Microsoft IAM Engineer

Resource Innovations

Chicago (IL)

On-site

USD 75,000 - 115,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Three weeks paid vacation
401(k) with employer match
Medical, dental and vision coverage
Parental leave
Employee assistance program
Commuter benefits

Job summary

Resource Innovations seeks a Microsoft IAM Engineer to lead administration, governance, security, and operational maturity of our identity and access management landscape. You will own Entra ID, lifecycle management, authentication services, and enterprise app integrations while enabling secure cloud adoption.

The role emphasizes automation, cross-functional collaboration, and strong governance across Azure and 365 workloads, with travel up to 15% as needed.

Qualifications

  • 3+ years IAM administration experience; 5+ preferred.
  • Hands-on Entra/AD administration experience.
  • Experience integrating Workday with identity platforms.
  • Experience supporting Azure environments and cloud identity governance.
  • Strong automation via PowerShell and Graph API.
  • Willingness to travel up to 15%.

Responsibilities

  • Administer and support enterprise IAM across Microsoft Entra ID, Azure and on-prem AD.
  • Manage user lifecycle: onboarding, transfers, role changes, offboarding.
  • Configure and maintain SSO, MFA, Conditional Access, passwordless, SSPR, RBAC, PIM, Managed Identities.
  • Manage enterprise apps, registrations, API permissions, and federated auth (SAML, OAuth, OpenID, SCIM).
  • Support least-privilege and Zero Trust security models.
  • Identity governance: access reviews, entitlement management, admin role governance, policies.
  • Govern identity integrations for cloud-native, SaaS, and Microsoft 365 platforms.

Skills

IAM administration
PowerShell
Entra ID
Azure AD
Workday integration
RBAC
MFA
SAML/OAuth
PIM
Automation

Education

Bachelor's degree

Tools

ServiceNow

Job description

Resource Innovations is seeking a highly skilled and motivated Microsoft IAM Engineer to join our growing team. We are seeking an experienced Microsoft IAM Engineer to lead the administration, governance, security, and operational maturity of our enterprise identity and access management environment. This role will serve as a technical leader responsible for Microsoft Entra ID (formerly Azure Active Directory), identity lifecycle management, authentication services, access governance, and enterprise application integrations.

A key focus of this role is the integration and synchronization between Microsoft Entra and Workday, ensuring accurate and automated identity provisioning, role assignment, and deprovisioning processes across the organization. This role will also support cloud identity and access governance initiatives across Microsoft Azure environments, helping secure enterprise infrastructure, SaaS applications, and cloud-native services. The ideal candidate combines deep technical expertise in identity management with strong operational discipline, automation capabilities, and cross-functional collaboration skills.

While this position is open to candidates nationwide, preference will be given candidates who are located in or near Salt Lake City, Chicago, Los Angeles, San Francisco, Chandler/Phoenix, or Denver. Candidates outside of these preferred locations are still encouraged to apply and will be considered based on qualifications and experience.

Resource Innovations (RI) is a women-led energy transformation firm focused on impact. Building on our expertise in energy efficiency, we're constantly expanding our portfolio of clean energy solutions to guide utilities through increasingly complex, connected challenges. Load flexibility. Electrification. Carbon reduction. With every step, we're leading the charge to power change.

Duties And Responsibilities
  • Administer and support enterprise identity and access management services across Microsoft Entra ID, Azure environments, and on premises Active Directory environment.
  • Manage user lifecycle processes including onboarding, transfers, role changes, and offboarding.
  • Configure and maintain authentication and access controls including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, passwordless authentication, self-service password reset (SSPR), Role-Based Access Control (RBAC), Privileged Identity Management (PIM), and Managed Identities.
  • Manage enterprise applications, application registrations, API permissions, and federated authentication integrations utilizing SAML, OAuth, OpenID Connect, and SCIM provisioning.
  • Administer privileged access controls and role-based security models while supporting least-privilege and Zero Trust security principles.
  • Support identity governance initiatives including access reviews, entitlement management, administrative role governance, and identity-based access policies.
  • Manage identity integrations and access controls for cloud-native, SaaS, and Microsoft 365 platforms.
  • Support Azure tenant governance including subscriptions, management groups, administrative roles, and security policies.
  • Monitor and optimize identity security posture across Microsoft Azure, Microsoft Entra ID, and Microsoft 365 environments.
  • Assist with governance and operational oversight of Azure Virtual Machines, Storage, Networking integrations, Key Vault, and Platform-as-a-Service (PaaS) resources.
  • Partner with Security Operations, Infrastructure, and Cloud Engineering teams to support secure cloud adoption, modernization, and operational excellence initiatives.
  • Develop automation solutions and operational efficiencies utilizing PowerShell, Microsoft Graph API, Azure Automation, and Infrastructure-as-Code methodologies.
  • Participate in incident response, troubleshooting, root cause analysis, and operational escalations.
  • Other duties as assigned.
Requirements
  • Bachelor's degree in Information Technology, Computer Science, or related field (or equivalent experience).
  • At least 3+ years of experience in Identity and Access Management (IAM) administration required; 5 years preferred
  • At least 3+ years of hands‑on experience administering Microsoft Entra / AD required; 5 years preferred
  • Experience integrating and supporting Workday with identity platforms
  • Experience supporting and administering Microsoft Azure environments
  • Strong understanding of identity lifecycle management, SSO and federation technologies, Conditional Access, MFA, Role-Based Access Control (RBAC), and Privileged Identity Management (PIM)
  • Experience with hybrid identity environments and Active Directory synchronization
  • Advanced PowerShell scripting and automation experience
  • Experience supporting enterprise-scale identity operations
  • ServiceNow or other ticketing system experience and ability to work from a queue
  • Must be willing to travel up to 15% of the time as needed.
Benefits

Resource Innovations (RI) is a women-led energy transformation firm focused on impact. Building on our expertise in energy efficiency, we're constantly expanding our portfolio of clean energy solutions to guide utilities through increasingly complex, connected challenges. Load flexibility. Electrification. Carbon reduction. With every step, we're leading the charge to power change.

About Resource Innovations

Resource Innovations is an Equal Opportunity Employer, committed to ensuring equal employment opportunities for all job applicants and employees without regard to race, color, religion, national origin, gender, age, disability, marital status, genetics, protected veteran status, sexual orientation, or any other protected status. In addition to federal law requirements, Resource Innovations complies with applicable state and local laws governing non-discrimination in employment in every location in which the company does work.

Compensation & Benefits

Resource Innovations offers competitive salaries based on a candidate's skills, experience and qualifications for the position. The compensation range for the base salary for this position is $75,000-$115,000. In addition to base pay, employees may be eligible for a discretionary annual bonus. The stated salary represents the expected compensation for this position. Final compensation will be determined based on factors such as the candidate's experience, education and location.

At Resource Innovations, we believe supporting our people is essential to delivering impact. We offer a comprehensive benefits package designed to promote health, financial security, and work-life balance. This includes three weeks of paid vacation annually, paid holidays, a 401(k) retirement plan with employer match, medical, dental and vision coverage, parental leave, an employee assistance program, commuter benefits, and additional supplemental offerings.

Employment with Resource Innovations is contingent upon the successful completion of a comprehensive background check and reference check. If applicable to the position, a pre-employment drug screen may also be required.

The above job description and job requirements are not intended to be all inclusive. Resource Innovations retains the right to make changes or adjustments to job descriptions and/or job requirements at any time without notice.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Microsoft IAM Engineer
Microsoft IAM Engineer

Resource-Innovations • Chandler (AZ)

On-site
USD 75,000 - 115,000
Vacation (3 weeks)
401(k) with employer match
Medical/Dental/Vision coverage
+3
Microsoft IAM Engineer
Microsoft IAM Engineer

Shifted Energy • Salt Lake City (UT)

On-site
USD 75,000 - 115,000
401(k) match
Medical, dental & vision
Paid vacation
+1
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • San Francisco (CA)

On-site
USD 75,000 - 115,000
Three weeks paid vacation
401(k) with employer match
Health/dental/vision coverage
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • Chandler (AZ)

On-site
USD 75,000 - 115,000
Three weeks vacation annually
Paid holidays
401(k) with employer match
+4
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • Denver (CO)

On-site
USD 75,000 - 115,000
Paid vacation
Paid holidays
401(K) with employer match
+4
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • Los Angeles (CA)

On-site
USD 75,000 - 115,000
Competitive salary with discretionary
Three weeks paid vacation
401(k) with employer match
+4
Identity and Access Management (IAMS) Solutions Architect
Identity and Access Management (IAMS) Solutions Architect

Robotics Prcocess Automation, LLC • Jackson (MS)

On-site
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

NEW ERA TECHNOLOGY • Town of Florida (NY)

Hybrid
USD 130,000 - 170,000
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

Socket.dev • New York (NY)

Hybrid
USD 140,000 - 190,000
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

Neweratech • New York (NY)

Hybrid
USD 140,000 - 190,000