Job Description - Tier 3 Microsoft 365 Entra Administrator

Datamatics Global Services Inc
United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Microsoft Windows Active Directory User Authentication Cloud Computing Configuration Management Databases Cyber Security Multi-Factor Authentication Identity and Access Management Public Key Infrastructure Windows PowerShell Azure Active Directory
+8 more
Phishing Zero Trust Network Access Runbook Data Logging Azure Automation Microsoft Power Automate 3-tier Architectures Servicenow

Job description

The Tier 3 Microsoft 365 Entra Administrator is a senior-level Identity & Access Management (IAM) professional responsible for securing, administering, and optimizing a hybrid identity environment spanning onprem Active Directory and Microsoft Entra ID. This role serves as the highest escalation point for identity-related incidents, leads advanced troubleshooting and root cause analysis, and drives identity security strategy aligned with Zero Trust principles.

The role has a strong emphasis on identity security, governance, and privileged access, working closely with Cybersecurity, Infrastructure, and Compliance teams. The Tier 3 Entra Administrator also mentors Tier 1-2 support, owns identity automation and governance improvements, and ensures audit-ready identity operations using tools such as ServiceNow and NetIQ., Tier 3 Escalation & Incident Leadership

  • Act as the Tier 3 escalation point for complex Entra ID, hybrid identity, and authentication incidents.
  • Lead resolution of high-severity identity outages and security incidents (authentication failures, MFA bypass attempts, Conditional Access issues).
  • Perform detailed root cause analysis (RCA) and implement long-term corrective and preventive actions.
  • Drive identity-related Problem Management activities within ServiceNow.
  • Provide technical leadership, mentoring, and knowledge transfer to Tier 1-2 support teams., * Attribute flow and sync rule issues
  • Duplicate object resolution (soft/hard match)
  • UPN, proxyAddress, and source anchor mismatches

Partner with AD, PKI, networking, and endpoint teams to ensure identity dependencies remain secure and resilient., * Design, implement, and maintain Conditional Access policies with a security-first approach:

  • Risk-based access
  • Device and platform restrictions
  • Session controls and legacy authentication blocking

Manage and optimize authentication methods, including:

  • MFA (Authenticator, FIDO2, WHfB, OATH, Temporary Access Pass)
  • Phishing-resistant authentication strategies

Administer Privileged Identity Management (PIM):

  • Eligible role assignments
  • Approval workflows
  • Just-in-time access
  • Privileged access monitoring and alerts

Investigate Entra ID Protection risk detections and coordinate remediation for risky users and sign-ins.

Maintain and protect break-glass and emergency access accounts. __________________

Identity Governance & Compliance

  • Lead identity governance initiatives using:

  • Access Reviews
  • Entitlement Management / Access Packages
  • Lifecycle and joiner-mover-leaver processes

Utilize NetIQ identity tools to support:

  • Identity lifecycle management
  • Role-based access models
  • Attestation and access certification workflows

Ensure identity controls align with regulatory and audit requirements (SOX, SOC 2, ISO, HIPAA, etc.).

Provide audit evidence, logging, and reporting for identity-related controls.

Requirements

  • Incident, Problem, and Change Management
  • Identity request workflows and approvals
  • CMDB and service mapping related to identity services

Improve operational maturity through:

  • Runbooks and SOPs
  • Monitoring and alerting enhancements
  • Identity-related SLAs and KPIs, * PowerShell
  • Microsoft Graph
  • Azure Automation / Logic Apps

Reduce manual access administration and improve consistency through automation., * 5+ years of IAM experience, with 3+ years focused on Microsoft Entra ID in a hybrid environment.

  • Deep expertise in:

  • Microsoft Entra ID and Active Directory
  • Conditional Access, MFA, and Zero Trust identity controls
  • Privileged Identity Management (PIM)
  • Hybrid identity troubleshooting (sync, authentication, federation)

Hands-on experience with ServiceNow (ITSM, identity workflows).

Experience working with NetIQ identity governance or directory tools.

Strong PowerShell and automation skills.

Proven ability to lead incident response and security-focused identity initiatives., * SC-300 - Identity and Access Administrator

  • SC-200 / SC-100 - Security
  • AZ-104, MS-102

Experience with:

  • Entra ID Protection and identity risk management
  • Defender for Cloud Apps integration
  • Phishing-resistant MFA rollouts (FIDO2 / WHfB)
  • ITIL-based operational environments

Experience supporting regulated or highly audited environments., * Security-first mindset with strong Zero Trust principles

  • Advanced troubleshooting and analytical skills
  • Strong collaboration with Security, Compliance, and Infrastructure teams
  • Clear technical documentation and communication
  • Ability to lead initiatives independently and influence identity strategy

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all