Microsoft Entra ID Architect
The Microsoft Entra ID Security Expert is a hands on, onsite delivery role responsible for implementing and operationalising the Entra ID architecture defined by the Architect. This role works directly with customers and leads the configuration, tuning, and rollout of Entra ID security and governance features.
Your responsibilities:
- Entra ID Security Configuration
- Implement and manage Conditional Access policies using:
- User / Sign‐in Risk
- Device compliance
- Location and workload identity conditions
- Configure:
- MFA and Passwordless (FIDO2, Authenticator, TAP)
- Authentication Methods policy
- Identity Protection risk policies
- Implement and operationalise Privileged Identity Management (PIM):
- Role assignments
- Activation policies
- Approval workflows
- Entra Identity Governance Implementation
- Deploy and configure:
- Lifecycle Workflows (Joiner, Mover, Leaver)
- Entitlement Management (Access Packages, catalogues)
- Access Reviews (apps, groups, privileged roles)
- Map business roles to governance controls and access models.
- Provisioning & Automation
- Implement user and group provisioning using:
- Entra ID Provisioning Service
- SCIM connectors
- Microsoft Graph API
- Build workflows using Logic Apps / Power Automate for approvals, notifications, and exception handling.
- Application & External Access
- Onboard applications using SAML, OAuth2, OpenID Connect.
- Configure B2B Collaboration, Cross‐Tenant Access, and External Identity controls.
- DevOps & Automation
- Execute Identity‐as‐Code using PowerShell and Graph API.
- Deploy Entra changes using CI/CD pipelines.
- Support customer go‐lives, changes, and identity‐related incidents.
Essential skills/knowledge/experience:
- 7–10+ years hands‐on experience with Microsoft Entra ID.
- Strong implementation experience with:
- Conditional Access
- Identity Protection
- PIM
- Lifecycle Workflows
- Entra Provisioning / SCIM
- Desirable skills/knowledge/experience:
- Troubleshooting & Incident Handling
- Strong PowerShell and Graph API skills.
- Customer‐facing delivery experience.