Job Summary :
We are looking for an experienced Identity and Access Management (IAM) Engineer with strong expertise in Microsoft Active Directory (AD) , Azure AD , and access governance . The role involves managing, securing, and optimizing identity infrastructure, ensuring compliance, and enabling seamless authentication and authorization across enterprise systems.
Key Responsibilities :
- Design, implement, and maintain IAM solutions focusing on Active Directory , Azure AD , and related identity systems .
- Manage and support user provisioning, authentication, and access control processes across enterprise applications.
- Implement and enforce role-based access control (RBAC) , group policies (GPOs) , and security baselines .
- Support Single Sign-On (SSO) and Multi-Factor Authentication (MFA) integrations using Azure AD, ADFS, or third-party IAM tools (e.G., Okta, Ping, SailPoint).
- Monitor and troubleshoot directory replication, domain controllers, DNS, and trust relationships .
- Ensure identity lifecycle management , including onboarding / offboarding, privilege management, and access reviews.
- Perform Active Directory health checks , audit logs, and implement corrective measures for vulnerabilities.
- Collaborate with security and compliance teams to meet audit, SOX, and regulatory requirements.
- Automate routine IAM tasks using PowerShell or scripting languages .
- Participate in incident response for identity-related security incidents.
- Evaluate and implement modern IAM practices , including Zero Trust , Privileged Access Management (PAM) , and Identity Governance and Administration (IGA) frameworks.
Required Skills & Qualifications :
Bachelor’s degree in Computer Science, Information Security, or related field.5+ years of hands-on experience with Active Directory and IAM technologies .Strong knowledge of ADDS, ADFS, Azure AD, Group Policy, LDAP, DNS, and Kerberos .Experience implementing SSO , MFA , and Federation Services .Proficiency with PowerShell scripting for identity automation and administration.Familiarity with PAM tools (e.G., CyberArk, BeyondTrust, Thycotic) and IGA platforms (e.G., SailPoint, Saviynt).Understanding of identity security best practices , Zero Trust , and least privilege models .Experience with identity governance processes (access certification, role mining, segregation of duties).Excellent problem-solving, documentation, and communication skills.