IAM Engineer - Microsoft Entra Specialist
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
We are seeking an experienced Identity & Access Management (IAM) Engineer with deep expertise in Microsoft Entra ID (Azure AD) to support a large global enterprise. This role is ideal for a hands-on identity professional who has successfully delivered enterprise-scale authentication modernization initiatives, including passwordless authentication, Conditional Access, and identity security.
The immediate priority is leading the rollout of Microsoft Passkeys and retiring legacy SMS and voice-based authentication methods while ensuring a seamless user experience and strong security posture., * Lead the enterprise deployment of Microsoft Passkeys and passwordless authentication.
- Plan and execute the retirement of SMS, voice, and other legacy authentication methods.
- Design, implement, and maintain Microsoft Entra Conditional Access policies.
- Configure and manage Microsoft Entra ID Protection policies and investigate identity risks.
- Administer Enterprise Applications, App Registrations, and application permissions.
- Manage application integrations using SSO, SAML, OpenID Connect (OIDC), OAuth, and SCIM.
- Develop automation and reporting solutions using PowerShell and Microsoft Graph API.
- Partner with security, infrastructure, application, and compliance teams to strengthen identity governance.
- Create documentation and follow enterprise change management and audit processes.
- Support identity-related security initiatives across a global enterprise environment.
Requirements
- 5+ years of hands-on experience administering Microsoft Entra ID (Azure AD) in enterprise environments.
- Proven experience leading enterprise-scale Passkey/FIDO2 or passwordless authentication deployments.
- Experience decommissioning legacy authentication methods, including SMS, voice, and password-only authentication.
- Strong expertise in Microsoft Entra Conditional Access policy design, testing, and staged deployment.
- Hands-on experience with Microsoft Entra ID Protection.
- Experience with Enterprise Applications, App Registrations, and permission governance.
- Strong understanding of SSO, SAML, OpenID Connect (OIDC), OAuth, and SCIM provisioning.
- Proficiency with PowerShell and Microsoft Graph API for identity automation.
- Experience working in regulated enterprise environments with established compliance and change management processes.
- Excellent communication and stakeholder management skills., * Microsoft SC-300 (Identity and Access Administrator) certification or equivalent.
- Experience with Microsoft Intune, Microsoft Defender for Cloud Apps, and Microsoft Purview.
- Experience with Hybrid Identity, Microsoft Entra Connect (Azure AD Connect), or Cloud Sync.
- Experience supporting organizations with 5,000+ users across multiple regions.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.dice.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Where To Find Software Engineering Jobs
Fully Remote Software Engineer Jobs
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Everything a Developer Needs to Know About MCP with Neo4j