Systems Engineer, IAM

Riot Platforms

Castle Rock (CO)

On-site

USD 115,000 - 135,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) plan with company matching
Medical, vision, and dental plans
Generous PTO and paid holidays
Equity grant

Job summary

Riot Platforms is seeking a Systems Engineer, IAM to own Microsoft Entra and our identity environment, applying infrastructure-as-code, CI/CD, and DevOps practices as we shift to a modern operating model.

You will secure identity and device ecosystems, collaborate with software engineering, IT, and cyber security, and drive automation across Data Center, Bitcoin Mining, and manufacturing operations.

Qualifications

  • Experience administering Microsoft Entra ID across the organization with users, groups, roles, and SSO.
  • Experience with conditional access, MFA, PIM, and just-in-time/privileged access tooling such as StrongDM.
  • Experience with on-premises Active Directory and Entra Connect synchronization.
  • Hands-on experience with Microsoft Intune for device management and compliance.
  • Experience administering Microsoft 365, including Exchange Online and licensing.
  • Experience with IaC tools such as Terraform, AWS CDK, or SaltStack.
  • Familiarity with Git and CI/CD tooling (GitLab CI/CD, GitHub Actions) for automating configuration and deployments.
  • Proficiency in PowerShell and at least one of Python or C#.
  • Strong understanding of security best practices.
  • Excellent problem-solving and communication with technical and non-technical stakeholders.

Responsibilities

  • Administer Microsoft Entra ID across the organization, including users, groups, roles, app registrations, and SSO.
  • Build and maintain conditional access policies, Privileged Identity Management (PIM), MFA, and just-in-time access workflows (including StrongDM).
  • Maintain on-premises Active Directory and Entra Connect synchronization.
  • Configure device management and compliance via Microsoft Intune and Jamf.
  • Manage Exchange Online and licensing within Microsoft 365.
  • Define and manage identity/configuration as code using Terraform, AWS CDK, SaltStack.
  • Build CI/CD pipelines with GitLab CI/CD or GitHub Actions to automate deployments.
  • Develop automation in PowerShell, Python, or C# for provisioning and reporting.
  • Stand up observability, logging and monitoring using Prometheus, Grafana, and cloud tooling.
  • Advance DevOps maturity with documentation and engineering standards.

Skills

Microsoft Entra ID
Identity security
Hybrid identity
Intune
Microsoft 365
IaC
Git
PowerShell
Python
C#
Security best practices
Communication
DevOps
AWS
Blockchain
Manufacturing industry experience

Education

Bachelor's degree in Computer Science, Information Technology, Engineering, or related field

Tools

Terraform
AWS CDK
SaltStack
GitLab CI/CD
GitHub Actions
Intune
Jamf

Job description

About Riot Platforms

Riot's (NASDAQ: RIOT) vision is to be the world's most trusted platform for powering and building digital infrastructure. Riot's mission is to empower the future of digital infrastructure by positively impacting the sectors, networks, and communities that we touch. We believe that the combination of an innovative spirit and strong community partnership allows us to achieve best-in-class execution and create successful outcomes.

Who We Are

At Riot, we're building the future of digital infrastructure. Our team members have unparalleled opportunities to work on groundbreaking initiatives. Through technical excellence and strategic execution, Riot has positioned itself as a leader in the industry driving advancements that continue to set new benchmarks in digital infrastructure.

We are trailblazers. Problem solvers. People who thrive in fast paced environments, communicate clearly, and bring relentless focus to efficiency and execution.

About The Role

Riot Platforms is looking for a Systems Engineer, IAM to own our Microsoft Entra and identity environment and engineer how we run it. This is a role for someone equally comfortable administering identity and access today and automating it as code tomorrow -- managing Entra ID, conditional access, endpoints, and Microsoft 365, while applying infrastructure as code, CI/CD, and modern DevOps practices in equal measure.

This position sits at the center of our shift from traditional system administration to a DevOps operating model. You'll keep our identity, device, and Microsoft 365 environment secure and reliable, and progressively replace manual processes with automation, version-controlled configuration, and repeatable pipelines. You'll work closely with software engineering, IT, and cyber security, and provide visibility across our Data Center, Bitcoin Mining, and Manufacturing operations.

What You'll Do
  • Administer Microsoft Entra ID -- Manage users, groups, roles, application registrations, and enterprise SSO (SAML/OIDC) across the organization.
  • Manage access and privileged identity -- Build and maintain conditional access policies, Privileged Identity Management (PIM), MFA, and just-in-time access workflows (including StrongDM) to enforce least privilege.
  • Operate hybrid identity -- Maintain on-premises Active Directory, Entra Connect synchronization, and hybrid identity across cloud and on-premises environments.
  • Manage endpoints with Intune and Jamf -- Configure device management, compliance, and endpoint security policies through Microsoft Intune and Jamf.
  • Administer Microsoft 365 -- Manage Exchange Online, licensing, and broader Microsoft 365 services to keep collaboration secure and reliable.
  • Automate configuration as code -- Define and manage identity and infrastructure configuration using tools such as Terraform, AWS CDK, and SaltStack to make environments repeatable and auditable.
  • Build CI/CD and automation pipelines -- Replace manual administrative tasks with version-controlled automation and CI/CD pipelines (GitLab CI/CD, GitHub Actions).
  • Script and build tooling -- Develop automation in PowerShell, Python, or C# to streamline provisioning, reporting, and routine operations.
  • Implement monitoring, alerting, and logging -- Stand up observability and audit logging across identity, endpoints, and infrastructure using tools such as Prometheus and Grafana and native cloud tooling.
  • Advance the DevOps operating model -- Help mature standards, documentation, and engineering practices as the team moves from manual administration toward a DevOps operating model.
Knowledge, Skills, and Abilities
  • Microsoft Entra ID -- Strong hands-on experience administering Entra ID (Azure AD): users, groups, roles, app registrations, and SSO.
  • Access and identity security -- Experience with conditional access, MFA, Privileged Identity Management (PIM), and just-in-time/privileged access tooling such as StrongDM.
  • Hybrid identity -- Experience with on-premises Active Directory and Entra Connect synchronization.
  • Endpoint management -- Hands-on experience with Microsoft Intune for device management and compliance.
  • Microsoft 365 administration -- Experience administering Microsoft 365, including Exchange Online and licensing.
  • Infrastructure as code -- Experience with, or a strong drive to grow into, IaC tools such as Terraform, AWS CDK, or SaltStack.
  • CI/CD and version control -- Familiarity with Git and CI/CD tooling (GitLab CI/CD, GitHub Actions) for automating configuration and deployments.
  • Scripting and automation -- Proficiency in PowerShell and at least one of Python or C# (C# preferred).
  • Security mindset -- Strong understanding of identity, access, and infrastructure security best practices.
  • Problem-solving and communication -- Excellent problem-solving skills and the ability to communicate clearly with both technical and non-technical stakeholders.
Nice to Have
  • Relevant Microsoft certifications (e.g., SC-300 Identity and Access Administrator, AZ-104, or equivalent)Experience automating
  • Entra and Microsoft 365 administration with Microsoft Graph (PowerShell SDK or API)
  • Experience supporting a transition from manual system administration to a DevOps / infrastructure-as-code model
  • Exposure to AWS or other multi-cloud environments
  • Experience with cryptocurrency, blockchain, or high-performance computing environments
  • Experience in manufacturing, construction, energy, mining, data center, or other capital-intensive industries
What You'll Bring
  • Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field -- equivalent experience considered.
  • 4 years of experience in systems engineering, system administration, or identity and access administration.
  • Hands-on experience with Microsoft Entra ID and/or Active Directory required.
  • Microsoft or cloud certification preferred.
Why This Role Matters

This role is how Riot modernizes the way it runs systems. You won't just keep identity and devices running -- you'll engineer them, turning manual administration into automated, version-controlled infrastructure. If you want to deepen your identity expertise while building real DevOps and automation skills, this role offers a clear path to do both and make a visible impact.

Compensation and Benefits
  • Competitive Salary: $115,000 - $135,000 (commensurate with experience) bonus sign-on equity grant
  • 401(k) plan with company matching
  • Great medical, vision, and dental plans to choose from
  • Long-term and short-term disability
  • Additional benefit options (Employee Assistance Program, Pet Insurance, and more)
  • Flexible Spending Accounts
  • Generous PTO and Paid Holidays
  • A fun company culture with tremendous growth opportunities

Riot is an equal opportunity employer. We are committed to creating an inclusive environment for all employees.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Systems Engineer, IAM
Systems Engineer, IAM

Riot Platforms, Inc. • Castle Rock (CO)

On-site
USD 115,000 - 135,000
401(k) matching
Medical, vision, and dental plans
Disability insurance
+3
Systems Engineer, IAM
Systems Engineer, IAM

Riot Platforms, Inc. • Austin (TX)

On-site
USD 115,000 - 135,000
401(k) match
Medical, vision, dental
Systems Administrator II
Systems Administrator II

Riot Platforms • Austin (TX)

On-site
USD 70,000 - 90,000
Competitive salary
Equity grant
401(k) matching
+4
Manager, Network Infrastructure
Manager, Network Infrastructure

Riot Platforms, Inc. • Austin (TX)

On-site
USD 150,000 - 230,000
401(k) Retirement Plan
Comprehensive Health Coverage
Wellness & Lifestyle Perks
+1
Senior Software Engineer, Platform & Infrastructure - Riot Technology
Senior Software Engineer, Platform & Infrastructure - Riot Technology

Riot Games • Los Angeles (CA)

On-site
USD 162,000 - 227,000
Medical insurance
Dental insurance
Life insurance
+4
Manager, Network Infrastructure
Manager, Network Infrastructure

Riot Platforms • Austin (TX)

On-site
USD 130,000 - 180,000
Equity incentive
401(k) match
Health coverage
Systems Engineer (Esports)
Systems Engineer (Esports)

Riot Games • Los Angeles (CA)

On-site
USD 90,000 - 120,000
Open paid time off policy
Flexible work schedules
Medical, dental, and life insurance
+2
IAM Systems Engineer - Entra, DevOps & Automation
IAM Systems Engineer - Entra, DevOps & Automation

Riot Platforms, Inc. • Castle Rock (CO)

On-site
USD 115,000 - 135,000
401(k) matching
Medical, vision, and dental plans
Disability insurance
+3
Staff Software Engineer, Riot Client – Publishing Platform
Staff Software Engineer, Riot Client – Publishing Platform

Riot Games • Los Angeles (CA)

On-site
USD 193,000 - 269,000
Medical insurance
Dental insurance
Vision insurance
+4
People Partner Operations, Sr Coordinator
People Partner Operations, Sr Coordinator

Riot Platforms, Inc. • Castle Rock (CO)

Hybrid
USD 75,000 - 90,000
Health coverage and benefits
401(k) retirement plan
Equity grant
+5