Назад
7 часов назад

Identity & Workplace Engineer (Cybersecurity)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
UK/US/Netherlands +2 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Identity & Workplace Engineer (Microsoft Entra ID/Google Cloud IAM): Owning identity providers, access governance, federation, provisioning, and lifecycle automation across Microsoft and Google environments with an accent on SAML/OIDC integrations, SCIM provisioning, least-privilege administration, and identity incident resolution. Focus on diagnosing authentication and provisioning failures, automating joiner-mover-leaver workflows, and governing service accounts, workload identities, applications, and privileged access.

Location: Remote - United States. Applicants must be authorized to work in the country in which they apply and provide proof of employment eligibility.

Company

Nebius builds a full-stack AI cloud platform for data and model training, inference, and production deployment, with infrastructure spanning compute, storage, networking, and applied AI.

What you will do

  • Own Microsoft Entra ID and Microsoft 365 identity, access, tenant, licensing, application, and administrative configurations.
  • Design and operate Conditional Access, authentication methods, phishing-resistant factors, RBAC, PIM, access reviews, and entitlement management.
  • Onboard and govern applications through SAML 2.0, OIDC, OAuth 2.0, SCIM 2.0, consent controls, and credential lifecycle management.
  • Administer Google Workspace, Cloud Identity, Google Cloud IAM, SSO profiles, organizational units, access policies, service accounts, and workload identity federation.
  • Build production-grade automation with PowerShell, Microsoft Graph, Google APIs, gcloud, Azure Automation, Logic Apps, or Power Automate.
  • Resolve identity incidents and diagnose sign-in, audit, provisioning, authentication, and access failures using logs and KQL.

Requirements

  • 3+ years administering Microsoft Entra ID in production as a primary responsibility.
  • Experience with Microsoft 365 administration across Exchange Online, SharePoint Online, and Power Platform.
  • Experience administering Google Workspace, Cloud Identity, and Google Cloud IAM.
  • Strong PowerShell skills, including the Microsoft Graph PowerShell SDK and REST APIs.
  • Experience with automation platforms such as Azure Automation Runbooks, Azure Logic Apps, or Power Automate.
  • Written and spoken English at B2 or higher; authorization to work in the United States is required.

Nice to have

  • SC-300, MS-102, or SC-401 certification, or equivalent expertise.
  • Experience with Microsoft Entra ID Governance, Microsoft Purview, Defender for Cloud Apps, or Microsoft Sentinel.
  • Experience with Google Cloud custom roles, organization policies, and workload identity federation.
  • Git, CI/CD, Pester, Bicep, Terraform, or audit evidence for SOC 2 or ISO 27001.

Culture & Benefits

  • Competitive compensation and career growth opportunities.
  • Learning opportunities, flexibility, and ownership.
  • Collaborative and innovative international environment.
  • Opportunity to work on impactful AI projects.
  • Fast-moving environment focused on meaningful impact and shaping the future of AI.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →