> Markdown version of [/jobs/ext/2178153-infrastructure-engineer](https://www.wearedevelopers.com/jobs/ext/2178153-infrastructure-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Infrastructure Engineer - **Company:** Forgent Power Solutions, Inc. - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Active Directory Federation Services, Information Leak Prevention, Identity and Access Management, OAuth, Openid Connect, Security Assertion Markup Language (SAML), Single Sign-On, Systems Integration, Data Ingestion, Microsoft InTune, Microsoft Sentinel - **Published:** August 22, 2026 - **Apply:** https://jobs.military.com/career/316066/infrastructure-engineer-m365-identity-minnesota-mn-waco ## About the Role * 7-10 years of experience in Microsoft identity and enterprise Microsoft 365 engineering\n * Deep hands-on expertise with Entra ID - user and group management, Conditional Access, hybrid identity, and B2B collaboration\n * Proven experience implementing and operating Privileged Identity Management in a production enterprise environment\n * Strong understanding of hybrid identity - Entra Connect, password hash sync, pass-through authentication, and Active Directory Federation Services\n * Experience with Microsoft Purview, including Data Loss Prevention policy design and compliance reporting\n * Hands-on experience with Defender for Identity sensor deployment and alert management\n * Solid understanding of Intune device compliance and its integration with Conditional Access\n * Strong documentation skills - ability to produce runbooks, policy guides, and change management documentation\n * Hands-on experience configuring enterprise Single Sign-On integrations using SAML 2.0, OAuth 2.0, and OpenID Connect\n * Experience managing application provisioning and de-provisioning via SCIM \n, * Experience with Entra ID Governance - access reviews, entitlement management, and lifecycle workflows\n * Familiarity with Microsoft Sentinel for identity-related log ingestion and alerting\n * Experience supporting a Microsoft 365 E5 deployment or licensing transition\n * Knowledge of multi-entity or post-acquisition Microsoft 365 consolidation\n * Microsoft certifications - SC-300 (Identity and Access Administrator), MS-102 (Microsoft 365 Administrator) \n ## Description We are seeking a Infra Engineer III, M365 & Identity to own Forgent's Microsoft identity and productivity platform across all sites. This role is the single point of accountability for Entra ID, Conditional Access, Privileged Identity Management, and the full suite of Microsoft 365 security and compliance capabilities unlocked by our E5 licensing. \n \n You will be joining at a pivotal moment - Forgent is migrating from a fragmented multi-entity Microsoft 365 environment to a single governed platform with a July 1 go-live deadline. This role will be critical to ensuring that deadline is met, and that identity and access are properly governed across the entire organization from day one. \n ## Related Videos - [Going Beyond Passwords: The Future of User Authentication](https://www.wearedevelopers.com/videos/714-going-beyond-passwords-the-future-of-user-authentication) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What is Software Engineering?](https://www.wearedevelopers.com/magazine/289-what-is-software-engineering)