IAM Engineer - Microsoft Entra Specialist

Trebecon LLC
Raleigh, NC, United States
6 days ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Application Programming Interfaces (APIs) User Authentication Cloud Computing Identity and Access Management OAuth OpenID Windows PowerShell Openid Connect Azure Active Directory Security Assertion Markup Language (SAML) Single Sign-On
+2 more
Enterprise Software Applications Microsoft InTune

Job description

We are seeking an experienced Identity & Access Management (IAM) Engineer with deep expertise in Microsoft Entra ID (Azure AD) to support a large global enterprise. This role is ideal for a hands-on identity professional who has successfully delivered enterprise-scale authentication modernization initiatives, including passwordless authentication, Conditional Access, and identity security.

The immediate priority is leading the rollout of Microsoft Passkeys and retiring legacy SMS and voice-based authentication methods while ensuring a seamless user experience and strong security posture., * Lead the enterprise deployment of Microsoft Passkeys and passwordless authentication.

  • Plan and execute the retirement of SMS, voice, and other legacy authentication methods.
  • Design, implement, and maintain Microsoft Entra Conditional Access policies.
  • Configure and manage Microsoft Entra ID Protection policies and investigate identity risks.
  • Administer Enterprise Applications, App Registrations, and application permissions.
  • Manage application integrations using SSO, SAML, OpenID Connect (OIDC), OAuth, and SCIM.
  • Develop automation and reporting solutions using PowerShell and Microsoft Graph API.
  • Partner with security, infrastructure, application, and compliance teams to strengthen identity governance.
  • Create documentation and follow enterprise change management and audit processes.
  • Support identity-related security initiatives across a global enterprise environment.

Requirements

  • 5+ years of hands-on experience administering Microsoft Entra ID (Azure AD) in enterprise environments.
  • Proven experience leading enterprise-scale Passkey/FIDO2 or passwordless authentication deployments.
  • Experience decommissioning legacy authentication methods, including SMS, voice, and password-only authentication.
  • Strong expertise in Microsoft Entra Conditional Access policy design, testing, and staged deployment.
  • Hands-on experience with Microsoft Entra ID Protection.
  • Experience with Enterprise Applications, App Registrations, and permission governance.
  • Strong understanding of SSO, SAML, OpenID Connect (OIDC), OAuth, and SCIM provisioning.
  • Proficiency with PowerShell and Microsoft Graph API for identity automation.
  • Experience working in regulated enterprise environments with established compliance and change management processes.
  • Excellent communication and stakeholder management skills., * Microsoft SC-300 (Identity and Access Administrator) certification or equivalent.
  • Experience with Microsoft Intune, Microsoft Defender for Cloud Apps, and Microsoft Purview.
  • Experience with Hybrid Identity, Microsoft Entra Connect (Azure AD Connect), or Cloud Sync.
  • Experience supporting organizations with 5,000+ users across multiple regions.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all