Entra ID Architect

KeyData Cyber
CA$60 - CA$75Remote

About The Position

At KeyData Cyber, we’re shaping the future of identity security. Recognized by Gartner and KuppingerCole as a leading IAM professional services firm, we specialize exclusively in designing, deploying, and managing end-to-end Identity and Access Management programs for organizations across North America. With 20 years of experience, 50M+ identities managed, and 1,000+ successful deployments, our team is our strongest asset and is built by design to help clients protect critical infrastructure, enable digital transformation, and ensure compliance with confidence. We deliver comprehensive solutions across IAM domains, including: Workforce IAM (Access Management, Identity Governance and Administration, Privileged Access Management) and Consumer IAM (Identity Verification, Authentication and Access, Threat Detection) in highly regulated industries. If you’re ready to grow your career alongside some of the industry’s best, come join us — you’re key to our success. We are seeking a highly skilled Senior IAM Engineer specializing in Microsoft Entra ID (formerly Azure Active Directory) to design, implement, and manage our cloud-based and hybrid identity infrastructures. In this role, you will serve as the subject matter expert for our identity ecosystem, ensuring seamless user access while maintaining a robust security posture. You will be responsible for defining access management strategies, enforcing governance policies, and securing our enterprise resources across hybrid environments.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent professional experience).
  • 5+ years of dedicated experience in Identity and Access Management (IAM), with at least 3 years focusing heavily on Microsoft Entra ID / Azure AD.
  • Deep understanding of modern authentication protocols (SAML 2.0, OIDC, OAuth 2.0, WS-Fed, FIDO2).
  • Hands-on experience configuring Entra ID Governance tools (PIM, Access Reviews).
  • Strong proficiency in scripting and automation using PowerShell and interfacing with the Microsoft Graph API.
  • Solid understanding of network security concepts relating to identity (e.g., Managed Identities, Application Proxy, Private Access).

Nice To Haves

  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100) or Azure Solutions Architect Expert (AZ-305)
  • Industry Certifications: CISSP, CISA, or CCSP designations are highly valued.
  • Familiarity with integrating Entra ID with governance platforms (such as SailPoint Identity Security Cloud or IdentityIQ) for advanced identity lifecycle workflows is a strong plus.
  • Strong analytical mindset, excellent documentation skills, and the ability to collaborate effectively with security compliance officers and infrastructure teams.

Responsibilities

  • Design, deploy, and maintain Microsoft Entra ID and hybrid identity architectures, including Entra Connect / Cloud Sync environments.
  • Manage corporate directory integration between on-premises Active Directory (AD) and Entra ID.
  • Oversee Enterprise Applications, App Registrations, and Service Principals, ensuring secure API permissions and consent frameworks.
  • Troubleshoot complex authentication, synchronization, and replication issues across hybrid infrastructure.
  • Design and enforce zero-trust security architectures using Entra Conditional Access Policies, risk-based policies, and Continuous Access Evaluation (CAE).
  • Deploy and manage Multi-Factor Authentication (MFA), Passwordless authentication, and Windows Hello for Business.
  • Configure and maintain Privileged Identity Management (PIM) to enforce just-in-time (JIT) and just-enough-access (JEA) for administrative roles.
  • Implement Entra ID Governance, including Access Reviews, Entitlement Management (Access Packages), and Lifecycle Workflows to automate user onboarding/offboarding.
  • Automate routine identity management tasks using PowerShell, Microsoft Graph API, and Azure Automation runbooks.
  • Monitor identity security logs using Entra ID Protection, Log Analytics, and integrate logs with enterprise SIEM platforms (e.g., Microsoft Sentinel).
  • Conduct regular access audits to ensure compliance with corporate policies, regulatory standards (e.g., SOC2, ISO 27001), and identity best practices.

Benefits

  • Extensive opportunities to advance your career through leading digital identity projects across North America.
  • Culture built on respect, inclusion, and equal opportunity for everyone.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service