Sr/Mid-Level Azure/IAM Engineer No 3rd PARTIES or Sponsorships Onsite/Hybrid at best Permanent Placement Knoxville, TN (37996) Great Company Unlimited Growth *Very Specific Skill Set
Scope of work: The Azure and MIM Administrator is responsible for the design, implementation, and maintenance of identity and access management solutions using Microsoft Azure Active Directory (Azure AD) and Microsoft Identity Manager (MIM). This role ensures secure, efficient, and compliant identity lifecycle management across the enviroment.
Responsibilities: - Manage and maintain Azure Active Directory, including user provisioning, group management, and conditional access policies in accordance with the client’s processes and procedures. - implement and support Azure AD Connect for hybrid identity synchronization - Design, configure, and maintain MIM components including Synchronization Service, Portal, and Service. - Develop and manage MIM workflows, rules extensions, and custom connectors. - Ensure accurate and timely synchronization between on-premises directories and cloud services. - Automate user provisioning and de-provisioning processes. - Complete service requests for and maintain role-based access control (RBAC) and least privilege principles in line with client’s standards. - Support identity governance and compliance initiatives (HIPPA, FERPA, NIST, etc). - Participates in complex collaborative teams to implement various software needs for multiple locations - Provide Tier 2/3 support for identity-related issues. - Integrate LDAP directories with identity management systems (e.g., MIM, Azure AD, third-party applications). - Work with OIT Security Team to implement and manage identity protection policies and MFA. - Assist groups with the creation of Azure resources and give guidance on policies and procedures, as well as industry best practices. - Support SSO and authentication mechanisms that rely on LDAP. - Ensure high availability, performance, and security of LDAP services. - Provides instruction, direction, and mentoring to more junior staff - Create and maintain technical documentation, SOPs, and knowledge base articles.
Skills:
Skilled in Azure Entra, Azure AD Connect, and Microsoft Identity Manager.
Skilled in C# and PowerShell scripting.
Knowledge of the Identity and Access Management (IAM) principles.
Knowledge of SAML/OAuth/OpenID Connect protocols.
Ability to review compliance framework (HIPPA, FERPA, NIST, etc) and know how they related to identity management.
Abilities with Azure Application Registrations, Services, Service Plans, Key Vaults, and RBAC.
Knowledge of Experience with LDAP directory services (e.g., OpenLDAP, 389 Directory Server, Active Directory LDS).
Knowledge with Apereo CAS and Shibboleth.
Experience with TLS/SSL certificates and secure LDAP configurations.
Ability to write and understand existing Java scripting.