Senior Security Architect – AD/Entra ID

Posted Aug 25

This is a fully remote position, open to applicants in United States.

📋 Description

• Oversee the assessment, design, and development of technical requirements, solutions, and implementation roadmaps for Active Directory and Azure Active Directory.

• Establish and enforce policies, standards, and procedures related to Identity and Access Management (IAM).

• Promote ongoing enhancements in IAM security architecture through the adoption of emerging technologies and practices.

• Offer technical advice, guidance, expertise, and risk analysis to global project and operational teams.

• Convert requirements into architectural designs and influence the deployment of infrastructure elements.

• Maintain proficiency in Microsoft Entra ID and associated core technologies.

• Evaluate Azure Active Directory environments to pinpoint technical and operational challenges and devise improvement strategies.

• Sustain and optimize the on-premises Active Directory infrastructure, including DNS, Group Policy Objects (GPOs), and domain controllers.

• Lead or engage in complex troubleshooting, incident resolution, and problem-solving with infrastructure teams.

• Address technically intricate security issues, internal control challenges, critical incidents, and crisis management situations.

• Implement and uphold Multi-Factor Authentication (MFA) and security best practices across user accounts and devices.

• Develop and manage Microsoft Graph API integrations for automation and custom applications throughout Microsoft 365 services.

• Create custom scripts for automating administrative tasks and retrieving data via Graph API.

• Write and maintain advanced PowerShell scripts for provisioning, reporting, and service configurations across Entra ID and Active Directory.

• Collaborate with Identity, threat assessment, and Cloud Security teams across Identity Governance Administration (IGA), Privileged Access Management (PAM), IAM, Access Management (AM), and penetration testing.


⛳️ Requirements

• More than 10 years of relevant experience in IT Security and IT Architecture.

• At least 7 years of experience in Active Directory architecture and infrastructure.

• A minimum of 3 years of experience with Azure Active Directory architecture and design.

• Over 5 years of experience in Identity and Access Management (IAM) processes and technologies.

• Demonstrated expertise in designing and implementing IAM solutions in intricate environments.

• Proficiency in Azure AD/Entra, including Conditional Access, MFA, hybrid environments, GPOs, on-premises Active Directory migrations, and Azure AD Connect.

• Experience with Microsoft Graph API for data retrieval and automation across Azure Active Directory.

• Comprehensive knowledge of identity governance, authentication, authorization, federation, MFA, Single Sign-On (SSO), and PAM.

• Familiarity with WS-Fed, OAuth, and SAML.

• Responsibilities as an Enterprise/Domain Admin and/or Azure Global Admin.

• Proven experience managing Active Directory 2016/2019/2022 infrastructure for enterprise environments.

• Strong skills in PowerShell and Microsoft Graph API.

• Understanding of the Microsoft Security Stack: Defender for Office 365, Defender for Identity, Defender for Cloud Apps, Entra ID, Microsoft Purview Information Protection, Data Loss Prevention, and Compliance Center, including Litigation Hold, Retention, and eDiscovery.

• Excellent communication and interpersonal skills.

• Relevant certifications such as CISSP, CISM, or Microsoft Certified: Identity and Access Administrator Associate are considered advantageous.

• Willingness to travel up to 10%.

• Ability to perform sedentary work.

• Significant movement of the wrists, hands, and/or fingers for a minimum of 8 hours daily.

• Close visual acuity for computer terminal viewing and/or extensive reading for at least 8 hours a day.


🏝️ Benefits

• Primarily remote workforce (U.S. based only; some travel may be necessary for specific roles, and on-site work may be required for Federal positions).

• Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint covers 90% of the premium for employees and 70% for family plans [spouse/children/family]) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees' premiums and 75% for family plans [spouse/children/family]).

• HSA contributions: $850 annually per employee / $1750 annually per family.

• Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans.

• 12 corporate holidays.

• Flexible Time Off (FTO) program.

• Healthy mobile phone and home internet allowance.

• Eligibility for retirement plan after 2 months during open enrollment.

• Pet Benefit Option.

• Opportunities for collaboration, mentorship, and guidance.

People also viewed

Zscaler13 hours ago

Insider Risk Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$134k – $167.5k/year
ApplyView job
Viatris13 hours ago

Student Worker, Information Security

US flagUnited States OnlyPart-timeCybersecurity / Security Engineer$20 – $30/hour
ApplyView job
ActBlue14 hours ago

Senior Corporate Security Specialist

US flagArizona, +33 more statesFull-timeCybersecurity / Security Engineer$173.7k – $210.7k/year
ApplyView job
AlphaSense14 hours ago

Senior Product Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$182k – $228k/year
ApplyView job
SysMap Solutions14 hours ago

Anti-Fraud and Information Security Consultant – Specialist

BR flagBrazil OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
It4us Cyber Security14 hours ago

Operations Assistant – Cyber Security

BR flagBrazil OnlyFreelanceCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers