> Markdown version of [/jobs/ext/1169701-it-consultant-infrastructure-management-enterprise-mobility-solution-ms-azure-ad-ms-azure-rms-ms-intune](https://www.wearedevelopers.com/jobs/ext/1169701-it-consultant-infrastructure-management-enterprise-mobility-solution-ms-azure-ad-ms-azure-rms-ms-intune). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT - Consultant - Infrastructure Management | Enterprise Mobility Solution | MS Azure AD, MS Azure RMS, MS Intune - **Company:** Cloudspace LLC - **Location:** Pittsburgh, PA, United States (Remote available) - **Salary:** $130,000.0 - $149,760.0 - **Contract:** Temporary to permanent - **Skills:** Microsoft Access, Microsoft Word, Application Programming Interfaces (APIs), Audit Trail, User Authentication, Microsoft Azure, Cloud Computing, Configuration Management, Cyber Security, Continuous Integration, Software Design Patterns, Identity and Access Management, Key Management, Log Analysis, SQL Azure, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Kusto Query Language, Security Information and Event Management, Smart Cards, Systems Integration, Data Logging, Azure Powershell, Microsoft InTune, Microsoft Sentinel, Devsecops, Key Vault - **Published:** July 3, 2026 - **Apply:** https://www.careerjet.com/jobad/us26b34f7472f9d3f563932f31e0d06be7 ## About the Role Deep hands-on expertise with Microsoft Entra ID (Azure AD), Azure RBAC, security groups, PIM, and JIT workflows Strong Azure Policy and resource configuration: enable managed identities, provision Azure AD admin roles (e.g., Azure SQL), minimize local service keys Strong authenticator management and MFA for privileged roles (e.g., smartcards, FIDO2 security keys) with enforced session configuration norms NIST SP 800-53 FedRAMP High controls expertise relevant to IAM Experience in highly regulated environments (federal/financial services) Azure-native monitoring/logging for identity/access events (e.g., Entra sign-in/audit logs, Azure Monitor), AAA alignment, and alert routing to service owners/security teams Access governance and documentation: author/maintain IAM policies/standards/SOPs, conduct periodic access reviews, support audit evidence and control tests Baseline configuration management and accurate asset/data inventories aligned to enterprise configuration practices Secret hygiene: eliminate static credentials in code/images; enforce password and authenticator protection Preferred Skills/ Experience Experience aligning Azure IAM/RBAC with internal policies/standards and external frameworks (e.g., SOX, ISO, NIST) Exposure to application identity design patterns, least-privilege for service principals, and CI/CD controls for secret management (e.g., Key Vault, pipeline secret scanning Advanced authenticator management ## Description Azure IAM - Microsoft Entra ID administration, including PIM, JIT elevation, and Conditional Access for privileged roles,RBAC MFA, Microsoft Sentinel (SIEM), Identity Monitoring, Audit & Compliance, Azure Policy, Management Groups, Managed Identities, Azure AD-based admin configs, Azure Monitor, Log Analytics (KQL) Secrets Management - Azure Key Vault , Microsoft Graph API, Azure CLI Please provide a Detailed Job Description. (Word Document if any)., Microsoft Entra ID administration, including PIM, JIT elevation, and Conditional Access for privileged roles Azure RBAC across management group/subscription/resource scopes, custom role design, and enterprise role taxonomy Azure governance with Azure Policy and Management Groups to enforce least privilege guardrails MFA with strong authenticators (FIDO2 security keys, smartcards) and Microsoft Authenticator configuration Managed Identities for Azure services and Azure Key Vault integration to eliminate local service keys Monitoring and logging via Azure Monitor, Activity Logs, Diagnostic Settings, and Log Analytics (KQL) Security operations integration with Microsoft Sentinel (SIEM) and Microsoft Defender for Cloud Administration and automation using PowerShell (Az and Microsoft Graph), Azure CLI, and Microsoft Graph API Inventory and configuration governance using Azure Resource Graph, tagging strategies, and naming conventions Preferred Software/ Technology PowerShell; Azure CLI Experience with CI/CD and DevSecOps integrations Required Education/ Certifications Preferred Education/ Certifications Microsoft SC-300 (Identity and Access Administrator) Microsoft AZ-500 (Azure Security Engineer) CISSP or CCSP (nice to have), Project Code :Project code for Hyderabad STP, Role: Azure IAM Consultant Location-Pittsburgh, PA 15219 Duration of the project: 9 Months Minimum years of experience required: 8+ Please Confirm Must Have Skills (TOP … + 1 month ago ## Related Videos - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Best Practices for Using GitHub Secrets](https://www.wearedevelopers.com/videos/1214-best-practices-for-using-github-secrets) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Azure-Well Architected Framework - designing mission critical workloads in practice](https://www.wearedevelopers.com/videos/1529-azure-well-architected-framework-designing-mission-critical-workloads-in-practice) - [Automated MS SQL Server database deployments with dacpacs and Azure DevOps](https://www.wearedevelopers.com/videos/334-automated-ms-sql-server-database-deployments-with-dacpacs-and-azure-devops) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift)