Posted 5 days ago
IAM Entra ID Engineer
AI Summary
An IAM Entra ID Engineer designs, implements, and manages Microsoft Entra ID identity and access solutions, leading AD migration and supporting Zero Trust security for a distributed workforce.
About this role
We are looking for an IAM Entra ID Engineer to strengthen a team based in Geneva. This role sits within a modern cloud transformation environment, with a strong focus on evolving identity and access management practices. You will play a central role in moving from legacy identity systems to Microsoft Entra ID, while supporting a Zero Trust security model and ensuring secure access for a distributed workforce.
Responsibilities of the position
Design, implement, and manage Microsoft Entra ID core features such as Conditional Access, MFA, passwordless authentication, and Windows Hello for Business.
Lead the transition from on-premises Active Directory to Entra ID as the main identity provider.
Contribute to the migration of identity services from legacy systems (e.g., MIM) to cloud-native solutions, optimizing Joiner-Mover-Leaver processes.
Configure and maintain advanced security capabilities including Privileged Identity Management (PIM) and identity protection tools.
Ensure proper monitoring, logging, and alerting mechanisms to detect and respond to potential security threats.
Handle incidents and service requests efficiently, working closely with cross-functional teams to ensure service reliability.
Maintain clear and structured technical documentation, including configuration standards and deployment procedures.
Collaborate with architects and security teams to align IAM solutions with broader business and security strategies.
Requirements
Degree in Computer Science, Information Technology, or equivalent professional experience.
Minimum of 3 to 5 years of hands-on experience in identity and access management, with strong expertise in Microsoft Entra ID (Azure AD).
Solid understanding of authentication and federation protocols such as SAML, OAuth 2.0, OpenID Connect, and JWT.
Strong scripting and automation skills (PowerShell, Terraform, Ansible) and experience leveraging Microsoft Graph API.
Knowledge of identity governance tools, including access reviews, entitlement management, and lifecycle workflows.
Experience working with Infrastructure as Code (IaC) for IAM configuration management.
Understanding of cloud security principles and best practices related to identity protection.
Familiarity with Agile methodologies (SAFe or similar frameworks) is considered a plus.