Senior Security Architect – AD/Entra ID

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior Security Architect securing Microsoft Active Directory and Entra ID environments for GuidePoint Security’s cybersecurity clients. Designing IAM architecture, automating administration and resolving complex identity security issues.

Responsibilities:

  • Lead evaluation, design and development of Active Directory and Azure Active Directory technical requirements, solutions and implementation roadmaps
  • Develop and enforce IAM policies, standards and procedures
  • Drive continuous improvement in IAM security architecture using emerging security technologies and practices
  • Provide global project and operational teams with technical advice, guidance, expertise and risk analysis
  • Translate requirements into architectural designs and influence deployment of infrastructure components
  • Maintain expertise in Microsoft Entra ID and related core technologies
  • Analyze Azure Active Directory environments, identify technical and operational challenges, and develop improvement solutions
  • Maintain and optimize on-premises Active Directory infrastructure, including DNS, GPOs and domain controllers
  • Lead or participate in complex troubleshooting, incident resolution and problem resolution with infrastructure teams
  • Resolve technically complex security issues, internal control issues, critical incidents and crisis management matters
  • Implement and enforce MFA and security best practices across user accounts and devices
  • Develop and manage Microsoft Graph API integrations for automation and custom applications across Microsoft 365 services
  • Create custom scripts for administrative-task automation and Graph API data retrieval
  • Write and maintain advanced PowerShell scripts for provisioning, reporting and service configurations across Entra ID and Active Directory
  • Partner with Identity, threat assessment and Cloud Security teams across IGA, PAM, IAM, AM and penetration testing

Requirements:

  • 10+ years of relevant working experience in IT Security and IT Architecture
  • 7+ years of experience with Active Directory architecture and infrastructure
  • 3+ years of experience with Azure Active Directory architecture and design
  • 5+ years of experience with Identity and Access Management (IAM) processes and technologies
  • Proven expertise in designing and implementing IAM solutions in complex environments
  • Expertise in Azure AD/Entra, including Conditional Access, MFA, hybrid environments, GPOs, on-premises Active Directory migrations and Azure AD Connect
  • Experience with Microsoft Graph API for data retrieval and automation across Azure AAD
  • In-depth knowledge of identity governance, authentication, authorization, federation, MFA, SSO and PAM
  • Understanding of WS-Fed, OAuth and SAML
  • Enterprise/Domain Admin and/or Azure Global Admin responsibilities
  • Proven knowledge of managing Active Directory 2016/2019/2022 infrastructure for the Enterprise
  • Strong experience in PowerShell and Microsoft Graph API
  • Knowledge of Microsoft Security Stack: Defender for Office 365, Defender for Identity, Defender for Cloud Apps, Entra ID, Microsoft Purview Information Protection, Data Loss Prevention and Compliance Center, including Litigation Hold, Retention and eDiscovery
  • Strong communication and interpersonal skills
  • Relevant certifications such as CISSP, CISM or Microsoft Certified: Identity and Access Administrator Associate are considered an asset
  • Up to 10% travel
  • Sedentary work
  • Substantial movement of the wrists, hands and/or fingers for a minimum of 8 hours a day
  • Close visual acuity for computer terminal viewing and/or extensive reading for a minimum of 8 hours a day

Benefits:

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family))
  • HSA contributions: $850 per EE annually / $1750 per family annually
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays
  • Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option
  • Collaboration, mentorship and guidance opportunities