
Cloud Security, IAM Architect
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Design and enhance security measures for Microsoft cloud and IAM controls that extend beyond the default security features of Dynamics.
• Execute and oversee Conditional Access, Privileged Identity Management, least privilege practices, MFA, and authentication controls.
• Set up and document security protocols for Dataverse/Dynamics, including roles, business units, teams, record ownership/sharing, table privileges, column/field security, audit controls, and restricted record access.
• Safeguard sensitive, whistleblower, confidential investigative, and regulated data.
• Create designs for administrative and emergency access.
• Implement logging for privileged actions, audit logging, monitoring, and security testing/validation.
• Develop documentation and playbooks for incident response.
• Integrate capabilities such as Microsoft Purview/DLP, Sentinel, or similar SIEM solutions.
• Provide support for regulated federal IT infrastructure and cybersecurity operations.
• Over 7 years of experience in cybersecurity, IAM, or cloud security.
• More than 3 years of experience with Microsoft cloud identity and security.
• Proficiency in Microsoft Entra ID.
• Familiarity with Conditional Access.
• Experience in Privileged Identity Management.
• Understanding of RBAC and least privilege principles.
• Knowledge of MFA and authentication controls.
• Experience with Dataverse/Dynamics security.
• Background in protecting sensitive data.
• Experience in security logging and auditing.
• Competence in security testing and validation.
• Familiarity with incident response playbook development.
• Experience in designing administrative and emergency access protocols.
• Proven ability to document security control configurations for regulated systems.
• Understanding of Dataverse security roles, business units, teams, record ownership/sharing, table privileges, column/field security, auditing, restricted record access, and the interplay between Dataverse controls and Power Platform solutions.
• Preferred certifications/qualifications include one or more of: CISSP, SC-100 Cybersecurity Architect, AZ-500 Azure Security Engineer, SC-300 Identity and Access Administrator, or Microsoft Power Platform security experience/certification.
• Strong differentiators include experience with government Inspector General/security, whistleblower/confidential investigative records, familiarity with CJIS, healthcare, financial, legal, regulatory, or similarly restricted datasets, and integration of Microsoft Purview/DLP or Sentinel/equivalent SIEM.
• Competitive Employee Health Insurance options, including dental coverage.
• Vision plan fully paid by the company.
• 401K plan featuring a generous company match and no vesting period.
• Life insurance fully covered by the company.
• Long and short-term disability insurance at no cost to employees.
• Training allowance provided.
• Paid Time Off (PTO).
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.