Microsoft Entra ID Lead

Cloud 88 Inc
Berkeley, IL, United States
1 day ago
Apply on www.disabledperson.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Access Application Programming Interfaces (APIs) Software Applications User Authentication Software as a Service Cloud Computing Multi-Factor Authentication Identity and Access Management OAuth OpenID Windows PowerShell Openid Connect
+7 more
Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Systems Integration Enterprise Software Applications Software Security

Job description

We are seeking an experienced Microsoft Entra ID Lead with strong hands-on expertise in Microsoft Entra ID (Azure AD), Identity & Access Management (IAM), application authentication, federation, SSO, and API security. The ideal candidate will lead enterprise identity initiatives, design secure authentication solutions, onboard applications, troubleshoot complex authentication issues, and work closely with application, security, infrastructure, and engineering teams., * Lead the design, implementation, administration, and support of Microsoft Entra ID / Azure AD solutions.

  • Manage users, groups, enterprise applications, app registrations, service principals, and managed identities.
  • Design and implement Conditional Access, MFA, Identity Protection, Privileged Identity Management (PIM), Access Reviews, and Lifecycle Workflows.
  • Lead enterprise application onboarding and implement secure Single Sign-On (SSO) integrations.
  • Design, configure, and troubleshoot integrations using OAuth 2.0, OpenID Connect (OIDC), SAML 2.0, and SCIM 2.0.
  • Support B2B collaboration, External Identities, guest access, and cross-tenant access configurations.
  • Work with application owners and engineering teams to define authentication and authorization requirements.
  • Configure and support OAuth flows including:
  • Authorization Code Flow
  • Authorization Code Flow with PKCE
  • Client Credentials Flow
  • Configure and manage App Registrations, Enterprise Applications, scopes, API permissions, redirect URIs, certificates, client secrets, and consent.
  • Troubleshoot access tokens, ID tokens, claims, scopes, authentication failures, authorization issues, federation problems, and SSO issues.
  • Analyze Entra ID sign-in logs, audit logs, Conditional Access results, and authentication transactions to identify root causes.
  • Implement secure authentication and authorization patterns for enterprise applications and APIs.
  • Understand and troubleshoot the complete authentication lifecycle from user sign-in and authentication through token issuance, claims processing, and application authorization.
  • Provide technical leadership and guidance on IAM architecture, identity security, authentication standards, and Entra ID best practices.
  • Partner with security, infrastructure, cloud, application, and business teams to deliver scalable identity solutions.
  • Lead troubleshooting and root-cause analysis for complex production IAM and authentication incidents.

Requirements

  • 8+ years of overall IAM / Identity Security experience.
  • Strong hands-on experience with Microsoft Entra ID / Azure Active Directory.
  • Strong knowledge of Identity & Access Management (IAM) concepts and architecture.
  • Strong hands-on experience with OAuth 2.0, OIDC, SAML 2.0, and SCIM 2.0.
  • Experience with Conditional Access, MFA, Identity Protection, PIM, Access Reviews, and Lifecycle Workflows.
  • Strong experience with App Registrations and Enterprise Applications.
  • Experience onboarding enterprise applications and implementing SSO and federation.
  • Strong understanding of OAuth flows, JWT/access tokens, ID tokens, claims, scopes, API permissions, consent, certificates, and client secrets.
  • Experience with B2B Collaboration, External Identities, and Cross-Tenant Access.
  • Strong understanding of authentication, authorization, federation, token-based authentication, and API security.
  • Strong troubleshooting skills for SSO, authentication, federation, Conditional Access, and token-related issues.
  • Ability to lead technical discussions and provide guidance to application and engineering teams.
  • Excellent communication, documentation, collaboration, and problem-solving skills.

Preferred Skills

  • Experience supporting IAM solutions within a large enterprise or banking/financial services environment.
  • Experience with Microsoft Graph API, PowerShell, and identity automation.
  • Understanding of Zero Trust security principles and identity governance.
  • Experience integrating Entra ID with cloud, SaaS, and internally developed applications.
  • Previous experience working as an Entra ID Lead, IAM Lead, Identity Security Lead, or Senior Entra ID Engineer.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.disabledperson.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:16 min

Addressing single sign-on challenges in enterprise environments

Alexander Schwartz Alexander Schwartz · World Congress 2025

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all