Position Summary
We are seeking a highly technical
Azure / Entra ID Level 3 Engineer responsible for hands-on configuration, implementation, and advanced troubleshooting of enterprise identity security solutions. This role works closely with IAM architecture teams to translate design requirements into production-ready Azure identity configurations while supporting complex issue resolution across enterprise environments.
The ideal candidate has deep expertise in Microsoft cloud identity technologies, including Conditional Access, Identity Protection, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and device compliance integrations within large-scale enterprise environments.
Key Responsibilities Identity & Access Management (IAM) Engineering - Build, configure, and maintain Azure / Entra ID identity security components, including:
- Conditional Access policies
- Identity Protection controls
- Multi-Factor Authentication (MFA)
- Privileged Identity Management (PIM)
- Device compliance integrations
- Translate IAM architectural designs into production-ready configurations
- Implement identity security controls aligned with enterprise governance standards
Advanced Troubleshooting & Production Support
- Perform Level 3 troubleshooting for complex identity and access issues
- Resolve authentication, authorization, and policy conflicts across cloud and hybrid environments
- Support incident remediation and root cause analysis for identity-related security events
Automation & Platform Optimization
- Develop automation scripts (e.g., PowerShell) to streamline identity management processes
- Support integration of identity controls across enterprise applications and platforms
- Ensure scalable and secure configurations aligned with enterprise architecture
Cross-Functional Collaboration
- Partner with IAM architects, security teams, and infrastructure teams to deploy secure identity solutions
- Work within large enterprise or global IT services environments (500+ users)
- Support project-based deployments and ongoing operational improvements
Required Qualifications (Must Have) Experience - 8–10 years of hands-on experience in Azure identity and access management
- 3+ years working in large enterprise environments (500+ users) or global IT services organizations such as Tata Consultancy Services
- Proven experience building and troubleshooting:
- Conditional Access
- Identity Protection
- MFA
- PIM
- Device compliance integrations
Technical Skills
- Advanced expertise in Azure / Entra ID Level 3 engineering
- Strong troubleshooting skills across enterprise identity security platforms
- Experience deploying production-ready IAM configurations
- Hands-on experience with automation scripting (PowerShell or equivalent)
- Experience working with Azure Machine Learning services in enterprise environments
Preferred Qualifications - Bachelor’s degree in Computer Science, Information Technology, or related field (or equivalent hands-on experience)
- Microsoft certifications such as:
- Identity and Access Administrator Associate (SC-300)
- Azure Security Engineer Associate (AZ-500)
- Azure AI Engineer Associate (AI-102)
- Experience supporting hybrid identity architectures
Candidate Profile Considerations
- Demonstrated completion of multiple contract assignments (6 months or longer) in Azure / Entra ID or IAM roles
- Short-term engagements are acceptable when aligned with project-based delivery or re-engagement history
Location Preference - Strong preference for local candidates within:
- San Francisco Bay Area
- Cincinnati Metro Area
- No relocation assistance available due to contract structure
Work Environment
- 100% onsite enterprise environment
- Collaborative, project-driven technical setting
- Fast-paced identity security implementation and support
If you are an experienced Azure identity engineer with strong Level 3 troubleshooting expertise and hands-on enterprise IAM implementation experience, we encourage you to apply.
Skills: mfa,identity security component,device compliance integrations,pim,iam,azure machine learning (ml),authentication,azure,azure/entra id l3