Entry Level Security Admin

PomeroyDes Moines, IA
Onsite

About The Position

This role focuses on core Identity and Access Management (IAM) responsibilities, including managing the user lifecycle, implementing Role-Based Access Control (RBAC), and configuring multi-factor authentication (MFA). The position involves administering Azure AD, on-premises Active Directory, Exchange, VMware Horizon, and Microsoft Identity Manager (MIM). A key aspect of the role is utilizing automation and scripting, particularly PowerShell, to enhance efficiency and security. The Security Administrator will also be responsible for user on-boarding processes, handling access requests, assisting new users with initial setup, and troubleshooting login issues. This includes participating in daily on-boarding support calls and ensuring timely user creation and access provisioning in coordination with HR and IT teams.

Requirements

  • Azure / Entra ID
  • Active Directory
  • Microsoft Identity Manager
  • Basic Office 365
  • Ability to work in a professional manner, be flexible, and handle interactions with all levels of the organization.
  • Demonstrated ability to communicate well with other members of the IT department and with non-technical end users.
  • Self-directed, organized, and motivated.

Responsibilities

  • Manage user lifecycle processes including on-boarding, transfers, and off-boarding
  • Implement and enforce Role-Based Access Control (RBAC) and least privilege access
  • Configure and monitor multi-factor authentication (MFA) systems
  • Administer user and group lifecycle in Azure AD
  • Design and implement Conditional Access and MFA policies
  • Configure and maintain Azure AD resources and Cloud Sync
  • Govern privileged access and Access Reviews
  • Monitor identity risk events using Azure Identity Protection
  • Maintain and secure the on-premises Active Directory environment including access policies and object management
  • Structure and manage Organizational Units (OUs) and Group Policies (GPOs)
  • Delegate permissions and manage access control lists (ACLs) across AD objects
  • Administer secure email environments and manage mailbox access
  • Configure and manage mailbox permissions
  • Manage spam filtering, phishing protection, and compliance policies
  • Manage access to virtual desktop infrastructure (VDI) ensuring secure, policy-driven delivery of desktop services
  • Configure user entitlements and desktop pool assignments
  • Integrate Horizon access with AD and Azure AD SSO
  • Monitor and troubleshoot session performance and user access issues
  • Support identity synchronization and automation processes through MIM to maintain accurate and timely identity records
  • Configure and manage MIM synchronization rules and management agents
  • Automate user provisioning and de-provisioning across connected systems
  • Support approval workflows and self-service password reset features
  • Ensure integrity of identity data through monitoring and troubleshooting sync issues
  • Utilize automation, scripting, and governance knowledge to enhance efficiency, security, and compliance of identity systems
  • Develop and maintain PowerShell scripts for task automation
  • Analyze logs and alerts using Azure and Horizon logs
  • Document procedures and changes to support audit readiness and knowledge sharing
  • Process on-boarding requests quickly and accurately, ensuring access is granted as per role requirements
  • Validate that all required permissions and group memberships are applied during provisioning
  • Coordinate with HR and IT teams to ensure timely user creation and access provisioning
  • Participate in approximately two on-boarding support calls daily, each lasting up to one hour
  • Assist users with initial login, MFA registration, password setup, and access verification
  • Troubleshoot and resolve first-time login or access issues to ensure a seamless on-boarding experience
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service