Job Description - Tier 3 Microsoft 365 Entra Administrator
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+8 more
Job description
The Tier 3 Microsoft 365 Entra Administrator is a senior-level Identity & Access Management (IAM) professional responsible for securing, administering, and optimizing a hybrid identity environment spanning onprem Active Directory and Microsoft Entra ID. This role serves as the highest escalation point for identity-related incidents, leads advanced troubleshooting and root cause analysis, and drives identity security strategy aligned with Zero Trust principles.
The role has a strong emphasis on identity security, governance, and privileged access, working closely with Cybersecurity, Infrastructure, and Compliance teams. The Tier 3 Entra Administrator also mentors Tier 1-2 support, owns identity automation and governance improvements, and ensures audit-ready identity operations using tools such as ServiceNow and NetIQ., Tier 3 Escalation & Incident Leadership
- Act as the Tier 3 escalation point for complex Entra ID, hybrid identity, and authentication incidents.
- Lead resolution of high-severity identity outages and security incidents (authentication failures, MFA bypass attempts, Conditional Access issues).
- Perform detailed root cause analysis (RCA) and implement long-term corrective and preventive actions.
- Drive identity-related Problem Management activities within ServiceNow.
- Provide technical leadership, mentoring, and knowledge transfer to Tier 1-2 support teams., * Attribute flow and sync rule issues
- Duplicate object resolution (soft/hard match)
- UPN, proxyAddress, and source anchor mismatches
Partner with AD, PKI, networking, and endpoint teams to ensure identity dependencies remain secure and resilient., * Design, implement, and maintain Conditional Access policies with a security-first approach:
- Risk-based access
- Device and platform restrictions
- Session controls and legacy authentication blocking
Manage and optimize authentication methods, including:
- MFA (Authenticator, FIDO2, WHfB, OATH, Temporary Access Pass)
- Phishing-resistant authentication strategies
Administer Privileged Identity Management (PIM):
- Eligible role assignments
- Approval workflows
- Just-in-time access
- Privileged access monitoring and alerts
Investigate Entra ID Protection risk detections and coordinate remediation for risky users and sign-ins.
Maintain and protect break-glass and emergency access accounts. __________________
Identity Governance & Compliance
-
Lead identity governance initiatives using:
- Access Reviews
- Entitlement Management / Access Packages
- Lifecycle and joiner-mover-leaver processes
Utilize NetIQ identity tools to support:
- Identity lifecycle management
- Role-based access models
- Attestation and access certification workflows
Ensure identity controls align with regulatory and audit requirements (SOX, SOC 2, ISO, HIPAA, etc.).
Provide audit evidence, logging, and reporting for identity-related controls.
Requirements
- Incident, Problem, and Change Management
- Identity request workflows and approvals
- CMDB and service mapping related to identity services
Improve operational maturity through:
- Runbooks and SOPs
- Monitoring and alerting enhancements
- Identity-related SLAs and KPIs, * PowerShell
- Microsoft Graph
- Azure Automation / Logic Apps
Reduce manual access administration and improve consistency through automation., * 5+ years of IAM experience, with 3+ years focused on Microsoft Entra ID in a hybrid environment.
-
Deep expertise in:
- Microsoft Entra ID and Active Directory
- Conditional Access, MFA, and Zero Trust identity controls
- Privileged Identity Management (PIM)
- Hybrid identity troubleshooting (sync, authentication, federation)
Hands-on experience with ServiceNow (ITSM, identity workflows).
Experience working with NetIQ identity governance or directory tools.
Strong PowerShell and automation skills.
Proven ability to lead incident response and security-focused identity initiatives., * SC-300 - Identity and Access Administrator
- SC-200 / SC-100 - Security
- AZ-104, MS-102
Experience with:
- Entra ID Protection and identity risk management
- Defender for Cloud Apps integration
- Phishing-resistant MFA rollouts (FIDO2 / WHfB)
- ITIL-based operational environments
Experience supporting regulated or highly audited environments., * Security-first mindset with strong Zero Trust principles
- Advanced troubleshooting and analytical skills
- Strong collaboration with Security, Compliance, and Infrastructure teams
- Clear technical documentation and communication
- Ability to lead initiatives independently and influence identity strategy
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
Fully Remote Software Engineer Jobs
Why Upskilling And Reskilling is Important For Developers