Active Directory Services / Entra Engineer (Hybrid)

BioSpace

North Chicago (IL)

On-site

USD 120,000 - 150,000

Full time

46 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

AbbVie is seeking an IAM Directory Services Engineer to join the Information Security & Risk Management (ISRM) team. You will design, implement, and manage Directory and Authentication solutions for a global workforce of 80,000 users, focusing on Microsoft Entra ID (Azure AD), AD, and certificate services.

Responsibilities include deploying Entra ID features, RBAC, MFA, SSO, and Zero Trust patterns, scripting automation with PowerShell, and collaborating with security, engineering, and

Qualifications

  • Bachelor degree with 5 years of IAM experience or Master’s with 4 years.
  • Extensive hands-on work with Entra ID/Azure AD and Active Directory.
  • Advanced PowerShell scripting for automation and management.

Responsibilities

  • Designing, deploying, and maintaining Entra ID and AD solutions across hybrid/multi-cloud environments.
  • Developing and enforcing MFA, SSO, and Zero Trust controls.
  • Automating identity tasks with PowerShell and integrating enterprise apps.

Skills

Entra ID/Azure AD
Active Directory
PowerShell scripting
RBAC / ABAC
Zero Trust
Identity & Access Management
Hybrid identity
Certificate Services
SCEP/NDES
Security operations collaboration

Education

Bachelor Degree in a related field
Masters Degree

Tools

AD CS
SpecOps
LastPass

Job description

About AbbVie
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology, and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us atwww.abbvie.com. Follow @abbvie onLinkedIn,Facebook,Instagram,XandYouTube.

Company Description
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology, and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us atwww.abbvie.com. Follow @abbvie onLinkedIn,Facebook,Instagram,XandYouTube.
Job Description
Join AbbVies Information Security & Risk Management (ISRM) team as anIAM Directory Services Engineer, where we empower our partners to succeed by delivering the knowledge, tools, and support needed toleveragedata and technology securely and effectively. As part of our Identity & Access Management (IAM) team,you willplay a pivotal role in shaping and executing our enterprise-wide IAM strategy.
The ideal candidate will have deepexpertiseinMicrosoft Entra ID (formerly Azure AD), Active Directory, Certificate Services,supportingrelatedauthentication tools,andPowerShell scriptingexperienceto design, implement, and manage Directory and Authentication solutions for our global workforce of80,000 users.
Responsibilities

  • Designing, deploying, andmaintainingMicrosoft Entra ID (formerly Azure AD) solutions, including conditional access policies, application integrations, multi-factor authentication (MFA), single sign-on (SSO), and Zero Trust.
  • Designing and managing custom roles and RBAC (Role-Based Access Control) in Entra ID for granular access management across hybrid and multi-cloud environments.
  • Developing andmaintainingPowerShell scripts to automate identity management tasks, streamline processes, and enhance operational efficiency.
  • Aligning Entra ID and hybrid identity controls with security best practices through ongoing configuration hardening, policy tuning, and operational guardrails (e.g., Zero Trust patterns, privileged access controls).
  • Collaborating with cross-functional teams to integrate enterprise applications and cloud platforms with Directory and Authentication Services.
  • Performing advanced troubleshooting and root cause analysis of complex Entra ID and Active Directory authentication and authorization issues.
  • Administering and supporting certificate lifecycle management and authentication infrastructure, including Active Directory Certificate Services (AD CS), SCEP/NDES configurations, and endpoint credential and password management tools such asSpecOpsand LastPass.
  • Staying current with industry trends and emerging technologies in IAM, AD, Azure, and related fields.
Qualifications
  • Bachelor Degree with 5 years experience OR Masters Degree with 4 years experience
  • Respective years of demonstratedexperience with a focus on Entra ID/Azure AD and Active Directory.
  • Advancedproficiencyin PowerShell scripting for automation and management of identity systems.
  • Hands-on experience with Active Directory, Entra ID features, including conditional access, MFA, SSO, and Entra ID Connect.
  • Experience supporting certificate and authentication services, including Active Directory Certificate Services (AD CS).
  • Excellent problem-solving skills and ability to work in a fast-paced, global environment.
  • Strong collaboration skills across engineering, security, and operations teams
  • In-depth knowledge of securing identity platforms and hybrid directory environments, including threat modeling and control design
  • Strong communicationskills with the ability to document designs, drive implementation plans, and coordinate deliverables with stakeholders
Preferred
  • 5 years experience with a focus on Entra ID/Azure AD and Active Directory.
  • Microsoft certifications such as Microsoft Certified: Identity and Access Administrator Associate or Microsoft Certified: Azure Solutions Architect Expert.
  • Experience supporting large-scale environments (10,000+ users; 80,000+ users preferred).
  • Familiarity with cloud platforms like AWS or Google Cloud for hybrid identity solutions.
  • Knowledge of security best practices and compliance frameworks (e.g., NIST, ISO 27001).
  • Experience with Active Directory (AD) environments, including group policies, user provisioning, directorysynchronization,and Certificate Services.
  • Familiarity with PKI and certificate services administration (AD CS, SCEP/NDES) for issuing and managing device and user certificates supporting authentication use cases.
Additional Information

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state orlocal law:

  • The compensation range described below is the range of possible base pay compensation that the Companybelieves ingood faith it will pay for this role at thetimeofthis posting based on the job grade for this position.Individualcompensation paid within this range will depend on many factors including geographiclocation,andwemayultimatelypaymore or less than the posted range. This range may bemodifiedin thefuture.
  • We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick),medical/dental/visioninsurance and 401(k) to eligibleemployees.
  • This job is eligible toparticipatein our short-term incentiveprograms.
Note: No amount of payis considered to bewages or compensation until such amount is earned, vested, anddeterminable.Theamountandavailabilityof anybonus,commission, incentive, benefits, or any other form ofcompensation and benefitsthat are allocable to a particular employeeremainsin the Company'ssoleandabsolutediscretion unless and until paid andmay bemodifiedat the Companys sole and absolute discretion, consistent withapplicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visithttps://www.abbvie.com/join-us/equal-employment-opportunity-employer.html
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
https://www.abbvie.com/join-us/reasonable-accommodations.html
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Active Directory Services / Entra Engineer (Hybrid)
Active Directory Services / Entra Engineer (Hybrid)

Allergan • North Chicago (IL)

On-site
USD 120,000 - 160,000
Medical/dental/vision insurance
401(k) plan
Paid time off
Directory Services - Active Directory and Entra Architect
Directory Services - Active Directory and Entra Architect

Initial Therapeutics, Inc. • Raleigh (NC)

Remote
USD 140,000 - 190,000
Paid time off
Medical, dental, and vision insurance
401(k) plan
+2
Active Directory Services / Entra Engineer (Hybrid)
Active Directory Services / Entra Engineer (Hybrid)

ABBVIE • North Chicago (IL)

On-site
USD 84,500 - 162,000
Senior IAM Engineer M&A (Hybrid)
Senior IAM Engineer M&A (Hybrid)

BioSpace • North Chicago (IL)

On-site
USD 120,000 - 180,000
Senior IAM Engineer M&A (Hybrid)
Senior IAM Engineer M&A (Hybrid)

Allergan • North Chicago (IL)

On-site
USD 120,000 - 180,000
Identity and Access Management Engineer (Hybrid)
Identity and Access Management Engineer (Hybrid)

BioSpace • North Chicago (IL)

On-site
USD 120,000 - 160,000
Paid time off
Medical/dental/vision insurance
401(k)
IAM Federation Services (Okta) Engineer (Hybrid)
IAM Federation Services (Okta) Engineer (Hybrid)

Allergan • North Chicago (IL)

On-site
USD 120,000 - 165,000
Application & Platform Security Architect
Application & Platform Security Architect

BioSpace • North Chicago (IL)

On-site
USD 140,000 - 190,000
Site Reliability Engineer (Hybrid)
Site Reliability Engineer (Hybrid)

Allergan • North Chicago (IL)

Hybrid
USD 120,000 - 160,000
Application Security Engineer
Application Security Engineer

Allergan • North Chicago (IL)

On-site
USD 120,000 - 150,000
Paid time off
Medical/dental/vision insurance
401(k)