Senior Authentication Services Engineer

3M

Minnesota

On-site

USD 145,676 - 178,049

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical
Dental & Vision
Health Savings Accounts
Disability Benefits
Life Insurance
Paid Absences and Retirement Benefits

Job summary

3M is seeking a Senior Authentication Services Engineer to lead engineering, implementation, and operational support of enterprise authentication platforms in a global environment.

You will collaborate with IAM leadership to deliver authentication capabilities, maintain platform health, and evolve services within the Zero Trust framework. This is a hands-on role with strong documentation and standards contribution.

Qualifications

  • High school diploma or higher with relevant IAM experience in private/public/government/military environments.
  • Bachelor's degree plus years of experience in IT/IAM in similar environments.

Responsibilities

  • Engineer, configure, and maintain Microsoft Entra ID, Active Directory, and federated identity services across the enterprise.
  • Implement and support SSO integrations (SAML, OIDC, OAuth 2.0) across SaaS, on‑prem, and hybrid portfolios.
  • Configure and manage MFA policies and phishing‑resistant credentials (FIDO2, Windows Hello for Business).
  • Develop, test, and maintain Conditional Access policies aligned with security requirements.
  • Contribute to authentication standards and reference architectures under IAM leadership.
  • Support on‑premises and cloud integrations and participate in proof‑of‑concept efforts for new tech.
  • Maintain and update runbooks, configuration records, and architecture diagrams.

Skills

Entra ID
MFA
SSO
Federation protocols
PAM
Cloud Identity

Education

High School Diploma + 8 years IT/IAM experience
Bachelor's degree + 6 years IT/IAM experience

Tools

PowerShell
Microsoft Graph API
Active Directory
SIEM integrations

Job description

Job Description

Senior Authentication Services Engineer

Collaborate with Innovative 3Mers Around the World

Choosing where to start and grow your career has a major impact on your professional and personal life, so it’s equally important you know that the company that you choose to work at, and its leaders, will support and guide you. With a wide variety of people, global locations, technologies and products, 3M is a place where you can collaborate with other curious, creative 3Mers.

This position provides an opportunity to transition from other private, public, government or military experience to a 3M career.
The Impact You’ll Make in this Role

The Senior Authentication Services Engineer is a skilled technical contributor within the Identity & Access Management organization. This role is responsible for the engineering, implementation, and operational support of enterprise authentication platforms across a complex global environment. Working closely with the Principal Engineer and IAM leadership, you will deliver authentication capabilities, maintain platform health, and contribute to the evolution of authentication services aligned with the broader Zero Trust security strategy.

This is a hands‑on engineering role with growing technical ownership. You will implement authentication solutions, support integrations across the application portfolio, and contribute to standards and documentation that serve the broader IAM program.

Here, You Will Make An Impact By
Authentication Platform Engineering
  • Engineer, configure, and maintain Microsoft Entra ID, Active Directory, and federated identity services across the enterprise
  • Implement and support SSO integrations (SAML, OIDC, OAuth 2.0) across SaaS, on‑prem, and hybrid application portfolios
  • Configure and manage MFA policies, authentication method settings, and phishing‑resistant credential rollouts (FIDO2, Windows Hello for Business, certificate‑based auth)
  • Develop, test, and maintain Conditional Access policies in alignment with security requirements
  • Contribute to authentication standards, patterns, and reference architectures under guidance from the Principal Engineer
  • Participate in proof‑of‑concept efforts for emerging authentication technologies
  • Maintain and update technical documentation including runbooks, configuration records, and architecture diagrams
Security & Compliance
  • Support alignment of authentication controls with Zero Trust principles and enterprise security policies
  • Provide technical evidence, control narratives, and remediation support for audit and compliance activities
  • Identify and remediate gaps in authentication posture through engineering solutions
  • Monitor authentication platform health and respond to security incidents within the authentication domain
Collaboration & Operational Excellence
  • Support incident response and troubleshoot complex authentication issues as a technical escalation resource
  • Collaborate with application teams, infrastructure engineering, and security operations to deliver IAM solutions
  • Contribute to knowledge transfer, documentation, and team skill development
  • Participate in on‑call rotation for authentication platform support
Your Skills And Expertise

To set you up for success in this role from day one, 3M requires (at a minimum) the following qualifications:

  • High School Diploma (verified and completed prior to start) and 8 years of experience in Information Technology, Computer Science, IAM Engineering, or Information Security in a private, public, government, or military environment.

OR

  • Bachelor's degree or higher (verified and completed prior to start) and Six (6) years of experience in Information Technology, Computer Science, IAM Engineering, or Information Security, in a private, public, government, or military environment.

Additional qualifications that could help you succeed even further in this role include:

  • Microsoft Entra ID: Strong hands‑on experience including Conditional Access, PIM, application registrations, and hybrid identity (Entra Connect)
  • Active Directory: Solid working knowledge of domain architecture, Group Policy, trusts, Kerberos, NTLM, and AD security hardening
  • MFA: Experience implementing enterprise MFA solutions including phishing‑resistant methods (FIDO2, WHfB)
  • Federation protocols: Working proficiency with SAML 2.0, OIDC, and OAuth 2.0
  • SSO: Experience supporting integrations across enterprise SaaS and on‑premises application portfolios
  • Automation: Working knowledge of PowerShell scripting and Microsoft Graph API for identity operations
  • Familiarity with identity security tooling (e.g., Microsoft Defender for Identity, Entra ID Protection, SIEM integrations)
  • Windows Hello for Business: Exposure to WHfB deployment planning or FIDO2/YubiKey rollouts
  • PAM platforms: Familiarity with CyberArk or comparable PAM tools and their intersection with authentication services
  • Exposure to IGA platforms and lifecycle event integration with authentication systems
  • Cloud Identity: Experience with AWS IAM, Azure AD B2B/B2C, or multi‑cloud identity federation
  • Certifications: SC-300, AZ-500, or equivalent Microsoft identity certifications (preferred, not required)
  • Experience working in large enterprise environments with complex hybrid identity architectures
Work Location
  • On‑site in Maplewood, MN, or Austin, TX office at least 4 days per week
Travel

May include up to 15% domestic/international

Relocation Assistance

Is not authorized

Must be legally authorized to work in country of employment without sponsorship for employment visa status (e.g., H1B status).

Supporting Your Well‑being

3M offers many programs to help you live your best life – both physically and financially. To ensure competitive pay and benefits, 3M regularly benchmarks with other companies that are comparable in size and scope.

Applicable to US Applicants Only: The expected compensation range for this position is $145,676 - $178,049, which includes base pay plus variable incentive pay, if eligible. This range represents a good faith estimate for this position. The specific compensation offered to a candidate may vary based on factors including, but not limited to, the candidate’s relevant knowledge, training, skills, work location, and/or experience. In addition, this position may be eligible for a range of benefits (e.g., Medical, Dental & Vision, Health Savings Accounts, Health Care & Dependent Care Flexible Spending Accounts, Disability Benefits, Life Insurance, Voluntary Benefits, Paid Absences and Retirement Benefits, etc.). Additional information is available at: https://www.3m.com/3M/en_US/careers-us/working-at-3m/benefits/.

Benefits
  • Medical
  • Dental & Vision
  • Health Savings Accounts
  • Health Care & Dependent Care Flexible Spending Accounts
  • Disability Benefits
  • Life Insurance
  • Voluntary Benefits
  • Paid Absences and Retirement Benefits
Good Faith Posting Date Range

07/20/2026 To 08/19/2026 Or until filled

All US‑based 3M full time employees will need to sign an employee agreement as a condition of employment with 3M. This agreement lays out key terms on using 3M Confidential Information and Trade Secrets. It also has provisions discussing conflicts of interest and how inventions are assigned. Employees that are Job Grade 7 or equivalent and above may also have obligations to not compete against 3M or solicit its employees or customers, both during their employment, and for a period after they leave 3M.

Learn more about 3M’s creative solutions to the world’s problems at www.3M.com or on Instagram, Facebook, and LinkedIn @3M.

Responsibilities of this position include that corporate policies, procedures and security standards are complied with while performing assigned duties.

Safety is a core value at 3M. All employees are expected to contribute to a strong Environmental Health and Safety (EHS) culture by following safety policies, identifying hazards, and engaging in continuous improvement.

Pay & Benefits Overview: https://www.3m.com/3M/en_US/careers-us/working-at-3m/benefits/

3M does not discriminate in hiring or employment on the basis of race, color, sex, national origin, religion, age, disability, veteran status, or any other characteristic protected by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Authentication Services Engineer
Senior Authentication Services Engineer

3M • Maplewood (MN)

On-site
USD 146,000 - 178,000
Senior Software Engineer, AWS Cloud
Senior Software Engineer, AWS Cloud

3M • Minnesota

On-site
USD 146,000 - 178,000
Software Test Automation Engineer
Software Test Automation Engineer

National Black MBA Association • Maplewood (MN), Northern (KY)

Hybrid
USD 146,000 - 178,000
Relocation assistance
On-site work at 3M Center Maplewood
Director – Global Make to Deliver Manufacturing Application Portfolio Leader (MTD)
Director – Global Make to Deliver Manufacturing Application Portfolio Leader (MTD)

3M • Minnesota

On-site
USD 250,000 - 306,000
Senior Product Development and Support Engineer
Senior Product Development and Support Engineer

3M • Red Wing (MN)

On-site
USD 124,000 - 152,000
Cybersecurity Service and Change Management Lead
Cybersecurity Service and Change Management Lead

3M • Minnesota

On-site
USD 164,000 - 202,000
Senior Systems Analyst
Senior Systems Analyst

3m • Maplewood (MN)

On-site
USD 124,127 - 151,710
Comprehensive medical, dental, and vision benefits
Health Savings Accounts
Flexible Spending Accounts
+2
Sr. Product Manager - Conversational Analytics
Sr. Product Manager - Conversational Analytics

3M • Maplewood (MN)

On-site
USD 222,000 - 271,000
Connected Worker Product Leader
Connected Worker Product Leader

3M • Minnesota

On-site
USD 221,000 - 271,000
Industry and Brand Leader
Industry and Brand Leader

3M • Maplewood (MN)

On-site
USD 188,000 - 230,000
Relocation assistance