Microsoft Identity Entra ID Senior Consultant

Deloitte T.T.L.
Denver, CO, United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Active Directory Software Applications Microsoft Azure Cyber Security Dynamic Host Configuration Protocol Domain Name System (DNS) Identity and Access Management Lightweight Directory Access Protocols (LDAP) OAuth Openid Connect Azure Active Directory Security Assertion Markup Language (SAML)
+1 more
Information Technology

Job description

Experteer Overview In this role, you will strengthen identity and access security for clients, focusing on Microsoft Entra ID and Active Directory environments. You will work within Deloitte Cyber to design, implement, and optimize identity platforms, guiding security operations and migrations. You’ll tackle assessments, migrations, and integrations, shaping resilient identity solutions at scale. You will collaborate with cross-functional teams to deliver impact for client environments and contribute to secure digital interactions. This role offers a meaningful chance to influence security posture and identity governance in a global consulting context. Compensation / Benefits * Assess Microsoft Entra ID and Active Directory environments (tenant config, hardening, identity governance, MFA, SSO, conditional access, migrations) * Architect, design, and implement AD and Microsoft Entra ID deployments, migrations, domain consolidations, and migrations activities * Perform health checks, discovery, cleanup, and security assessments across AD services (DNS, DHCP, GPOs, privileged groups, service accounts, DR readiness) * Support application and directory integrations across Microsoft Entra ID, AD, LDAP, Azure B2B, Azure B2C, SAML, OAuth, and OpenID Connect * Advise clients on security operations, reporting, threat protection, troubleshooting, and post-implementation reviews for Microsoft identity platforms (including Defender for Identity) Tasks * 4+ years of experience in technical consulting, problem solving, and solution architecture for Microsoft identity platforms (AD and Entra ID) * 4+ years implementing and operating Microsoft Entra ID (CA, SSO, MFA, PAM, PIM, and application integrations) * 4+ years implementing and operating Active Directory (AD FS, domain/domain forest recovery, GPO, managed service accounts, security groups, trusts, federation) * Bachelor’s degree in Computer Science, Cyber Security, Information Security, Engineering, IT, or Master of Computer Applications * Ability to travel 25-50% * Limited immigration sponsorship may be available Key requirements *

Requirements

Connect cleanup, and security assessments across AD services (DNS, DHCP, GPOs, privileged groups, service accounts, DR readiness) * Support application and directory integrations across Microsoft Entra ID, AD, LDAP, Azure B2B, Azure B2C, SAML, OAuth, and OpenID Connect * Advise clients on security operations, reporting, threat protection, troubleshooting, and post-implementation reviews for Microsoft identity platforms (including Defender for Identity) Tasks * 4+ years of experience in technical consulting, problem solving, and solution architecture for Microsoft identity platforms (AD and Entra ID) * 4+ years implementing and operating Microsoft Entra ID (CA, SSO, MFA, PAM, PIM, and application integrations) * 4+ years implementing and operating Active Directory (AD FS, domain/domain forest recovery, GPO, managed service accounts, security groups, trusts, federation) * Bachelor’s degree in Computer Science, Cyber Security, Information Security, Engineering, IT, or Master of Computer aaaaaaaaa You * Ability to travel 25-50% * Limited immigration sponsorship may be available Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz ¡ WWC Europe 2026

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter ¡ WWC 2024

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas SßdbrÜcker ¡ LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman ¡ WWC 2022

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter ¡ WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz ¡ WWC Europe 2026

Videos

See all

Related articles

See all