Active Directory Entra ID consultant

Active Directory Entra ID consultant

Posted 2 weeks ago by 1750935462

Negotiable
Outside
Remote
USA

Summary: The role of Sr. Azure AD / Entra ID Admin involves managing and administering hybrid Active Directory environments and Azure Active Directory, with a focus on identity management, security compliance, and operational excellence. The position requires technical leadership and collaboration with cross-functional teams, along with mentoring junior engineers. The role is primarily remote, with occasional on-site visits as required by the client. The candidate should possess advanced knowledge of identity security best practices and relevant certifications.

Key Responsibilities:

  • Design, implement, and manage hybrid Active Directory (AD) environments and Azure Active Directory (Entra ID)
  • Integrate systems and applications with centralized authentication solutions
  • Administer identity federation services such as Single Sign On (SSO) and Multifactor Authentication (MFA)
  • Manage directory synchronization tools like Azure AD Connect
  • Design and convert Federated domain instance to a Managed Domain instance
  • Design and manage Entra ID to support Microsoft Azure VDI instances for secure Authentication and Authorization
  • Implement security measures to protect AD/Entra ID environments against vulnerabilities
  • Ensure compliance with CJIS, PCI, HIPAA, and other relevant regulatory frameworks
  • Conduct regular disaster recovery exercises for AD/Entra ID environments
  • Develop and enforce security baselines and policies for identity services
  • Monitor system performance, capacity planning, and resolve high-severity incidents
  • Automate processes using PowerShell scripting or other tools to enhance efficiency
  • Conduct regular health checks of identity platforms to ensure operational stability
  • Maintain detailed technical documentation and Standard Operating Procedures (SOPs)
  • Provide technical leadership to cross-functional teams
  • Mentor junior engineers and operational teams on best practices
  • Participate in architectural discussions to design scalable, secure solutions

Key Skills:

  • Advanced knowledge of Active Directory (on-premises) and Azure Active Directory/Entra ID
  • Expertise in authentication protocols such as LDAP, Kerberos, SAML, OIDC
  • Proficiency in PowerShell scripting for automation tasks
  • Experience with disaster recovery planning for directory services
  • Familiarity with Group Policy Objects (GPO), AD replication, backup/restoration processes
  • Strong understanding of identity security best practices
  • Experience implementing privileged access management (PAM) solutions
  • Familiarity with regulatory frameworks like CJIS, PCI DSS, HIPAA
  • Strong problem-solving abilities under pressure
  • Excellent communication skills for collaboration across teams
  • High attention to detail with a proactive approach to identifying risks
  • Relevant certifications such as Microsoft Certified: Identity and Access Administrator Associate (SC300) or MCSE: Core Infrastructure
  • Expertise with Microsoft Azure
  • Expertise with Entra ID
  • Experience in domain consolidation or migration projects
  • Knowledge of modern access control models (RBAC, PBAC)

Salary (Rate): undetermined

City: undetermined

Country: USA

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Sr. Azure AD / Entra ID Admin - W2

Longterm Remote (with occasional on-site visits as required by the client).

Identity Management & Administration:

  • Design, implement, and manage hybrid Active Directory (AD) environments and Azure Active Directory (Entra ID)
  • Integrate systems and applications with centralized authentication solutions
  • Administer identity federation services such as Single Sign On (SSO) and Multifactor Authentication (MFA)
  • Manage directory synchronization tools like Azure AD Connect
  • Design and convert Federated domain instance to a Managed Domain instance
  • Design and manage Entra ID to support Microsoft Azure VDI instances for secure Authentication and Authorization.

Security & Compliance:

  • Implement security measures to protect AD/Entra ID environments against vulnerabilities
  • Ensure compliance with CJIS, PCI, HIPAA, and other relevant regulatory frameworks
  • Conduct regular disaster recovery exercises for AD/Entra ID environments
  • Develop and enforce security baselines and policies for identity services

Operational Excellence:

  • Monitor system performance, capacity planning, and resolve high-severity incidents
  • Automate processes using PowerShell scripting or other tools to enhance efficiency
  • Conduct regular health checks of identity platforms to ensure operational stability
  • Maintain detailed technical documentation and Standard Operating Procedures (SOPs)

Collaboration & Leadership:

  • Provide technical leadership to cross-functional teams
  • Mentor junior engineers and operational teams on best practices
  • Participate in architectural discussions to design scalable, secure solutions
  • Advanced knowledge of Active Directory (on-premises) and Azure Active Directory/Entra ID
  • Expertise in authentication protocols such as LDAP, Kerberos, SAML, OIDC
  • Proficiency in PowerShell scripting for automation tasks
  • Experience with disaster recovery planning for directory services
  • Familiarity with Group Policy Objects (GPO), AD replication, backup/restoration processes
  • Strong understanding of identity security best practices
  • Experience implementing privileged access management (PAM) solutions
  • Familiarity with regulatory frameworks like CJIS, PCI DSS, HIPAA
  • Strong problem-solving abilities under pressure
  • Excellent communication skills for collaboration across teams
  • High attention to detail with a proactive approach to identifying risks

What additional skills and experience would be helpful in this job (desired qualifications):

  • Relevant certifications such as Microsoft Certified: Identity and Access Administrator Associate (SC300) or MCSE: Core Infrastructure
  • Expertise with Microsoft Azure
  • Expertise with Entra ID
  • Experience in domain consolidation or migration projects
  • Knowledge of modern access control models (RBAC, PBAC