IAM Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
IAM Engineer (Microsoft Entra ID): Lead the design and implementation of cloud-native identity solutions, transitioning from legacy on-premises Active Directory to modern cloud-first architecture with an accent on hybrid integration, Zero Trust engineering, and infrastructure rationalization. Focus on optimizing synchronization, implementing Conditional Access policies, and integrating modern authentication protocols like OIDC, SAML, and OAuth.
Richmond, VA 23219
$210,100 - $241,300
Company
Staffing firm providing IT and engineering talent solutions.
What you will do
- Lead identity modernization by designing and implementing cloud-native solutions in Microsoft Entra ID to reduce reliance on legacy infrastructure.
- Manage hybrid integration between on-premises Active Directory and Entra ID for seamless synchronization and security.
- Rationalize AD domains, forests, and GPOs to simplify infrastructure and minimize attack surface.
- Implement Zero Trust controls including Conditional Access, Least-Privilege Access, and Identity Governance.
- Collaborate with Security, Infrastructure, and Application teams to integrate modern protocols (OIDC, SAML, OAuth).
- Create architecture diagrams, technical designs, and implementation playbooks for global identity services.
Requirements
- Deep expertise in Microsoft Active Directory (Forest/Domain design, DNS, Trust relationships, GPO management).
- Proven experience with Microsoft Entra ID and hybrid identity synchronization.
- Proficiency in legacy protocols (Kerberos, LDAP) and modern standards (SAML, OAuth 2.0, OpenID Connect).
- Strong understanding of Zero Trust architecture, identity lifecycle management, and security governance.
- Excellent communication skills to document complex concepts for stakeholders.
Culture & Benefits
- For assignments 13+ weeks: major medical, dental, vision, 401k, statutory sick pay where required.
- Reasonable accommodations for disabilities.
- Equal Opportunity Employer committed to diversity and inclusion.
- Participates in E-Verify program as required by law.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →