Lead Platform Product Owner (Identity) - Bristol Regional Centre - 3 Glass Wharf
3 days ago
Bristol
About the job Job summary Discover a career in your hands at HMRC. Whether you're seeking purpose, growth, or a workplace that gives you a true sense of belonging, hear from some of our employees as they share their story about what it's really like to work at HMRC. Visit our YouTube channel to watch the full series and come and discover your potential. HMRC has been a major adopter of cloud technology for over a decade. We are now entering the next phase of that journey-focused on unlocking greater value from Identity capabilities and adopting a single Identity approach that supports HMRC to build resilient, modern services at scale for millions of people across the UK. You will help change how HMRC builds and run services We are seeking an exceptional Lead Platform Product Owner (Identity) within Enterprise Cloud Services (ECS), part of the Chief Digital & Information Group (CDIO). This is a senior, organisation wide leadership role shaping one of the largest and most complex Cloud Platform and Entra ID estates in the UK public sector. You will own a core Identity platform used by hundreds of consumers and delivery teams. Central to this role is treating the platform as a first-class product-driven by clear outcomes, strong user focus, meaningful metrics and continuous improvement. Working closely with engineering, architecture and service teams, you will champion self-service, automation, paved roads and developer experience, while meeting demanding standards for security, resilience and cost efficiency. Operating at the intersection of technology, product and organisational strategy, you will play a defining role in HMRC's cloud transformation and platform community, the role involves travel and 60% office based. Job description The Role As Lead Platform Product Owner (Identity), you will set and own the vision, strategy and roadmap for a HMRC Enterprise Identity and Access Management platform, built on Microsoft Entra ID that supports services operating at national scale. You will own complex identity challenges including tenant-scale Conditional Access design, hybrid identity patterns, privileged access, service-to-service identity, and secure onboarding at organisational scale. You will bring a product‑led, outcome‑focused mindset to platform ownership, combining technical credibility with a deep understanding of the needs of developers, delivery teams and the wider organisation. You will shape the platform as a paved road - secure by default, scalable, cost‑effective and easy to consume - reducing cognitive load on teams and enabling them to deliver high‑quality services at pace. As the senior advocate for the platform, you will drive adoption and continuous improvement through the intelligent use of metrics, usage data and feedback. You will clearly articulate the platform's value and strategic importance to senior leaders, technical communities and non‑technical stakeholders, positioning it as a foundational capability for HMRC's long‑term digital ambitions. Operating across multiple federated delivery teams, you will prioritise platform investment, manage dependencies and influence direction and outcomes through strong interpersonal and leadership skills. You'll set the standard for modern platform product management-embedding secure by default, scalable and cost-effective capabilities, and creating an environment where teams can innovate safely and deliver at pace. This is a high impact leadership role offering significant scope to shape strategy, grow influence, and develop the next generation of platform product leaders within HMRC. Person specification Key Responsibilities Platform Engagement, Vision & Evangelism • Define, communicate, and evolve a clear platform vision, underpinned by user insight, organisational priorities, and measurable outcomes., • Act as the evangelist for the platform, promoting its value, capabilities, and roadmap through active engagement, outreach, and collaboration with delivery teams and stakeholders., • Establish and use meaningful engagement and adoption metrics, feedback loops, and usage data to assess platform performance and inform decision-making., • Own and manage the end-to-end platform product backlog, clearly prioritising work based on business value, technical risk, and user needs., • Coordinate delivery across multiple, federated platform and product teams, ensuring alignment, transparency, and effective dependency management., • Enable teams to deliver autonomously while maintaining coherence across the wider platform, ensuring consistent standards, interfaces, and outcomes., • Measure delivery impact and outcomes, ensuring the platform delivers tangible benefits at pace, • Proven technical leadership for the Entra ID Identity platform, ensuring solutions are secure, scalable, resilient, and cost effective., • Shape and assure platform capabilities including CI/CD, Entra ID architectures, networking, security, and integration with wider enterprise services, ensuring these are secure‑by‑default and scalable by design., • Work in close partnership with architecture, security, and engineering communities to embed modern cloud technologies, patterns, and practices that continuously improve platform maturity and developer experience., • Build strong, trusting relationships with senior stakeholders, delivery teams, and external partners, aligning platform priorities with organisational objectives., • Communicate complex technical and product concepts clearly to both technical and non‑technical audiences., • Influence decisions and outcomes without direct authority, balancing competing priorities and resolving conflict constructively., • Champion a culture of collaboration, transparency, and continuous improvement across the platform community., • Extensive, hands‑on experience designing and operating Microsoft Entra ID at enterprise scale, including hybrid identity, Conditional Access, and privileged access., • Expertise in identity protocols (SAML, OAuth 2.0, OpenID Connect, SCIM) and governance frameworks, such as conditional access and privileged identity management., • Proficient in automation and integration using PowerShell, Microsoft Graph APIs, and infrastructure-as-code tools., • Proven product/platform ownership in enterprise tech, with ability to create/manage technical roadmaps and align stakeholders., • Demonstrable experience identifying, prioritising, and delivering measurable customer value through platform-led products and services., • Experience of working with agile teams and translating technical requirements into platform capabilities., • Certified Scrum Product Owner (CSPO) or Professional Scrum Product Owner (PSPO) or equivalent., • Experience with enterprise identity governance tools., • Knowledge of zero-trust architecture., • Microsoft certifications in Identity and Access (SC-300, MS-500, AZ-104)., • Experience in highly regulated industries (financial services, healthcare)., • Familiarity with competing identity platforms (Okta, Ping Identity, SailPoint)., • Experience with platform engineering and site reliability engineering (SRE) practices, • Pension - We make contributions to our colleagues' Alpha pension equal to at least 28.97% of their salary., • Family friendly policies., • Personal support., • A name-blind CV including your job history and previous experience. Your CV should be limited to your last 3 roles and no more than 200 words per role., • UK nationals, • nationals of the Republic of Ireland, • nationals of Commonwealth countries who have the right to work in the UK, • nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window), • nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS), • individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020