Senior Engineer - Microsoft Entra ID (Remote)

Roles and Responsibilities

  • Design, configure, administer, and support Microsoft Entra ID services in enterprise production environments.
  • Implement and maintain Single Sign-On, multifactor authentication, passwordless authentication, authentication strengths, and Conditional Access policies.
  • Configure and support Microsoft Entra ID Governance capabilities, including entitlement management, access reviews, lifecycle workflows, and Privileged Identity Management.
  • Engineer hybrid identity solutions using Active Directory, Microsoft Entra Connect Sync, and Microsoft Entra Cloud Sync.
  • Integrate enterprise, SaaS, and custom applications using SAML 2.0, OAuth 2.0, OpenID Connect, and SCIM-based provisioning.
  • Manage enterprise applications, app registrations, service principals, managed identities, claims, consent, certificates, secrets, and federation settings.
  • Develop automation through PowerShell, Microsoft Graph, Infrastructure as Code, and CI/CD pipelines to improve control consistency and operational efficiency.
  • Monitor identity health, sign-in activity, audit logs, risky users, and workload identities; troubleshoot complex authentication, authorization, and provisioning issues.
  • Apply least-privilege, Zero Trust, security baseline, break-glass, and role-based access control principles to identity implementations.
  • Create engineering documentation, implementation runbooks, test evidence, operational procedures, and knowledge-transfer materials.
  • Collaborate with security, cloud, infrastructure, application, service management, and audit teams to deliver IAM initiatives.
  • Participate in design reviews, change management, incident response, root-cause analysis, and continuous improvement activities.

Qualifications Required

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline, or equivalent practical experience.
  • 9+ years of relevant IT experience, including at least 4 years of hands-on IAM and Microsoft Entra ID engineering experience.
  • Strong hands-on expertise in Conditional Access, MFA, PIM, Identity Governance, enterprise applications, app registrations, and role-based access control.
  • Solid knowledge of Active Directory, DNS, PKI fundamentals, hybrid identity, synchronization, and authentication troubleshooting.
  • Strong understanding of SAML, OAuth 2.0, OpenID Connect, SCIM, Kerberos, and modern authentication patterns.
  • Proficiency in PowerShell and Microsoft Graph APIs;

    experience with automation, source control, and deployment pipelines.

  • Experience implementing secure controls for workforce identities, privileged identities, guest identities, and workload identities.
  • Ability to diagnose complex sign-in, token, federation, provisioning, and access-policy issues using logs and monitoring tools.
  • Strong written and verbal communication skills with the ability to work across engineering, security, and business teams.
  • Microsoft Identity and Access Administrator Associate (SC-300) preferred; Azure Administrator Associate (AZ-104) or Cybersecurity Architect Expert (SC-100) is advantageous.
  • Share Share
    Apply Now →