HamburgerMenu
hirist

Job Description

Description :

Key Responsibilities :


- Lead the design, implementation, and lifecycle management of AD, Entra ID, Group Policies, Conditional Access, MFA, SSO, and identity federation solutions.

- Architect secure and scalable IAM solutions aligned with Zero Trust principles.

- Define standards, patterns, and automation for identity provisioning, governance, authentication, and authorization.

- Drive modernization initiatives such as cloud identity adoption, passwordless authentication, and the reduction of legacy protocols.

- Lead in providing SOPs and technical knowledge to MSP partners for operating IAM .

- Own incident response and root cause analysis for identity related issues.

- Maintain compliance and audit readiness for regulatory and security frameworks (SOX, SOC2, ISO 27001, NIST, etc.).

- Lead and mature Privileged Identity & Access Management (PIM/PAM) programs using enterprise PAM tools.

- Implement least privilege, just- in- time access, privileged session recording, and administrative role governance.

- Monitor privileged activity and enforce strong authentication for high risk roles.

- Drive automation using PowerShell, APIs, workflows, and identity governance tools.

- Identify opportunities to improve scalability, resilience, and efficiency within IAM services.

- Stay current on emerging security trends, threats, and IAM technologies.

- Manage and mentor a team of IAM engineers and administrators.

- Engage with cross-functional teams including security, networking, cloud, application owners, and compliance.

- Act as a subject matter expert (SME) and trusted advisor for identity-related architecture and projects.

Minimum Qualifications :


- 10+ years of experience in Identity & Access Management, including 3+ years leading technical teams.

- Deep expertise in :


1. Active Directory (domains, trusts, GPOs, DNS, replication, delegation)

2. Microsoft Entra ID / Azure AD (Conditional Access, MFA, SSO, SCIM, identity governance)


3. PIM/PAM technologies (CyberArk, Entra PIM, etc.)


- Public Key Infrastructure (PKI) and certificate services (ADCS, HSMs, certificate lifecycle management)


- Strong hands-on experience with PowerShell and automation frameworks.


- Solid understanding of Zero Trust, identity lifecycle, RBAC/ABAC, and modern authentication (OAuth, SAML, OIDC).

- Excellent communication skills and ability to partner with both technical and non-technical stakeholders.

- Certifications in AD, Azure, PIM, Security etc are a plus.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in