Microsoft Identity and Access Management Engineer
Core
Design, implement, and maintain Microsoft Identity and Access Management (IAM) solutions across hybrid and cloud-native environments to enable secure, seamless access for a global enterprise.
Role type
Mid-level Microsoft IAM Engineer
Builds
Secure identity infrastructure (Azure AD/Entra ID, PIM, Conditional Access) and SSO integrations for the organization's Microsoft ecosystem.
Domain
Information Technology / Cybersecurity / Identity Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work -> infrastructure
Required skills
Azure Active Directory (Entra ID) administration, on-premises Active Directory management, SSO integration (SAML, OAuth 2.0, OpenID Connect), Privileged Identity Management (PIM), Conditional Access policies, Multi-Factor Authentication (MFA), PowerShell scripting, Zero Trust security principles
Preferred skills
Microsoft Identity certifications (SC-300, AZ-500, MS-500), third-party PAM/IGA tools (CyberArk, SailPoint), SIEM platforms (Microsoft Sentinel), compliance frameworks (SOX, HIPAA, NIST, ISO 27001), DevSecOps practices
Technologies
Azure AD (Entra ID), Active Directory, Entra Connect, Microsoft Authenticator, FIDO2, CyberArk, SailPoint, Saviynt, Microsoft Sentinel, PowerShell
Responsibilities
Design and maintain hybrid Azure AD environments; manage user lifecycle and RBAC; configure Conditional Access and MFA; administer PIM/PAM; integrate SaaS and on-prem systems; monitor identity infrastructure for threats; support on-prem AD and Group Policy; collaborate on IAM roadmap and compliance; develop IAM documentation; troubleshoot identity incidents.
Seniority
Mid-level, hands-on IC