CK Construction logo
CK ConstructionPosted 3 weeks ago

IAM Engineer

On-siteFredericktown, Ohio, United States

Full TimeMediumConstruction Services

Job Summary

Design, implement, and optimize Microsoft Entra ID and Active Directory solutions while supporting hybrid identity synchronization and federation services. Manage user provisioning, deprovisioning, and access requests, and troubleshoot authentication, authorization, and identity synchronization issues. Support implementation of Identity Governance and Administration capabilities, including role engineering, entitlement management, and access certification campaigns. Collaborate with cybersecurity and infrastructure teams to modernize authorization models, enforce Zero Trust principles, and secure machine and workload identities for emerging AI technologies.

Required Qualifications

  • 3+ years of experience in Identity and Access Management, Identity Security, Systems Engineering, or a related discipline
  • Experience supporting Microsoft Entra ID and Active Directory environments
  • Experience with hybrid identity architectures and synchronization technologies
  • Experience implementing and supporting: Multi-Factor Authentication (MFA)
  • Experience implementing and supporting Conditional Access
  • Experience implementing and supporting Single Sign-On (SSO)/SCIM
  • Experience implementing and supporting SAML
  • Experience implementing and supporting OAuth
  • Experience implementing and supporting OpenID Connect
  • Experience implementing and supporting Role-Based Access Control (RBAC)
  • Understanding of Zero Trust security principles
  • Knowledge of identity lifecycle management processes
  • Experience with PowerShell scripting and automation
  • Strong analytical, troubleshooting, and problem-solving skills
  • Strong communication and collaboration abilities

Desired Qualifications

  • Microsoft Certified: Identity and Access Administrator Associate
  • Microsoft Certified: Azure Administrator Associate
  • Experience with: Microsoft Entra Identity Governance
  • Experience with: Microsoft Entra Privileged Identity Management (PIM)
  • Experience with: Microsoft Intune
  • Experience with: Microsoft Defender for Identity
  • Experience with: ServiceNow integrations
  • Experience with CyberArk, BeyondTrust, or other PAM platforms
  • Experience supporting enterprise environments with 1,500+ users
  • Experience implementing or supporting Identity Governance and Administration (IGA) solutions
  • Experience with access certifications, entitlement management, and Segregation of Duties (SoD)
  • Familiarity with machine identities, service principles, managed identities, and workload authentication
  • Knowledge of cloud-native authorization models and modern access control frameworks
  • Understanding of data classification, data governance, and data access control principles
  • Experience integrating identity governance with cloud platforms, analytics environments, and AI-enabled services
  • Knowledge of identity threat detection, identity protection, and identity security best practices

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce