Azure AD / Entra ID Global Identity Integration Developer
Role details
Job location
Tech stack
Job description
Join a dynamic team driving global identity integration and lifecycle management across multi-tenant environments. You ll design, configure, and continuously improve Microsoft Entra ID controls spanning Conditional Access, authentication methods, SCIM provisioning, cross-tenant synchronization, and privileged access governance. Working closely with teams in Japan and the US, you ll build automation and backend identity services that keep access secure, auditable, and resilient at enterprise scale. If you re a hands-on IAM engineer who enjoys solving complex identity challenges, this is your opportunity to make security measurable and operationally efficient., * Engineer and tune Microsoft Entra Conditional Access policies (authentication strengths, named locations, sign-in/session controls)
- Own Entra application registrations and enterprise SSO integrations (OAuth 2.0, OIDC, SAML)
- Build and maintain multi-tenant/B2B guest identity lifecycle (provisioning to offboarding)
- Enhance cross-tenant synchronization and centralized federated identity flows
- Implement SCIM provisioning integrations and troubleshoot identity lifecycle automation
- Automate identity object and policy management using Microsoft Graph API
- Design and develop backend identity services for token issuance, authentication, and enforcement
- Administer PIM/PAM-related access reviews, activation policies, and privileged role assignments
- Expand phishing-resistant MFA coverage (FIDO2, certificate-based auth, Authenticator) using identity protection signals
- Modernize legacy identity tools via scalable, automated IAM processes
- Document runbooks and maintain operational rigor for audit readiness
- Collaborate globally with Japan and US teams to deliver secure identity transitions
Requirements
Do you have experience in SSO?, * Deep, hands-on IAM engineering expertise specifically in Microsoft Entra ID
- Experience operating identity at scale with multi-tenant and B2B collaboration
- Strong automation skills leveraging PowerShell and Microsoft Graph API
- A proven track record delivering complex security initiatives independently
- Confidence building backend services that support authentication and identity lifecycle operations, * 5+ years IAM engineering experience with Microsoft Entra ID (Azure AD)
- Advanced Conditional Access knowledge and risk-based access controls (Identity Protection)
- Extensive Microsoft Graph API expertise (users, groups, apps, policies, audit logs)
- Multi-Entra tenant, cross-tenant access, and B2B guest management experience
- SCIM provisioning + OAuth 2.0 / OIDC / SAML enterprise application management
- PIM role management and activation/access review experience
- MFA implementation skills (FIDO2, CBA, Authenticator)
- Backend identity services experience (authentication, token issuance, policy enforcement)
- Proficiency in PowerShell and/or scripting (Python or JavaScript)
Other Skills:
- Experience with Agile/ITIL/TOGAF or similar delivery methodologies
- Strong documentation habits and independent execution, * Preferred: Microsoft SC-300 certification and/or experience with Aquera, Azure Logic Apps, zero trust/identity-first frameworks, and identity lifecycle (joiner/mover/leaver).
Benefits & conditions
3.63.6 out of 5 stars Plano, TX 75074 $70 - $80 an hour - Contract, Pulled from the full job description
- 401(k)
- Health insurance
- Vision insurance
- Dental insurance