Job Summary (IAM SME):
- Over 10 years of IAM experience, specializing in Microsoft Entra ID (Azure AD) within enterprise production environments.
- Serve as the subject matter expert (SME) for IAM and SSO, supporting engineering teams and daily operations.
- Provide Level 3 operational support for Entra ID services, including SSO, MFA, Conditional Access, federation, and provisioning.
- Manage onboarding and modifications for SSO integrations across SaaS, custom, and on-premises applications using SAML 2.0, OIDC/OAuth 2.0, and SCIM protocols.
- Lead incident escalation and resolution for IAM services, ensuring timely root cause analysis and permanent solutions for critical incidents.
- Support change management processes involving IAM policies, application integrations, and platform enhancements.
- Administer identity governance controls such as Privileged Identity Management (PIM), Access Reviews, Role-Based Access Control (RBAC), and Attribute-Based Access Control (ABAC).
- Maintain hybrid identity operations, including Active Directory, Entra Connect/Cloud Sync, and federation services (e.g., AD FS).
- Manage Azure IAM permissions across management groups, subscriptions, resource RBAC, service principals, and managed identities.
- Conduct proactive monitoring, health checks, and service reviews to ensure the stability and availability of identity platforms.
- Maintain and update Standard Operating Procedures (SOPs), runbooks, and operational documentation.
- Automate IAM operations in Entra ID using PowerShell and Microsoft Graph API for tasks such as user/group management and PIM.
- Drive automation initiatives for routine operations, including Joiner-Mover-Leaver (JML) processes and SSO onboarding.
- Participate in on-call or shift-based support to ensure 24x7 continuity of identity services.
- Required certification: Microsoft Certified: Identity and Access Administrator Associate.
- Preferred certification: Microsoft Certified: Azure Solutions Architect Expert or equivalent.