Senior Identity Security Engineer responsible for designing and enhancing identity environments across Microsoft platforms. Collaborating with teams to deliver secure certificate services in hybrid and cloud settings.
Responsibilities
Design and architect modern Microsoft identity platforms, including new Active Directory and Entra ID environments, design patterns, standards and long-term roadmaps for secure, scalable foundations
Integrate third-party identity services, including platforms such as Okta, Ping, Duo, Auth0 and Yubico
Assess and improve existing identity environments by identifying risks, technical debt, reliability issues and leading the engineering work to implement practical, measurable improvements
Engineer PKI and certificate lifecycle services at scale, including PKI/ADCS design and operation, certificate automation, cloud integrations and modern machine-identity use cases
Plan and lead safe migrations and legacy exits, including decommissioning legacy AD forests, MIM, ADFS and outdated identity components
Drive adoption of passwordless and modern authentication, implementing solutions such as Windows Hello, passkeys, FIDO2 and supporting clients through change and adoption
Evolve organisations toward cloud-first identity models, implementing hybrid identity strategies, modern authentication, attribute mastering and secure workload/device identity patterns
Automate identity and certificate operations using automation, DevSecOps practices and infrastructure-as-code to deliver secure, consistent and maintainable identity services
Advising clients on IAM best practices, standards and regulatory requirements, including GDPR, ISO 27001, NIST Frameworks
Requirements
Strong engineering background with deep expertise across Active Directory, Entra ID and PKI/ADCS in large, complex environments
Pragmatic, methodical problem-solver able to diagnose and resolve identity issues end-to-end in hybrid platforms
Effective communicator and collaborator, working across architecture, engineering and operations teams
Trusted by clients and colleagues; delivers practical, secure solutions that reduce real-world risk
Broad experience across Active Directory, PKI, hybrid identity and modern authentication, including tiering, automation and identity hygiene
Skilled in identity migrations and legacy exits, covering AD consolidation, ADFS/MIM retirement and modernisation
Strong automation capability with PowerShell, CI/CD, monitoring and IaC to improve reliability and consistency
Experience in Microsoft identity & security certifications (SC-300, SC-100, AZ-500 or equivalent AD/Entra/PKI qualifications)
Security or architecture credentials like CISSP, ISSAP, CRISC, TOGAF or SABSA
Cloud platform certifications across Azure, AWS, GCP or Terraform
Benefits
A collaborative and supportive environment in which you can grow and develop your career
The tools and opportunity to do work you can be proud of
A chance to work alongside some of the best people in the industry, who always seek to share their knowledge and experience
Hybrid working – we empower you to make smart choices about when and where to work to achieve great results
Industry leading coaching and mentoring
Competitive salary and an excellent benefits package
Director of Customer Success leading a team of Enterprise Customer Success Managers at Saviynt. Responsible for driving customer loyalty and adoption of Saviynt’s innovative products and services.
Lead Cyber Security Consultant in Cyber Advisory at FSP, specializing in security strategy and risk advisory engagement. Collaborating with senior leadership and clients to deliver high - quality advisory services.
Senior IT Cybersecurity Auditor responsible for assessing risks and implementing security controls. Require extensive experience in audits and compliance for government clients.
Network Security Engineer for government projects at Zirlen Technologies based in Austin, TX, requiring extensive experience in cloud security and architecture.
Security Administration/Visitor Control specialist managing entry and circulation control for clients at GDIT. Ensuring safety and compliance with established security protocols.
Estágio em Projetos na área de saúde e segurança do trabalho na construção civil. Oportunidade de desenvolver e construir empreendimentos que respeitam o ambiente e a comunidade.
Experienced privacy attorney supporting the Office of Privacy and Innovation Governance at Cigna. Counseling on privacy, cybersecurity, data use, and technology matters while collaborating closely with Evernorth business unit.
Cyber Security Engineer working with product teams to embed security in development lifecycle. Design, implement, and manage security controls across cloud infrastructure and application architectures.
Associate Consultant Cyber Security at Wavestone advising clients on security strategies and IT transformations. Engaging in Cyber Security assessments and growing expertise in security topics.