Administer Microsoft Entra ID and on-premises Active Directory environments, including user and group management, synchronization, and hybrid configurations.
Manage and develop identity lifecycle processes (creation, modification, and deactivation of accounts) across multiple systems, ensuring alignment with HR data.
Triage identity-related security incidents and alerts in Microsoft Defender, investigating compromised accounts, risky sign-ins, privilege misuse, and MFA anomalies; coordinate remediation.
Implement and manage role-based access control (RBAC) in Entra ID and Microsoft 365.
Create integrations between identity systems and enterprise applications, including Dynamics 365, Microsoft 365, and other cloud-based services.
Develop and configure authentication and authorization mechanisms such as Conditional Access, MFA, and Single Sign-On (SSO).
Develop and manage automation scripts, integrations, and workflows to streamline provisioning, deprovisioning, and group management.
Participate in security audits and ensure compliance with institutional, state, and federal policies regarding access control and data protection.
Collaborate with cybersecurity, systems, and application teams to ensure consistent and secure identity practices across systems.
Create technical documentation and user support related to account management, access requests, and authentication issues.
Requirements
Bachelor’s degree in a related field, or progress toward completion of a bachelor’s degree.
A minimum of four (4) years of relevant professional experience in an IT systems or infrastructure-focused role, with at least one (1) year of experience supporting identity and access management, authentication, authorization, DevOps, or directory services.
One (1) year of supervisory or leadership experience.
Strong understanding of Microsoft Entra ID (Azure AD) and Active Directory administration.
Experience with Microsoft 365, Exchange Online, and Teams identity integration.
Familiarity with Dynamics 365 HR and Finance, especially as a source system for user provisioning.
Knowledge of identity lifecycle automation tools, PowerShell scripting, and Microsoft Graph.
Understanding of SSO, SAML, OAuth, and Conditional Access policies.
Working knowledge of information security principles, particularly related to authentication, authorization, and least-privilege access.
Excellent analytical, organizational, and documentation skills.
Ability to work collaboratively with IT staff, HR, and other campus departments.