credential storage, rotation, and access control models
  • Integration of PAM into enterprise platforms and services
  • Networking concepts (TCP/IP, DNS, DHCP, firewalls)
  • Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform)
  • Knowledge of cyber security controls and accreditation requirements
  • Experience across the systems engineering lifecycle
  • Design and implementation of privileged access models across complex systems
  • Delivery within highly controlled / secure environments (e.g. air‑gapped, defence)
  • Problem solving
  • Mentorship and coaching
  • Stakeholder communication
  • Cloud platforms (AWS, Azure) – desirable
  • Infrastructure as Code – Terraform, Ansible – desirable
  • Active Directory, PKI, monitoring, SIEM – desirable

Reference: WJ-747_30161647

Apply now

Continue on the employer's official application - the same link they use for every candidate.

More jobs

Find more on GigBlows

This role is listed on GigBlows for discovery and search. Hiring decisions and applications are handled by the employer or their chosen application system.