
Senior Security Architect – AD/Entra ID
Posted Aug 25

Posted Aug 25
This is a fully remote position, open to applicants in United States.
• Oversee the assessment, design, and development of technical requirements, solutions, and implementation roadmaps for Active Directory and Azure Active Directory.
• Establish and enforce policies, standards, and procedures related to Identity and Access Management (IAM).
• Promote ongoing enhancements in IAM security architecture through the adoption of emerging technologies and practices.
• Offer technical advice, guidance, expertise, and risk analysis to global project and operational teams.
• Convert requirements into architectural designs and influence the deployment of infrastructure elements.
• Maintain proficiency in Microsoft Entra ID and associated core technologies.
• Evaluate Azure Active Directory environments to pinpoint technical and operational challenges and devise improvement strategies.
• Sustain and optimize the on-premises Active Directory infrastructure, including DNS, Group Policy Objects (GPOs), and domain controllers.
• Lead or engage in complex troubleshooting, incident resolution, and problem-solving with infrastructure teams.
• Address technically intricate security issues, internal control challenges, critical incidents, and crisis management situations.
• Implement and uphold Multi-Factor Authentication (MFA) and security best practices across user accounts and devices.
• Develop and manage Microsoft Graph API integrations for automation and custom applications throughout Microsoft 365 services.
• Create custom scripts for automating administrative tasks and retrieving data via Graph API.
• Write and maintain advanced PowerShell scripts for provisioning, reporting, and service configurations across Entra ID and Active Directory.
• Collaborate with Identity, threat assessment, and Cloud Security teams across Identity Governance Administration (IGA), Privileged Access Management (PAM), IAM, Access Management (AM), and penetration testing.
• More than 10 years of relevant experience in IT Security and IT Architecture.
• At least 7 years of experience in Active Directory architecture and infrastructure.
• A minimum of 3 years of experience with Azure Active Directory architecture and design.
• Over 5 years of experience in Identity and Access Management (IAM) processes and technologies.
• Demonstrated expertise in designing and implementing IAM solutions in intricate environments.
• Proficiency in Azure AD/Entra, including Conditional Access, MFA, hybrid environments, GPOs, on-premises Active Directory migrations, and Azure AD Connect.
• Experience with Microsoft Graph API for data retrieval and automation across Azure Active Directory.
• Comprehensive knowledge of identity governance, authentication, authorization, federation, MFA, Single Sign-On (SSO), and PAM.
• Familiarity with WS-Fed, OAuth, and SAML.
• Responsibilities as an Enterprise/Domain Admin and/or Azure Global Admin.
• Proven experience managing Active Directory 2016/2019/2022 infrastructure for enterprise environments.
• Strong skills in PowerShell and Microsoft Graph API.
• Understanding of the Microsoft Security Stack: Defender for Office 365, Defender for Identity, Defender for Cloud Apps, Entra ID, Microsoft Purview Information Protection, Data Loss Prevention, and Compliance Center, including Litigation Hold, Retention, and eDiscovery.
• Excellent communication and interpersonal skills.
• Relevant certifications such as CISSP, CISM, or Microsoft Certified: Identity and Access Administrator Associate are considered advantageous.
• Willingness to travel up to 10%.
• Ability to perform sedentary work.
• Significant movement of the wrists, hands, and/or fingers for a minimum of 8 hours daily.
• Close visual acuity for computer terminal viewing and/or extensive reading for at least 8 hours a day.
• Primarily remote workforce (U.S. based only; some travel may be necessary for specific roles, and on-site work may be required for Federal positions).
• Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint covers 90% of the premium for employees and 70% for family plans [spouse/children/family]) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees' premiums and 75% for family plans [spouse/children/family]).
• HSA contributions: $850 annually per employee / $1750 annually per family.
• Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans.
• 12 corporate holidays.
• Flexible Time Off (FTO) program.
• Healthy mobile phone and home internet allowance.
• Eligibility for retirement plan after 2 months during open enrollment.
• Pet Benefit Option.
• Opportunities for collaboration, mentorship, and guidance.
Zscaler
Viatris
ActBlue
AlphaSense
Get handpicked remote jobs straight to your inbox weekly.