
Senior Authentication Engineer – Entra
Posted Aug 27

Posted Aug 27
This is a fully remote position, open to applicants in Canada.
• Design, implement, and oversee enterprise authentication services, which encompass SSO, MFA, passwordless authentication, adaptive authentication, and federation services.
• Administer and provide support for Microsoft Entra ID authentication services and associated identity platforms.
• Lead the deployment and adoption of FIDO2 security keys, Windows Hello for Business, passkeys, certificate-based authentication, and passwordless solutions.
• Develop and uphold authentication standards, reference architectures, procedures, and operational runbooks.
• Implement authentication controls that align with Zero Trust principles.
• Investigate authentication-related security incidents in collaboration with Cyber Defense teams.
• Analyze authentication telemetry, identify suspicious sign-in activities, and recommend strategies for mitigation.
• Evaluate and implement authentication technologies, security enhancements, and industry best practices.
• Ensure high availability, resiliency, disaster recovery preparedness, and operational excellence of authentication platforms.
• Monitor service health, performance, capacity, and adoption metrics.
• Lead root cause analysis and problem management for outages and incidents.
• Drive automation initiatives aimed at enhancing operational efficiency and service quality.
• Design and support authentication integrations for SaaS, cloud-native, on-premises, custom, and third-party applications.
• Collaborate with application teams to onboard applications using SAML, OAuth 2.0, OIDC, WS-Federation, and SCIM.
• Contribute to the development of authentication roadmaps and modernization initiatives.
• Identify opportunities to phase out legacy authentication methods and adopt secure alternatives.
• Develop technical documentation, architecture diagrams, and implementation guidance.
• Partner with IAM, Cyber Security, Infrastructure, Application Development, and Workplace Technology teams.
• A minimum of 5 years of experience at the Engineer level implementing enterprise access management solutions.
• At least 3 years of hands-on experience with Microsoft Entra ID authentication services.
• Bachelor’s or Master’s degree in computer science, information security, a related field, or equivalent work experience.
• Proficiency in SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), Kerberos, WS-Federation, and LDAP.
• Experience with Microsoft Entra ID, Active Directory, MFA technologies, federation services, Conditional Access, Identity Protection, and Privileged Identity Management.
• Experience in implementing and supporting passwordless authentication solutions.
• Understanding of cloud security and principles of Zero Trust architecture.
• Working knowledge of SIEM tools such as Splunk, including report generation and alert configuration.
• Ability to interpret complex designs and convey them at an executive level.
• Knowledge of DNS, TLS/SSL, certificates, proxies, and load balancing.
• A minimum of 2 years of experience with scripting languages such as PowerShell or Python.
• Familiarity with Azure, Google Cloud Platform (GCP), and Amazon Web Services (AWS).
• Experience with large-scale identity verification solutions for enterprises.
• One or more Azure or Microsoft Security certifications preferred, such as AZ-900, AI-900, AZ-500, SC-300, or AZ-305.
• Knowledge of integrating AI agents with identity providers and applying governance to access and lifecycle management.
• Ability to utilize AI-driven analytics for identity governance, intelligent access decisions, anomalous behavior detection, and IAM workflow optimization.
• Strong troubleshooting, communication, and presentation skills.
• Capability to translate business requirements into secure and scalable technical solutions.
• Experience in researching industry trends and best practices.
• Proven ownership, accountability, customer-first mindset, cross-functional collaboration, service reliability, operational excellence, automation, and data-driven decision-making.
• Medical, dental, and vision insurance.
• 401(k) plan.
• Paid leave.
• Tuition reimbursement.
• A variety of additional discounts and perks.
• Fully remote work arrangement.
University Hospitals Urgent Care
WellStreet Urgent Care
Prisma Health Urgent Care
Canadian Solar Inc.
Get handpicked remote jobs straight to your inbox weekly.