An Introduction to Primer

Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.

Which team will you be joining?

You're joining the Security team at a critical inflection point. We're standing up dedicated IAM alongside GRC and Workplace Technology, and this role is the connective tissue that makes all three effective. Every new joiner, internal move, and leaver flows through IAM provisioning. You'll own the day-to-day queue, but you're not just firefighting. You'll be building the automation that shrinks that queue: SCIM-based day-one provisioning, deprovisioning pipelines, access review automation. This is where the long-term leverage lives. You'll report to the Head of Security and partner closely with the GRC and Workplace Technology teams. You'll work with people, engineering, workplace technology, compliance, and the wider infrastructure team to make provisioning and access governance actually work at scale.

What will you be doing?

  • Stabilise and own the IAM request queue as the company scales.
  • Build and maintain SCIM auto-provisioning flows for day-one account setup across our SaaS tools (Okta, Slack, GitHub, etc.).
  • Design and execute the IAM enrolment improvements roadmap, including finalising Mac/Windows enrolment, progressing the Okta rollout, and building the fallback workflows in Tines.
  • Partner with GRC to run automated access reviews and certification campaigns.
  • Progress IAM-related technical debt and risk. You'll own JIT/PAM initiatives, least-privilege evidence collection for audits, and the automation roadmap that underpins context-aware access.
  • Remove identity and provisioning load from Workplace Technology, freeing that team to focus on IT support, device management, and people systems.

What's the culture like at Primer?

We're building a culture where people can do their best work and be proud of the impact they have. We work remotely, and have done since day one. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and access to co-working spaces across most major cities.

Our benefits

  • 🌍 We are fully remote and globally distributed
  • 💰 Competitive share options
  • 🌴 Uncapped holiday, with 25 days minimum to be taken
  • 🗣️ Co-working space access across major cities
  • 📅 Workations & Company Retreat
  • 💻 The best equipment for your role
  • 🏠 £500 towards your home office setup
  • 🔎 Generous learning budget
  • 🏥 Private Medical Insurance
  • 📈 A broad set of additional perks and benefits (depending on location)

What we're looking for

  • You've shipped identity or access management systems in production before—whether at a fintech, security-focused company, or infrastructure-heavy environment. You understand Okta (or similar IDPs), SCIM provisioning, access review workflows, and the real-world friction of scaling identity at a growing company.
  • You're equally comfortable building automation (Python, Go, or similar) and integrating tools like Tines, Okta, and cloud IAM services. You don't need to be a security expert, but you need to understand the why behind least-privilege, deprovisioning, and audit trails.
  • You have strong operational ownership. You'll inherit a backlog and make the call on what's urgent, what can wait, and what needs engineering help.
  • You can learn Primer's specific stack and people-systems on the job. What matters is your ability to reason through access problems and translate business requirements into working systems.
  • You collaborate well with non-engineering functions (GRC, People, compliance, engineering).
Primer.io

Primer.io