As a System Engineer you will Serve as a technical lead and subject matter expert in the design, architecture, implementation, operation, and maintenance of identity and access management solutions using Microsoft Entra ID, Active Directory, and Okta.
Key Responsibilities
- Microsoft Entra ID and Azure Configure and manage Conditional Access policies, Privileged Identity Management (PIM), application registrations, and enterprise applications.
- Manage role assignments and identity and access management permissions across Azure management groups, subscriptions, and resources.
- Administer user accounts, groups, service principals, and managed identities, applying least-privilege principles to Microsoft Graph API permissions.
- Manage multifactor authentication (MFA), self-service password reset (SSPR), and Windows Hello for Business (WHfB).
- Administer Intune policies, Windows Autopilot, mobile device management, and endpoint security.
- Stay current on Entra ID capabilities, best practices, and security trends, recommending opportunities for continuous improvement.
Active Directory and Windows Infrastructure Support
- Active Directory and Windows Infrastructure Support geographically distributed Active Directory environments with multiple domains, domain controllers, and AD sites serving more than 5,000 users.
- Administer DNS, Group Policy Objects (GPOs), user objects, organizational units (OUs), and delegated permissions across the domain OU structure.
- Support Windows Server operating systems from 2016 through 2025 and manage Flexible Single Master Operations (FSMO) roles to maintain domain security and integrity.
- Apply Microsoft tiering, identity and access management (IAM), and privileged access management (PAM) concepts.
- Maintain expertise in domain recovery procedures and support disaster recovery preparedness.
Okta and Identity Management
- Okta and Identity Management Provide subject matter expertise on Okta application integrations, IAM functionality, and the platform’s feature roadmap.
- Design and implement Okta configurations aligned with solution architecture and business requirements.
- Support application integrations into Okta-based IAM solutions and troubleshoot technical issues before, during, and after implementation.
- Apply identity federation, single sign-on (SSO), SAML, OAuth, OpenID Connect (OIDC), MFA, role-based access control (RBAC), and least-privilege principles.
Automation
- Develop and maintain PowerShell scripts, automation workflows, and scheduled tasks to support Azure and Active Directory administration.
Required Qualifications
- Bachelor’s degree in Computer Science or a related field, or equivalent education and/or experience.
- Two years of relevant, progressive professional experience, with the technical expertise outlined above.
Preferred Qualifications
- Experience with CyberArk and/or Rubrik is advantageous.
- Microsoft, Azure, or Okta certifications are highly beneficial.
Compensation and Benefits
Location: Houston, TX
Work Arrangement: Hybrid (4:1 schedule)
Employment Type: Full-time
Travel: Occasional, up to 10%