Identity Security Engineer (m/w/d)
Core
Securing identity infrastructure and driving the transition from legacy Active Directory to a modern, cloud-capable Identity Platform with Zero-Trust principles.
Role type
Identity Security Engineer
Builds
Modern Identity and Access Management (IAM) platform with central governance and Privileged Access Management (PAM)
Domain
Cybersecurity / Identity Management
Required skills
Active Directory, Entra ID, OpenID Connect, OAuth 2.0, PKI, Privileged Access Management, PowerShell scripting, vulnerability analysis, legacy protocol identification
Preferred skills
Knowledge of AD attack techniques (Kerberoasting, Pass-the-Hash), Zero-Trust architecture concepts
Technologies
Active Directory, Entra ID, PowerShell, OpenID Connect, OAuth 2.0, PKI
Responsibilities
Harden and secure Identity infrastructure in Active Directory and Entra ID; Develop and implement AD Tiering models and Privileged Access concepts; Define security requirements for PAM and PKI landscapes; Analyze and remediate vulnerabilities and misconfigurations; Identify dependencies on legacy protocols and drive their replacement; Automate security checks in the Identity infrastructure; Monitor attack techniques on Identity systems and derive protection measures
Seniority
Mid-level, hands-on IC (via careerplan.io/jobs/13644-310394-S-identity-security-engineer-mwd-at-rossmann)
