IAM+ Active Directory Engineer

UST

Bengaluru

On-site

INR 1,600,000 - 2,100,000

Full time

17 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

UST is seeking an Associate III - Cloud Infrastructure Services role focused on identity, access, and authentication across hybrid environments. You will design, implement, and manage IAM solutions spanning Active Directory, Microsoft Entra ID, Azure, AWS, and GCP, ensuring secure access to enterprise apps and cloud resources.

The role emphasizes Zero Trust, MFA, federation, and secure cloud transformation initiatives, with governance of privileged access and a strong emphasis on identity

Qualifications

  • Experience designing and managing IAM solutions across AD and cloud platforms.
  • Strong knowledge of authentication, authorization, and federation concepts.
  • Ability to implement MFA, SSO, and zero trust controls across hybrid environments.

Responsibilities

  • Design, implement, and manage IAM across AD, Entra ID, Azure, AWS, and GCP for secure, scalable identity services.
  • Lead SME work for AD and Entra ID, managing identity lifecycle, authentication, authorization, federation, and hybrid identity integrations.
  • Administer and secure Active Directory, including GPO, DNS, DHCP, OUs, AD Sites & Services, domain controllers, replication, and directory security hardening.
  • Implement modern identity security controls including MFA, Conditional Access, Identity Protection, PIM, Access Reviews, Entitlement Management, and SSO.

Skills

Active Directory
Azure Key Vault
AWS
DHCP

Job description

Role Description

Associate III - Cloud Infrastructure Services

Who We Are

At UST, we help the world’s best organizations grow and succeed through transformation. Bringing together the right talent, tools, and ideas, we work with our client to co-create lasting change. Together, with over 30,000 employees in 25 countries, we build for boundless impact—touching billions of lives in the process. Visit us at .

You are:

The Cloud Identity & Directory Services Engineer is responsible for designing, implementing, and managing identity, authentication, and authorization services across hybrid environments, including Active Directory and major cloud platforms such as Azure, AWS, and GCP. This role focuses on securing both human and machine identities, enabling Zero Trust principles, and ensuring seamless access to enterprise applications and cloud resources. AD and cloud IAM Engineer

The Opportunity
  • Design, implement, and manage enterprise Identity & Access Management (IAM) solutions across Active Directory, Microsoft Entra ID, Azure, AWS, and GCP, ensuring secure and scalable identity services.
  • Serve as the Subject Matter Expert (SME) for Active Directory and Microsoft Entra ID, managing identity lifecycle, authentication, authorization, federation, and hybrid identity integrations.
  • Administer and secure Active Directory environments, including Group Policy (GPO), DNS, DHCP, Organizational Units (OUs), AD Sites & Services, domain controllers, replication, and directory security hardening.
  • Implement modern identity security controls including Multi-Factor Authentication (MFA), Conditional Access, Identity Protection, Privileged Identity Management (PIM), Access Reviews, Entitlement Management, and Single Sign-On (SSO).
  • Design and support secure authentication and federation architectures using SAML, OAuth 2.0, OpenID Connect (OIDC), Kerberos, LDAP, and FIDO2 standards.
  • Manage cloud identity and access controls across AWS and GCP, including IAM roles, policies, service accounts, federated access, workload identities, cross-account access, and least-privilege enforcement
What Are We Looking For
  • Lead governance of enterprise applications and privileged access, including Azure Enterprise Applications, App Registrations, Service Principals, Secrets Management, and privileged account controls.
  • Drive IAM governance, compliance, and risk management through access certifications, role-based access control (RBAC), segregation of duties (SoD), audit readiness, and regulatory compliance initiatives.
  • Manage identity security technologies and supporting infrastructure, including PKI, certificate lifecycle management, Azure Key Vault, AWS Secrets Manager, HashiCorp Vault, and machine/workload identities.
  • Partner with Cloud, Security, Infrastructure, and Compliance teams to advance Zero Trust adoption, strengthen identity security posture, remediate IAM-related findings, and support secure cloud transformation initiatives.
  • Preferred Certifications One or more of the following certifications are preferred: Microsoft SC-300, AZ-500, SC-100, AWS Certified Security Specialty, Google Professional Cloud Security Engineer, CISSP, CCSP, or equivalent Identity & Access Management (IAM) certification.
What We Believe

We’re proud to embrace the same values that have shaped UST since the beginning. Since day one, we’ve been building enduring relationships and a culture of integrity. And today, it's those same values that are inspiring us to encourage innovation from everyone to champion diversity and inclusion and to place people at the centre of everything we do.

Humility

We will listen, learn, be empathetic and help selflessly in our interactions with everyone.

Humanity

Through business, we will better the lives of those less fortunate than ourselves.

Integrity

We honour our commitments and act with responsibility in all our relationships.

Equal Employment Opportunity Statement

UST is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation.

All employment decisions shall be made without regard to age, race, creed, colour, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.

UST reserves the right to periodically redefine your roles and responsibilities based on the requirements of the organization and/or your performance.

  • To support and promote the values of UST.
  • Comply with all Company policies and procedures
Skills

Active Directory, Azure Key Vault, AWS, DHCP

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Identity Management Consultant
Identity Management Consultant

Questhiring • Bengaluru

On-site
INR 4,000,000 - 7,000,000
IAM Architect
IAM Architect

Gas Strategies • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Active Directory Architect
Active Directory Architect

Persistent • Pune District

Hybrid
INR 3,500,000 - 7,000,000
Competitive salary
Education sponsorships
Cutting-edge technologies
+3
Identity & Access Management Engineer
Identity & Access Management Engineer

Cherry Bekaert • Chennai District

On-site
INR 1,200,000 - 1,500,000
Principal Software Engineer
Principal Software Engineer

Providence India • Hyderabad

On-site
INR 4,000,000 - 8,000,000
Principal Specialist, IT Application and Infra Management (NL)
Principal Specialist, IT Application and Infra Management (NL)

Randstad • Hyderabad

On-site
INR 1,800,000 - 2,800,000
Active Directory Administration:Infrastructure & Support_AFL
Active Directory Administration:Infrastructure & Support_AFL

Axis Finance Limited • Mumbai

On-site
INR 1,500,000 - 2,200,000
Identity & Access Management Engineer (AD, Entra ID, Agentic identity)
Identity & Access Management Engineer (AD, Entra ID, Agentic identity)

Crisil • Mumbai

On-site
INR 3,500,000 - 5,500,000
IdentITy and Access Management Engineer
IdentITy and Access Management Engineer

SAS Research and Development (SAS R&D) • Pune District

Hybrid
INR 1,800,000 - 3,200,000
AD Technical Lead
AD Technical Lead

Cigres Technologies Private Limited • Bengaluru

On-site
INR 1,000,000 - 2,000,000