Azure Cloud Engineer – ICAM

EdgeByte Solutions, LLC

Northern (KY)

On-site

USD 75,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

EdgeByte Solutions seeks an Azure Cloud Engineer – Identity & Access Management (ICAM) to architect, implement, secure, and support enterprise identity solutions across Microsoft Azure, Entra ID, hybrid-cloud, and on-premises environments.

The role requires hands-on experience with identity architecture, authentication, authorization, federation, and Zero Trust, spanning workforce identities, administrators, external users, and service accounts across modern and legacy environments.

Qualifications

  • CompTIA Security+ certification is required.
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300) is required.
  • 8+ years in enterprise IT, cloud, security, or identity engineering.
  • 4+ years hands-on cloud or identity engineering experience.
  • Strong experience with Entra ID and Active Directory.
  • Experience with SSO, MFA, Conditional Access, RBAC, PIM, and governance.
  • Knowledge of SAML, OAuth 2.0, OIDC, Kerberos, LDAP, SCIM, and modern authentication.
  • Experience integrating enterprise/SaaS/legacy apps with centralized identity providers.
  • Understanding of PKI, privileged access, and Zero Trust principles.
  • Proficient in PowerShell, Graph, APIs, Terraform, or automation.

Responsibilities

  • Design and implement Microsoft Entra ID and hybrid identity architectures.
  • Configure SSO, MFA, Conditional Access, and identity security controls.
  • Integrate applications using SAML, OAuth2.0, OIDC, SCIM and related standards.
  • Support AD, Entra Connect/Cloud Sync, LDAP, Kerberos in hybrid environments.
  • Manage Enterprise Applications, app registrations, service principals, and permissions.
  • Implement PIM, RBAC, identity governance, access reviews, lifecycle management.
  • Support PKI, certificate-based authentication, FIDO2, and passwordless tech.
  • Troubleshoot authentication, federation, provisioning, and directory sync issues.
  • Automate identity ops with PowerShell, Graph, APIs, Terraform.
  • Develop identity architecture diagrams, runbooks, and standards.
  • Apply Zero Trust and least privilege across customer environments.
  • Collaborate with cloud, security, networking, DevOps teams.

Skills

Microsoft Entra ID
Active Directory
SSO
MFA
Conditional Access
RBAC
PIM
Identity governance
SAML
OAuth 2.0
OIDC
Kerberos
LDAP
SCIM
Zero Trust
Identity lifecycle management
PowerShell
Microsoft Graph
APIs
Terraform

Education

CompTIA Security+
Microsoft SC-300 Identity and Access Administrator

Tools

PowerShell
Microsoft Graph
APIs
Terraform

Job description

EdgeByte is seeking an Azure Cloud Engineer – Identity & Access Management (ICAM) to architect, implement, secure, and support enterprise identity solutions across Microsoft Azure, Microsoft Entra ID, hybrid-cloud, and on-premises environments.

This role requires hands‑on experience with identity architecture, authentication, authorization, federation, identity lifecycle management, privileged access, application integration, and Zero Trust principles. The engineer will support workforce identities, administrators, external users, applications, service accounts, and workload identities across modern and legacy environments.

The position will support customers across commercial, state and local government, education, federal, and other regulated industries. Responsibilities may include Microsoft Entra ID, Active Directory integration, SSO, MFA, Conditional Access, identity governance, PIM, application federation, certificate‑based authentication, and automated identity provisioning.

Reponsibilities:
  • Design and implement Microsoft Entra ID and hybrid identity architectures.
  • Configure SSO, MFA, Conditional Access, passwordless authentication, and identity security controls.
  • Integrate applications using SAML, OAuth 2.0, OIDC, SCIM, and related identity standards.
  • Support Active Directory, Entra Connect/Cloud Sync, LDAP, Kerberos, and hybrid authentication.
  • Manage Enterprise Applications, App Registrations, service principals, managed identities, and application permissions.
  • Implement PIM, RBAC, identity governance, access reviews, and identity lifecycle management.
  • Support PKI, certificate‑based authentication, PIV/CAC, FIDO2, and other strong‑authentication technologies where required.
  • Troubleshoot authentication, authorization, federation, provisioning, and directory synchronization issues.
  • Automate identity operations using PowerShell, Microsoft Graph, APIs, Terraform, or similar technologies.
  • Develop identity architecture diagrams, implementation plans, standards, runbooks, and technical documentation.
  • Apply Zero Trust, least privilege, privileged‑access, and identity‑security principles across customer environments.
  • Collaborate with cloud, cybersecurity, networking, infrastructure, application, and DevOps teams.
Required Qualifications:
  • CompTIA Security+
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • 8+ years of enterprise IT, cloud, infrastructure, cybersecurity, or identity engineering experience.
  • 4+ years of hands‑on cloud or identity engineering experience.
  • Strong experience with Microsoft Entra ID and Active Directory.
  • Experience with SSO, MFA, Conditional Access, RBAC, PIM, and identity governance.
  • Knowledge of SAML, OAuth 2.0, OIDC, Kerberos, LDAP, SCIM, and modern authentication.
  • Experience integrating enterprise, SaaS, and legacy applications with centralized identity providers.
  • Understanding of PKI, certificates, privileged access, passwordless authentication, and Zero Trust principles.
  • Experience troubleshooting complex authentication, authorization, federation, provisioning, and identity issues.
  • Experience with Enterprise Applications, App Registrations, service principals, managed identities, and application permissions.
  • Experience with PowerShell, Microsoft Graph, APIs, Terraform, or similar automation technologies.
  • Strong technical documentation, troubleshooting, and communication skills.
  • U.S. work authorization and ability to satisfy customer‑specific access requirements.
Preferred Qualifications:
  • Advanced Microsoft Entra ID Governance, PIM, Identity Protection, or Conditional Access experience.
  • Experience with PKI, PIV/CAC, FIDO2, certificate‑based authentication, or passwordless technologies.
  • Experience with Okta, Ping Identity, SailPoint, CyberArk, BeyondTrust, Duo, or similar identity platforms.
  • Experience with SCIM provisioning, Microsoft Graph integrations, APIs, or identity automation.
  • Experience with Entra Application Proxy and modernization of authentication for legacy applications.
  • Experience with hybrid identity migrations, tenant consolidation, Active Directory modernization, or tenant‑to‑tenant migrations.
  • Experience implementing privileged‑access management, administrative tiering, and least‑privilege architectures.
  • Knowledge of NIST 800-53, NIST 800-63, Zero Trust, FedRAMP, CMMC, CIS, ISO 27001, or similar frameworks.
  • Experience supporting regulated, commercial, government, defense, financial, healthcare, or other security‑sensitive environments.
  • Relevant Microsoft identity, Azure, cloud, security, or architecture certifications.
POSITION DETAILS

Job ID

CLD-ENG-ID001

Department

Identity & Access Management

Job Family

ICAM / Identity

Specialty

Experience Level

Intermediate

Labor Category

T2

Position Status

Work Arrangement

Remote

Location

Any State

Salary Range

$75,000 - $150,000

Clearance

Ability to obtain and maintain customer‑required security clearance

Supporting federal, state & local government,
small businesses, and commercial enterprises
with secure, scalable technology solutions.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior ICAM Engineer
Senior ICAM Engineer

Easy Dynamics Corp. • United States

On-site
USD 160,000 - 200,000
Sr ICAM Engineer
Sr ICAM Engineer

Easy Dynamics Corp • McLean (VA)

On-site
USD 144,000 - 176,000
Senior ICAM Engineer, Remote, United States
Senior ICAM Engineer, Remote, United States

Technologist, Inc. • Northern (KY)

Remote
USD 120,000 - 160,000
Health Care Plan
401k with employer match
Paid Time Off
+2
ICAM Specialist
ICAM Specialist

CELESTIAL INNOVATIONS GROUP LLC • Washington

Hybrid
USD 120,000 - 150,000
401(k)
Competitive salary
Dental insurance
+5
Senior Identity, Credential, and Access Management (ICAM) Security Engineer
Senior Identity, Credential, and Access Management (ICAM) Security Engineer

Ampcus, Inc • Washington

On-site
USD 100,000 - 130,000
Azure ICAM Architect: Identity Security Leader (Remote)
Azure ICAM Architect: Identity Security Leader (Remote)

EdgeByte Solutions, LLC • Northern (KY)

Hybrid
USD 75,000 - 150,000
Identity & Access Management (IAM)- Senior Engineer - Microsoft Entra
Identity & Access Management (IAM)- Senior Engineer - Microsoft Entra

ARK Infotech Spectrum India Pvt. Ltd • Dallas (TX)

Hybrid
USD 110,000 - 150,000
Hybrid work arrangement
Senior Systems Engineer
Senior Systems Engineer

GDH • Alexandria (VA)

Hybrid
USD 83,000 - 90,000
Hybrid work schedule
Cyber Security - Centralized Application Management
Cyber Security - Centralized Application Management

Tata Consultancy Services • Phoenix (AZ)

On-site
USD 90,000 - 110,000
AI Identity Architect
AI Identity Architect

Tata Consultancy Services • Chicago (IL)

On-site
USD 130,000 - 140,000
Discretionary Annual Incentive
Comprehensive Medical Coverage
Family Support
+4