> Markdown version of [/jobs/ext/3437029-microsoft-active-directory-entra-id-engineer-iii](https://www.wearedevelopers.com/jobs/ext/3437029-microsoft-active-directory-entra-id-engineer-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Microsoft Active Directory & Entra ID Engineer III - **Company:** Avnet, Inc. - **Location:** Chandler, AZ, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, User Authentication, Microsoft Azure, Business Software, Cyber Security, Disaster Recovery, Domain Name System (DNS), Multi-Factor Authentication, Identity and Access Management, Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), OAuth, Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Single Sign-On, Systems Integration, Enterprise Software Applications, Microsoft InTune - **Published:** September 17, 2026 - **Apply:** https://dejobs.org/x/x/24A73BD4607F4673B30D3F6CEDA1DFE4/job/ ## About the Role We are seeking an experienced Microsoft Identity & Access Management professional with a minimum of 5 years' hands-on experience managing, supporting, and enhancing Microsoft Active Directory and Microsoft EntraID environments. The successful candidate will possess a strong understanding of hybrid identity architectures, including how on-premises Active Directory integrates and synchronizes with Microsoft EntraID. They will have proven experience implementing secure authentication solutions, Conditional Access policies, SAML-based application integrations, and modern identity management best practices. This role is critical in ensuring the security, reliability, and efficiency of our identity infrastructure and access management services., * Minimum 5 years' experience administering Microsoft Active Directory. * Minimum 5 years' experience working with Microsoft Entra ID (Azure AD). * Strong understanding of hybrid identity architecture. * Proven experience with Azure AD Connect / Entra Connect. * Strong understanding of how Active Directory and Entra ID communicate and synchronise. * Experience implementing and managing Conditional Access policies. * Knowledge of authentication methods and identity protection controls. * Experience implementing and supporting Multi-Factor Authentication. * Strong understanding of Single Sign-On technologies. * Hands-on experience integrating and troubleshooting SAML applications. * Experience with DNS, LDAP, Kerberos, and Group Policy. * Strong troubleshooting and problem-solving skills. Desirable * Experience with Microsoft Intune. * Experience with Privileged Identity Management (PIM). * Experience with Identity Governance. * PowerShell scripting and automation experience. * Experience with Microsoft Defender products. * Knowledge of OAuth 2.0 and OpenID Connect. * Experience in regulated or enterprise environments., * Microsoft Certified: Identity and Access Administrator Associate (SC-300) * Microsoft Certified: Azure Administrator Associate (AZ-104) * Microsoft Certified: Security Operations Analyst Associate (SC-200) * Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900) * Microsoft Certified: Azure Fundamentals (AZ-900) Personal Attributes * Strong communication skills. * Ability to explain technical concepts to non-technical stakeholders. * Excellent analytical and troubleshooting abilities. * Strong attention to detail. * Ability to work independently and collaboratively. * Security-focused mindset. ## Description Active Directory Administration * Manage and support Microsoft Active Directory environments. * Administer users, groups, organizational units, and Group Policy Objects (GPOs). * Troubleshoot authentication, replication, DNS, and Active Directory-related issues. * Implement and maintain Active Directory security best practices. * Support AD upgrades, migrations, and disaster recovery processes. * Active Directory Sites and Services. Microsoft EntraID Administration * Administer Microsoft EntraID (formerly Azure Active Directory). * Configure and manage users, groups, enterprise applications, and identities. * Support identity lifecycle management processes. * Configure and monitor authentication methods and identity protection capabilities. * Implement and maintain EntraID security controls. Hybrid Identity Management * Manage and troubleshoot Active Directory synchronization with EntraID. * Support Azure AD Connect / Entra Connect environments. * Understand authentication mechanisms including: * Password Hash Synchronization (PHS) * Pass-through Authentication (PTA) * Federation * Single Sign-On (SSO) Conditional Access & Authentication * Design and implement Conditional Access policies. * Configure Multi-Factor Authentication (MFA). * Manage authentication methods and authentication strengths. * Support passwordless authentication technologies including: * Microsoft Authenticator * FIDO2 Security Keys * Windows Hello for Business Application Integration * Configure and support SAML-based application integrations. * Manage Single Sign-On (SSO) solutions. * Troubleshoot identity federation and authentication issues. * Work with application owners and vendors to onboard enterprise applications. Security & Compliance * Review identity security posture and recommend improvements. * Monitor and investigate authentication and access-related incidents. * Support audit and compliance requirements. * Implement least-privilege access principles and role-based access controls (RBAC). ## Related Videos - [Going Beyond Passwords: The Future of User Authentication](https://www.wearedevelopers.com/videos/714-going-beyond-passwords-the-future-of-user-authentication) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Best Job Search Websites of 2025](https://www.wearedevelopers.com/magazine/368-the-best-job-search-websites-of-2025) - [Find a Developer Job: 12 Best Job Sites For Developers](https://www.wearedevelopers.com/magazine/165-find-a-developer-job-12-best-job-sites-for-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)