Job Summary The
Azure / Entra ID L3 Engineer is responsible for the
hands-on build, configuration, and advanced troubleshooting of Microsoft Entra ID (Azure AD) identity security capabilities. This role works closely with the
IAM Architect to translate architectural designs into
production-ready implementations, while also serving as the escalation point for complex identity and access issues.
The engineer will support enterprise-scale environments with strong focus on
Conditional Access, Identity Protection, MFA, Privileged Identity Management (PIM), and device compliance integrations.
Key Responsibilities Identity & Access Engineering - Build, configure, and maintain Microsoft Entra ID identity security components.
- Implement and support Conditional Access policies aligned with risk-based access strategies.
- Configure and manage Multi-Factor Authentication (MFA) solutions.
Security & Privileged Access - Implement and administer Privileged Identity Management (PIM) for role-based access.
- Support Identity Protection features including risk detection, remediation, and alerts.
- Ensure secure integration of identity services with enterprise applications.
Device & Compliance Integration - Integrate identity services with device compliance platforms (e.g., Intune, endpoint security tools).
- Troubleshoot device-based access and compliance-related Conditional Access issues.
Advanced Troubleshooting & L3 Support - Act as Level 3 escalation for complex Entra ID and IAM-related issues.
- Perform deep-dive root cause analysis for authentication, authorization, and access failures.
- Support incident, problem, and change management activities.
Collaboration with Architecture - Translate IAM Architect designs into production-ready configurations.
- Provide feedback on design feasibility, scalability, and operational impact.
- Assist with rollout, validation, and post-deployment stabilization.
Required Skills & Experience Core Identity Skills - Microsoft Azure AD / Entra ID administration and engineering
- Conditional Access policy design and implementation
- MFA, Identity Protection, and PIM configuration
- Identity security troubleshooting at enterprise scale
Security & Operations - Strong understanding of authentication protocols and access controls
- Experience supporting regulated or security-sensitive environments
- Hands-on experience with production identity environments
Competencies - Identity & Access Management Engineering
- Security Configuration & Troubleshooting
- L3 Production Support
- Collaboration with Architecture & Security Teams