Microsoft IAM Engineer

Resource Innovations

Denver (CO)

On-site

USD 75,000 - 115,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Paid vacation
Paid holidays
401(K) with employer match
Medical, dental and vision coverage
Parental leave
Employee assistance program
Commuter benefits

Job summary

Resource Innovations is seeking a skilled Microsoft IAM Engineer to lead administration, governance, security, and operational maturity of our enterprise identity environment. You will own Entra ID, lifecycle management, authentication services, and enterprise app integrations.

You will also focus on integrating Microsoft Entra with Workday for automated provisioning, role assignment, and deprovisioning across the organization, while supporting Azure governance and cloud-native services.

Qualifications

  • At least 3+ years IAM administration experience; 5 years preferred.
  • At least 3+ years administering Microsoft Entra / AD; 5 years preferred.
  • Experience integrating Workday with identity platforms.
  • Experience supporting Microsoft Azure environments.
  • Strong understanding of lifecycle management, SSO/federation, Conditional Access, MFA, RBAC, and PIM.

Responsibilities

  • Administer IAM services across Entra ID, Azure, and on-prem Active Directory.
  • Manage user lifecycle: onboarding, transfers, role changes, offboarding.
  • Configure and maintain authentication and access controls including SSO, MFA, CA, SSPR, RBAC, PIM, and Managed Identities.
  • Manage enterprise applications, registrations, API permissions, and federated authentication integrations.
  • Administer privileged access controls and security models with least-privilege / Zero Trust.
  • Support identity governance initiatives including access reviews and entitlement management.
  • Manage identity integrations for cloud-native, SaaS, and Microsoft 365 platforms.
  • Support Azure tenant governance: subscriptions, management groups, admin roles, security policies.
  • Monitor and optimize identity security posture across Azure, Entra ID, and Microsoft 365.

Skills

Identity governance
PowerShell
Microsoft Entra ID
Azure AD
SSO / Federation
MFA
RBAC
PIM
Workday integration
Automation
Incident response

Education

Bachelor’s degree in IT / CS or related field
Equivalent experience

Tools

Microsoft Graph API
Azure Automation
ServiceNow
Active Directory

Job description

Resource Innovationsis seekinga highly skilled and motivatedMicrosoft IAM Engineerto join our growing team.We are seeking an experienced Microsoft IAM Engineer to lead the administration, governance, security, and operational maturity of our enterprise identity and access management environment. This role will serve as a technical leader responsible for Microsoft Entra ID (formerly Azure Active Directory), identity lifecycle management, authentication services, access governance, and enterprise application integrations.

A key focus of this role is the integration and synchronization between Microsoft Entra and Workday, ensuring accurate and automated identity provisioning, role assignment, and deprovisioning processes across the organization. This role will also support cloud identity and access governance initiatives across Microsoft Azure environments, helping secure enterprise infrastructure, SaaS applications, and cloud-native services. The ideal candidate combines deep technical expertise in identity management with strong operational discipline, automation capabilities, and cross-functional collaboration skills.

Resource Innovations (RI) is a women-led energy transformation firm focused on impact. Building on our expertise in energy efficiency, we’re constantly expanding our portfolio of clean energy solutions to guide utilities through increasingly complex, connected challenges. Load flexibility. Electrification. Carbon reduction. With every step, we’re leading the charge to power change.

Duties and Responsibilities
  • Administer and support enterprise identity and access management services across Microsoft Entra ID, Azure environments, and on premises Active Directory environment.
  • Manage user lifecycle processes including onboarding, transfers, role changes, and offboarding.
  • Configure and maintain authentication and access controls including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, passwordless authentication, self-service password reset (SSPR), Role-Based Access Control (RBAC), Privileged Identity Management (PIM), and Managed Identities.
  • Manage enterprise applications, application registrations, API permissions, and federated authentication integrations utilizing SAML, OAuth, OpenID Connect, and SCIM provisioning.
  • Administer privileged access controls and role-based security models while supporting least-privilege and Zero Trust security principles.
  • Support identity governance initiatives including access reviews, entitlement management, administrative role governance, and identity-based access policies.
  • Manage identity integrations and access controls for cloud-native, SaaS, and Microsoft 365 platforms.
  • Support Azure tenant governance including subscriptions, management groups, administrative roles, and security policies.
  • Monitor and optimize identity security posture across Microsoft Azure, Microsoft Entra ID, and Microsoft 365 environments.
  • Assist with governance and operational oversight of Azure Virtual Machines, Storage, Networking integrations, Key Vault, and Platform-as-a-Service (PaaS) resources.
  • Partner with Security Operations, Infrastructure, and Cloud Engineering teams to support secure cloud adoption, modernization, and operational excellence initiatives.
  • Develop automation solutions and operational efficiencies utilizing PowerShell, Microsoft Graph API, Azure Automation, and Infrastructure-as-Code methodologies.
  • Participate in incident response, troubleshooting, root cause analysis, and operational escalations.
  • Other duties as assigned.
  • Bachelor’s degree in Information Technology, Computer Science, or related field (or equivalent experience).
  • At least 3+ years of experience in Identity and Access Management (IAM) administration required; 5 years preferred
  • At least 3+ years of hands‑on experience administering Microsoft Entra / AD required; 5 years preferred
  • Experience integrating and supporting Workday with identity platforms
  • Experience supporting and administering Microsoft Azure environments
  • Strong understanding of identity lifecycle management, SSO and federation technologies, Conditional Access, MFA, Role-Based Access Control (RBAC), and Privileged Identity Management (PIM)
  • Experience with hybrid identity environments and Active Directory synchronization
  • Advanced PowerShell scripting and automation experience
  • Experience supporting enterprise-scale identity operations
  • ServiceNow or other ticketing system experience and ability to work from a queue
About Resource Innovations

Resource Innovations (RI) is a women-led energy transformation firm focused on impact. Building on our expertise in energy efficiency, we’re constantly expanding our portfolio of clean energy solutions to guide utilities through increasingly complex, connected challenges. Load flexibility. Electrification. Carbon reduction. With every step, we’re leading the charge to power change.

Resource Innovations is an Equal Opportunity Employer, committed to ensuring equal employment opportunities for all job applicants and employees without regard to race, color, religion, national origin, gender, age, disability, marital status, genetics, protected veteran status, sexual orientation, or any other protected status. In addition to federal law requirements, Resource Innovations complies with applicable state and local laws governing non-discrimination in employment in every location in which the company does work.

Compensation & Benefits

Resource Innovations offers competitive salaries based on a candidate’s skills, experience and qualifications for the position. The compensation range for the base salary for this position is $75,000-$115,000.In addition to base pay, employees may be eligible for a discretionary annual bonus. The stated salary represents the expected compensation for this position.Final compensation will be determined based on factors such as the candidate’s experience, education and location.

At Resource Innovations, we believe supporting our people is essential to delivering impact. We offer a comprehensive benefits package designed to promote health, financial security, and work-life balance. This includes three weeks of paid vacation annually, paid holidays, a 401(k) retirement plan with employer match, medical, dental and vision coverage, parental leave, an employee assistance program, commuter benefits, and additional supplemental offerings.

Employment with Resource Innovations is contingent upon the successful completion of a comprehensive background check and reference check. If applicable to the position, a pre-employment drug screen may also be required.

The above job description and job requirements are not intended to be all inclusive. Resource Innovations retains the right to make changes or adjustments to job descriptions and/or job requirements at any time without notice.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Microsoft IAM Engineer
Microsoft IAM Engineer

Shifted Energy • Salt Lake City (UT)

On-site
USD 75,000 - 115,000
401(k) match
Medical, dental & vision
Paid vacation
+1
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • Los Angeles (CA)

On-site
USD 75,000 - 115,000
Competitive salary with discretionary
Three weeks paid vacation
401(k) with employer match
+4
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource-Innovations • Chandler (AZ)

On-site
USD 75,000 - 115,000
Vacation (3 weeks)
401(k) with employer match
Medical/Dental/Vision coverage
+3
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • Chicago (IL)

On-site
USD 75,000 - 115,000
Three weeks paid vacation
401(k) with employer match
Medical, dental and vision coverage
+3
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • San Francisco (CA)

On-site
USD 75,000 - 115,000
Three weeks paid vacation
401(k) with employer match
Health/dental/vision coverage
Microsoft IAM Engineer
Microsoft IAM Engineer

Resource Innovations • Chandler (AZ)

On-site
USD 75,000 - 115,000
Three weeks vacation annually
Paid holidays
401(k) with employer match
+4
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

Socket.dev • New York (NY)

Hybrid
USD 140,000 - 190,000
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

Neweratech • New York (NY)

Hybrid
USD 140,000 - 190,000
Microsoft Entra ID Architect
Microsoft Entra ID Architect

KeyData Cyber • United States

Remote
USD 124,000 - 207,000
Sr. SaaS Configuration Specialist
Sr. SaaS Configuration Specialist

Resource-Innovations • Chicago (IL)

On-site
USD 75,000 - 100,000
Paid vacation
401(k) with company match
Medical, dental & vision coverage
+2