Azure IAM Engineer

Luxoft

Bengaluru

On-site

INR 4,000,000 - 7,000,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Luxoft seeks an experienced Azure Privileged Identity Management (PIM) Senior Engineer to drive design, implementation, automation, and governance of privileged access within Microsoft Entra ID and Azure environments.

The role requires hands-on experience with PIM in large-scale enterprises, plus automation using Terraform, Git, Ansible, PowerShell, and Python, and federation integrations via CI/CD pipelines. Collaboration with IAM, Cloud Eng., Cybersecurity, DevOps, and Compliance is essential.

Qualifications

  • 7+ years in IAM and Azure environments.
  • Experience integrating identity security controls with DevSecOps practices.
  • Terraform (Mandatory and Expert Level).
  • Git-Based Source Control and Automation Frameworks (Mandatory and Expert Level).
  • REST API Integrations and CI/CD Pipelines (Mandatory and Expert Level).
  • PowerShell (Mandatory and Expert Level).
  • Python (Mandatory and Expert Level).
  • Microsoft Certifications: SC-300, AZ-500, AZ-104.

Responsibilities

  • Lead design, implementation, configuration, and ongoing administration of Microsoft Entra ID (Azure AD) Privileged Identity Management (PIM).
  • Manage privileged access controls across Microsoft Entra ID, Azure subscriptions, management groups, resource groups, and Azure resources.
  • Define and maintain privileged access governance policies, standards, operational procedures, and security controls.
  • Design and implement Just-In-Time (JIT) access, role eligibility, approval workflows, access reviews, Privileged Access Groups, and role activation policies.

Skills

Terraform
Git automation
REST API
CI/CD pipelines
PowerShell
Python
Azure PIM
Azure Entra ID
Zero Trust
IAM & Azure
Enterprise Azure

Education

SC-300 Certification
AZ-500 Certification
AZ-104 Certification

Job description

Project Description

We are seeking an experienced Azure Privileged Identity Management (PIM) Senior Engineer to drive the design, implementation, automation, and governance of privileged access management within Microsoft Entra ID (Azure AD) and Azure environments. This role requires a highly skilled identity professional with proven expertise in managing Azure PIM end-to-end, including privileged role governance, access lifecycle management, automation, compliance, and security controls.

The ideal candidate will have hands-on experience implementing and operating Azure PIM in large-scale enterprise environments, developing automation using Terraform, Git, Ansible, PowerShell, and Python and customizing federation integrations through CI/CD pipelines. The candidate should possess deep knowledge of privileged identity governance, Service Principal lifecycle management, Managed Identity administration, and privileged access controls aligned with Zero Trust principles.

This role will partner closely with Identity & Access Management, Cloud Engineering, Cybersecurity, DevOps, and Compliance teams to ensure privileged access is managed securely, efficiently, and in accordance with enterprise security standards.

Responsibilities:
  • Lead the design, implementation, configuration, and ongoing administration of Microsoft Entra ID (Azure AD) Privileged Identity Management (PIM).
  • Manage privileged access controls across Microsoft Entra ID, Azure subscriptions, management groups, resource groups, and Azure resources.
  • Define and maintain privileged access governance policies, standards, operational procedures, and security controls aligned with enterprise requirements.
  • Design and implement Just-In-Time (JIT) access, role eligibility, approval workflows, access reviews, Privileged Access Groups, and role activation policies.
  • Perform privileged access assessments, role reviews, recertifications, and remediation of excessive or inappropriate access.
  • Develop, maintain, and enhance automation solutions using Terraform, Git, CI/CD Pipelines, Ansible, PowerShell, and Python for identity and privileged access management.
  • Build reusable Infrastructure-as-Code (IaC) modules and deployment frameworks for Azure PIM, role assignments, Service Principals, Managed Identities, and related identity governance controls.
  • Design, customize, and support federation integrations and authentication workflows using automated CI/CD pipelines.
  • Manage and troubleshoot federation configurations, claims transformations, token issuance policies, and authentication-related issues.
  • Develop and maintain REST API-based integrations and automation workflows for identity lifecycle management.
  • Manage the complete lifecycle of Service Principals, Enterprise Applications, and Managed Identities, including provisioning, governance, credential management, and decommissioning.
  • Implement and manage secrets, certificates, credential rotation, expiration monitoring, and secure authentication practices for non-human identities.
  • Automate onboarding, access assignment, certification, and retirement processes for privileged and service identities.
  • Monitor privileged access activities and maintain reporting, dashboards, and audit evidence to support security, compliance, and operational requirements.
  • Support internal and external audits, security reviews, risk assessments, and compliance initiatives related to privileged access management.
  • Investigate and resolve identity, authentication, authorization, and privileged access issues across Azure environments.
  • Collaborate with IAM, Security, Cloud Engineering, DevOps, and application teams to implement secure and scalable access management solutions.
  • Drive continuous improvements in privileged access governance, identity security, automation, and operational efficiency.
Mandatory Skills Description:
  • 7+ years of experience in Identity and Access Management (IAM) and Microsoft Azure environments.
  • Experience integrating identity security controls with enterprise DevSecOps practices
  • Terraform (Mandatory and Expert Level)
  • Git-Based Source Control and Automation Frameworks (Mandatory and Expert Level)
  • REST API Integrations and CI/CD Pipelines (Mandatory and Expert Level)
  • PowerShell (Mandatory and Expert Level)
  • Python (Mandatory and Expert Level)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Azure Administrator Associate (AZ-104)
  • Experience supporting large enterprise or global Azure environments.
  • Experience implementing Zero Trust security principles.
  • Knowledge of cloud security, governance, and compliance frameworks.
Nice-to-Have Skills Description:
  • Work in agile environment
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Azure PIM (Privileged Identity Management) Senior Engineer
Azure PIM (Privileged Identity Management) Senior Engineer

Luxoft • India

On-site
INR 800,000 - 1,200,000
Privilega Access management + Azure Devoper
Privilega Access management + Azure Devoper

Statusneo Technology Consulting • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Developer – Microsoft Entra ID PIM & Terraform Automation
Developer – Microsoft Entra ID PIM & Terraform Automation

Nexifyr Consulting Pvt Ltd • Bengaluru

Hybrid
INR 1,500,000 - 2,500,000
IAM Architect
IAM Architect

Gas Strategies • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Identity & Access Management Engineer
Identity & Access Management Engineer

Cherry Bekaert • Chennai District

On-site
INR 1,200,000 - 1,500,000
CyberArk SME L3 Engineer IAM, IGA & PAM
CyberArk SME L3 Engineer IAM, IGA & PAM

UST • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Identity & Access Management Engineer (AD, Entra ID, Agentic identity)
Identity & Access Management Engineer (AD, Entra ID, Agentic identity)

Crisil • Mumbai

On-site
INR 3,500,000 - 5,500,000
Systems Engineering Senior Specialist
Systems Engineering Senior Specialist

NTT DATA BUSINESS SOLUTIONS • Dadri

On-site
INR 900,000 - 1,400,000
Executive Manager - IAM / Azure AD
Executive Manager - IAM / Azure AD

PepsiCo • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Senior Identity & Access Management Engineer
Senior Identity & Access Management Engineer

India Fan Corporation • Hyderabad

On-site
INR 2,400,000 - 3,600,000