Engineer and support enterprise identity solutions across Entra ID, Active Directory, SSO, and federated identity platforms (OAuth/OIDC, SAML, WS‑Fed).
Design and maintain policies for MFA, Conditional Access, workload identities, and modern authentication protocols.
Develop automated IAM workflows using PowerShell, Python, Terraform, GitLab/GitHub CI/CD, and other IaC frameworks.
Create predictable and repeatable deployment patterns for identity services through CI/CD pipelines.
Identify opportunities for automation and help evolve an “automate first” engineering culture.
Use tools such as Splunk, Crowdstrike Identity Protection, Bloodhound and other monitoring platforms to analyze identity logs, detect anomalies, and drive resolution.
Work with product and engineering leaders to assess and pilot AI-driven identity technologies.
Lead complex problem resolution and support escalations requiring deep IAM expertise.
Document architecture, decisions, playbooks, and engineering patterns.
Collaborate in agile teams and mentor engineers on identity engineering best practices.
Requirements
Bachelor’s degree in computer science, Cybersecurity, Information Systems, or equivalent experience.
5+ years of professional engineering experience in IAM or directory services.
Strong experience with Active Directory, Entra ID, SSO/IdP integrations, identity lifecycle automation, and Conditional Access.
Hands-on experience with scripting/automation (PowerShell and/or Python).
Experience with CI/CD pipelines (GitLab, GitHub, Azure DevOps).
Knowledge of cloud identity patterns across Azure, AWS, and SaaS providers.
Strong problem‑solving ability and communication skills.
Strong documentation, testing and automation skills.