Serve as a technical lead and subject matter expert in the design, architecture, implementation, operation, and maintenance of identity and access management solutions using Microsoft Entra ID, Active Directory, and Okta.
Key Responsibilities
Microsoft Entra ID and Azure
- Configure and manage Conditional Access policies, Privileged Identity Management (PIM), application registrations, and enterprise applications.
- Manage role assignments and identity and access management permissions across Azure management groups, subscriptions, and resources.
- Administer user accounts, groups, service principals, and managed identities, applying least-privilege principles to Microsoft Graph API permissions.
- Manage multifactor authentication (MFA), self-service password reset (SSPR), and Windows Hello for Business (WHfB).
- Administer Intune policies, Windows Autopilot, mobile device management, and endpoint security.
- Stay current on Entra ID capabilities, best practices, and security trends, recommending opportunities for continuous improvement.
Active Directory and Windows Infrastructure
- Support geographically distributed Active Directory environments with multiple domains, domain controllers, and AD sites serving more than 5,000 users.
- Administer DNS, Group Policy Objects (GPOs), user objects, organizational units (OUs), and delegated permissions across the domain OU structure.
- Support Windows Server operating systems from 2016 through 2025 and manage Flexible Single Master Operations (FSMO) roles to maintain domain security and integrity.
- Apply Microsoft tiering, identity and access management (IAM), and privileged access management (PAM) concepts.
- Maintain expertise in domain recovery procedures and support disaster recovery preparedness.
Okta and Identity Management
- Provide subject matter expertise on Okta application integrations, IAM functionality, and the platform’s feature roadmap.
- Design and implement Okta configurations aligned with solution architecture and business requirements.
- Support application integrations into Okta-based IAM solutions and troubleshoot technical issues before, during, and after implementation.
- Apply identity federation, single sign-on (SSO), SAML, OAuth, OpenID Connect (OIDC), MFA, role-based access control (RBAC), and least-privilege principles.
Automation
- Develop and maintain PowerShell scripts, automation workflows, and scheduled tasks to support Azure and Active Directory administration.
Required Qualifications
- Bachelor’s degree in Computer Science or a related field, or equivalent education and/or experience.
- Two years of relevant, progressive professional experience, with the technical expertise outlined above.
- Preferred Qualifications
- Experience with CyberArk and/or Rubrik is advantageous. Microsoft, Azure, or Okta certifications are highly beneficial.