
Lead Consultant, Identity & Authentication
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Illinois.
• Conduct research, design, plan, and maintain both new and existing network hardware and software technology components.
• Perform analysis, integration, and tackle moderately to highly complex incident and problem tasks impacting production systems and multiple applications.
• Define and update items within the configuration management plan.
• Identify and propose significant modifications to network hardware and software technology components to prevent incidents.
• Resolve incidents and carry out root cause analysis, escalating high-complexity incidents and problems as necessary.
• Ensure that plans are effectively integrated with other technical hardware and software components.
• Support production service requests, conduct routine administration, and assist with network hardware and software infrastructure.
• Develop and sustain tools for the maintenance, modification, and monitoring of hardware and software technology components.
• Implement network hardware and software technology components through system analysis, technical tools and utilities, and product customizations.
• Carry out testing, debugging, performance analysis, and documentation.
• Collaborate with fellow Engineers to address infrastructure interactions, data conversion impacts, and business function and performance requirements.
• Lead research, analysis, design, selection, planning, and engineering for new components or enhancements.
• This position does not include supervisory responsibilities.
• Over 5 years of experience in designing, implementing, and supporting enterprise Identity and Access Management (IAM) solutions within complex hybrid environments.
• Advanced knowledge of Active Directory Domain Services (ADDS), Active Directory Federation Services (ADFS), Microsoft Entra ID, Active Directory Certificate Services (ADCS), and Hybrid Identity.
• Strong expertise in PowerShell scripting, automation, APIs, Infrastructure as Code (IaC), and modern engineering practices.
• Familiarity with LDAP, Kerberos, SAML, OAuth, OpenID Connect (OIDC), WS-Federation, and certificate-based authentication.
• Experience in administering and supporting Group Policy (GPO), Domain Name System (DNS), Windows Server Update Services (WSUS), and System Center Operations Manager (SCOM) in enterprise settings.
• Understanding of identity security, Zero Trust principles, and identity governance.
• Exceptional analytical, troubleshooting, and problem-solving abilities.
• Experience in leading technical initiatives, mentoring engineers, and providing technical guidance across cross-functional teams.
• Background investigation is required.
• Allstate typically does not sponsor individuals for employment-based visas for this role.
• Must have a dedicated, private workspace free from distractions when working remotely.
• Reliable internet connection with minimum speeds of 50 MB download and 5 MB upload is necessary.
• Preferred: experience with privileged access management, certificate lifecycle management, cloud identity platforms, GitHub, CI/CD pipelines, Infrastructure as Code, automation frameworks, AI-assisted development, intelligent automation, operational analytics, or emerging AI technologies.
• Preferred certifications: Microsoft Certified: Identity and Access Administrator Associate (SC-300), Microsoft Certified: Azure Administrator Associate (AZ-104), Microsoft Certified: Azure Security Engineer Associate (AZ-500), Microsoft Certified: Cybersecurity Architect Expert (SC-100).
• Comprehensive technology setup including a laptop, monitors, headset, keyboard, and mouse.
• Monthly connectivity reimbursement for employees eligible to work from home.
Providence
GSB Solutions
Exit Factor
Get handpicked remote jobs straight to your inbox weekly.