Principal Platform Engineer (Privileged Access Management)
Leonardo DRS
As a Principal Platform Engineer, you will shape secure platform design and delivery across on‑premise, hybrid, and cloud environments to support critical defence and public sector missions. You’ll act as a technical authority in your domain, drive architecture and secure-by-design solutions, and lead delivery within cross‑functional teams. You’ll mentor engineers and influence technology strategies while engaging with stakeholders to justify design decisions. This role blends hands‑on engineering with technical leadership in a fast‑moving, security‑driven environment.
Pay / Benefits- Time to Recharge: up to 12 flexi‑days
- Pension scheme with up to 15% employer contribution
- Mental health support and financial advice
- 4,000+ online courses via Coursera and LinkedIn Learning
- Flexible benefits such as private healthcare and gym memberships
- Flexible working options and hybrid onsite/work‑from‑home
- Act as the technical authority on a platform engineering domain (e.g. virtualisation)
- Lead design and implementation of secure platforms across on‑premise, hybrid, and cloud environments
- Capture and interpret complex customer requirements to drive system design and architecture
- Develop high‑ and low‑level designs aligned with secure‑by‑design principles
- Own technical delivery within work packages including planning, estimation and progress reporting
- Mentor and develop junior and senior engineers to raise technical capability
- Contribute to technology strategies, feasibility studies and innovation projects
- Engage with stakeholders and justify technical solutions and design decisions
- Extensive technical expertise across multiple platform domains with track record of delivering secure solutions
- Ability to balance hands‑on engineering with technical leadership and mentorship
- Problem‑solving mindset with ability to innovate for complex challenges
- Windows and Linux operating systems
- Virtualisation platforms (VMware, Hyper‑V)
- Privileged Access Management concepts and implementation (CyberArk or similar)
- Secure credential storage, rotation, and access control models
- Integration of PAM into enterprise platforms and services
- Networking concepts (TCP/IP, DNS, DHCP, firewalls)
- Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform)
- Knowledge of cyber security controls and accreditation requirements
- Experience across the systems engineering lifecycle
- Design and implementation of privileged access models across complex systems
- Delivery within highly controlled / secure environments (e.g. air‑gapped, defence)
- Problem solving
- Mentorship and coaching
- Stakeholder communication
- Cloud platforms (AWS, Azure) – desirable
- Infrastructure as Code – Terraform, Ansible – desirable
- Active Directory, PKI, monitoring, SIEM – desirable
Reference: WJ-747_30161647