Haystack
← Back to Jobs
Technology

IAM Engineer (Microsoft EntraID) :: Hybrid-NC :: W2 position

Trebecon LLCRaleigh, NC🇺🇸United StatesPosted 5 Aug 2026

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

IAM Engineer – Microsoft Entra Specialist

Location: Hybrid (Raleigh, NC)
Duration: 6–12 months (with potential for extension)
Start Date: ASAP
Interview Process: Two rounds (Video)

Position Overview

We are seeking an experienced Identity & Access Management (IAM) Engineer with deep expertise in Microsoft Entra ID (Azure AD) to support a large global enterprise. This role is ideal for a hands-on identity professional who has successfully delivered enterprise-scale authentication modernization initiatives, including passwordless authentication, Conditional Access, and identity security.

The immediate priority is leading the rollout of Microsoft Passkeys and retiring legacy SMS and voice-based authentication methods while ensuring a seamless user experience and strong security posture.

Key Responsibilities

  • Lead the enterprise deployment of Microsoft Passkeys and passwordless authentication.
  • Plan and execute the retirement of SMS, voice, and other legacy authentication methods.
  • Design, implement, and maintain Microsoft Entra Conditional Access policies.
  • Configure and manage Microsoft Entra ID Protection policies and investigate identity risks.
  • Administer Enterprise Applications, App Registrations, and application permissions.
  • Manage application integrations using SSO, SAML, OpenID Connect (OIDC), OAuth, and SCIM.
  • Develop automation and reporting solutions using PowerShell and Microsoft Graph API.
  • Partner with security, infrastructure, application, and compliance teams to strengthen identity governance.
  • Create documentation and follow enterprise change management and audit processes.
  • Support identity-related security initiatives across a global enterprise environment.

Required Qualifications

  • 5+ years of hands-on experience administering Microsoft Entra ID (Azure AD) in enterprise environments.
  • Proven experience leading enterprise-scale Passkey/FIDO2 or passwordless authentication deployments.
  • Experience decommissioning legacy authentication methods, including SMS, voice, and password-only authentication.
  • Strong expertise in Microsoft Entra Conditional Access policy design, testing, and staged deployment.
  • Hands-on experience with Microsoft Entra ID Protection.
  • Experience with Enterprise Applications, App Registrations, and permission governance.
  • Strong understanding of SSO, SAML, OpenID Connect (OIDC), OAuth, and SCIM provisioning.
  • Proficiency with PowerShell and Microsoft Graph API for identity automation.
  • Experience working in regulated enterprise environments with established compliance and change management processes.
  • Excellent communication and stakeholder management skills.

Preferred Qualifications

  • Microsoft SC-300 (Identity and Access Administrator) certification or equivalent.
  • Experience with Microsoft Intune, Microsoft Defender for Cloud Apps, and Microsoft Purview.
  • Experience with Hybrid Identity, Microsoft Entra Connect (Azure AD Connect), or Cloud Sync.
  • Experience supporting organizations with 5,000+ users across multiple regions.

 

Skills

OAuth
SAML
SSO
Azure
PowerShell
Stakeholder Management

Similar jobs