Microsoft Entra ID & Active Directory Engineer
Core
Implement and optimize Microsoft Entra ID and Active Directory security policies, manage hybrid identity integration, and lead operational implementation of Privileged Identity Management (PIM) and AD hardening.
Role type
Senior IC Microsoft Entra ID & Active Directory Engineer
Builds
Secure identity infrastructure, Conditional Access policies, PIM configurations, and hybrid trust models for a global retail wholesaler.
Domain
Identity & Access Management (IAM), Cloud Security, Hybrid IT
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Microsoft Entra ID P2, Conditional Access, Privileged Identity Management, Active Directory security, Hybrid identity integration, Advanced PowerShell scripting, Zero Trust principles, Identity-based attack mitigation, IGA concepts, Defender for Identity, Passwordless authentication (FIDO2, WHfB), VDI/shared device environments
Preferred skills
Mentorship, Design review participation, Cross-functional collaboration with Security and Platform teams
Technologies
Microsoft Entra ID, Active Directory, Azure, PowerShell, Defender for Identity, FIDO2, VDI
Responsibilities
Implement and optimize Conditional Access policies, Lead operational implementation of PIM (role assignments, approval workflows, JIT access), Support and enforce AD security best practices (Tiered admin model, LAPS, Protected Users), Troubleshoot complex AD security and authentication issues, Support CyberDefence team for Identity investigations, Mentor mid-level engineers
Seniority
Senior, hands-on IC with mentorship responsibilities