Senior Cloud Identity Engineer

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior Cloud Identity Engineer building secure, automated Microsoft Cloud identity solutions for Europe’s leading e-pharmacy. Advancing Zero Trust, governance, and least-privilege security across Azure and AI platforms.

Responsibilities:

  • Design and scale Microsoft Entra ID Governance using Access Reviews and governance processes
  • Collaborate with business stakeholders to define governance processes
  • Build script-based automation for consistent governance across a decentralized Microsoft Entra environment
  • Engineer secure workload identity services
  • Automate the lifecycle of service principals, certificates, secrets, and federated credentials
  • Integrate workload identity solutions with Azure Key Vault
  • Design and implement self-service capabilities for service principals, Entra Groups, and delegated administration
  • Review and optimize Azure RBAC, Entra RBAC, application permissions, Microsoft Graph permissions, and OAuth consent models
  • Build identity monitoring and detection capabilities for expiring credentials, permission misuse, and guardrail violations
  • Use Microsoft Sentinel, Azure Monitor, Log Analytics, and KQL for monitoring and detection
  • Support automation of Joiner, Mover, and Leaver processes with HRIS as the identity source of truth
  • Collaborate across teams to improve cloud identity design, governance, security, and automation

Requirements:

  • Hands-on experience designing and automating cloud identity solutions
  • Experience with Microsoft Entra, Administrative Units, Microsoft Entra ID Governance, Microsoft Graph Permissions, Azure, Microsoft 365, and Power Platform
  • Experience working in complex cloud environments
  • Ability to design Zero Trust and Least Privilege architectures
  • Experience with automation, APIs, governance, and secure-by-design practices
  • Knowledge of Permission Misuse Detection and identity monitoring
  • Experience balancing developer experience with enterprise security requirements
  • Interest in emerging identity technologies and experimentation with new ideas
  • Ability to present technical concepts to colleagues and stakeholders
  • Experience collaborating across teams
  • Experience with Microsoft Sentinel, Azure Monitor, Log Analytics, Kusto Query Language (KQL), PowerShell, Bash, Azure Functions, or Logic Apps, as described in the role
  • Experience with Microsoft Entra Agent ID, Identity Blueprints, Microsoft 365 Agents/Copilot, or AI coding assistants is a plus, not required

Benefits:

  • Comprehensive onboarding program and welcome days
  • Remote working arrangement
  • €500 home office setup allowance
  • Anchor days with fully reimbursed travel costs and hotel expenses
  • Various internal and external training opportunities
  • Employee referral program with bonus rewards
  • Site-specific benefits supporting health, family time, and skills development