Azure AD / Entra ID Global Identity Integration Developer

Calance Consulting Corporation
Plano, TX, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$145,600.0 - $166,400.0
Working hours
Regular working hours
Job source

Tech stack

JavaScript (Programming Language) Application Programming Interfaces (APIs) Agile Methodology Audit Trail User Authentication Build Automation Microsoft Azure Federated Identity Management Identity and Access Management Python (Programming Language) OAuth OpenID
+9 more
Windows PowerShell Azure Active Directory Phishing Zero Trust Network Access Security Assertion Markup Language (SAML) Scripting Enterprise Software Applications Backend Togaf

Job description

Join a dynamic team driving global identity integration and lifecycle management across multi-tenant environments. You ll design, configure, and continuously improve Microsoft Entra ID controls spanning Conditional Access, authentication methods, SCIM provisioning, cross-tenant synchronization, and privileged access governance. Working closely with teams in Japan and the US, you ll build automation and backend identity services that keep access secure, auditable, and resilient at enterprise scale. If you re a hands-on IAM engineer who enjoys solving complex identity challenges, this is your opportunity to make security measurable and operationally efficient., * Engineer and tune Microsoft Entra Conditional Access policies (authentication strengths, named locations, sign-in/session controls)

  • Own Entra application registrations and enterprise SSO integrations (OAuth 2.0, OIDC, SAML)
  • Build and maintain multi-tenant/B2B guest identity lifecycle (provisioning to offboarding)
  • Enhance cross-tenant synchronization and centralized federated identity flows
  • Implement SCIM provisioning integrations and troubleshoot identity lifecycle automation
  • Automate identity object and policy management using Microsoft Graph API
  • Design and develop backend identity services for token issuance, authentication, and enforcement
  • Administer PIM/PAM-related access reviews, activation policies, and privileged role assignments
  • Expand phishing-resistant MFA coverage (FIDO2, certificate-based auth, Authenticator) using identity protection signals
  • Modernize legacy identity tools via scalable, automated IAM processes
  • Document runbooks and maintain operational rigor for audit readiness
  • Collaborate globally with Japan and US teams to deliver secure identity transitions

Requirements

Do you have experience in SSO?, * Deep, hands-on IAM engineering expertise specifically in Microsoft Entra ID

  • Experience operating identity at scale with multi-tenant and B2B collaboration
  • Strong automation skills leveraging PowerShell and Microsoft Graph API
  • A proven track record delivering complex security initiatives independently
  • Confidence building backend services that support authentication and identity lifecycle operations, * 5+ years IAM engineering experience with Microsoft Entra ID (Azure AD)
  • Advanced Conditional Access knowledge and risk-based access controls (Identity Protection)
  • Extensive Microsoft Graph API expertise (users, groups, apps, policies, audit logs)
  • Multi-Entra tenant, cross-tenant access, and B2B guest management experience
  • SCIM provisioning + OAuth 2.0 / OIDC / SAML enterprise application management
  • PIM role management and activation/access review experience
  • MFA implementation skills (FIDO2, CBA, Authenticator)
  • Backend identity services experience (authentication, token issuance, policy enforcement)
  • Proficiency in PowerShell and/or scripting (Python or JavaScript)

Other Skills:

  • Experience with Agile/ITIL/TOGAF or similar delivery methodologies
  • Strong documentation habits and independent execution, * Preferred: Microsoft SC-300 certification and/or experience with Aquera, Azure Logic Apps, zero trust/identity-first frameworks, and identity lifecycle (joiner/mover/leaver).

Benefits & conditions

3.63.6 out of 5 stars Plano, TX 75074 $70 - $80 an hour - Contract, Pulled from the full job description

  • 401(k)
  • Health insurance
  • Vision insurance
  • Dental insurance

About the company

Our Client: A leading provider of enterprise cybersecurity and identity security capabilities, is seeking a Senior IAM Engineer Global Identity Integration. This role offers the chance to shape secure, scalable identity architecture using Microsoft Entra ID while advancing your career through ownership of global authentication, authorization, and lifecycle automation in an innovation-driven environment.

Position: Our Client: A leading provider of enterprise cybersecurity and identity security capabilities, is seeking a Senior IAM Engineer Global Identity Integration. This role offers the chance to shape secure, scalable identity architecture using Microsoft Entra ID while advancing your career through ownership of global authentication, authorization, and lifecycle automation in an innovation-driven environment., Calance is a global IT company with operations in the United States, Canada, and India. Over the years, Calance has grown organically and has acquired numerous successful IT Services firms along the way. As a result, the company today is a mix of diverse cultures, talents, and expertise that collaborate globally to bring our best capabilities and thinking to clients. Calance also offers benefits which includes Medical, Dental, Vision care, and 401K.

Calance - the place to grow. www.calance.com

You must create an Indeed account before continuing to the company website to apply

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · WWC 2024

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all