Jobedly Post a Job

Senior Microsoft Security Entra Engineer- Remote (Anywhere in the U.S.)

GuidePoint Security · Remote
RemoteFull-timeInformation AssuranceTechnology$111,000–$150,000/yr
Apply on Jobedly ⚡ One-click AI Apply

About the Senior Microsoft Security Entra Engineer role

Senior Microsoft Security Entra Engineer positions focus on delivering results in their domain. This page aggregates open Senior Microsoft Security Entra Engineer roles and what employers typically expect.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk. General Description GuidePoint Security is seeking a Senior Entra Engineer to join our Microsoft Cloud Security Team. This role is a deep identity specialization, you'll bring strong, hands-on Microsoft Entra ID expertise across our client engagements, ranging from small businesses to large enterprises. You'll design, implement, and troubleshoot complex Entra environments, including how Entra integrates with other identity providers and with on-premises Active Directory in hybrid scenarios. You'll partner with principal consultants, owning the identity workstream on an engagement, across varied industries and environments. You'll own your technical delivery independently (80% utilization target), managing your time and communication within assigned engagements, and contribute to internal practice and knowledge-sharing efforts between projects. Roles and Responsibilities: Entra ID Architecture: Design and implement end-to-end Entra ID environments, including tenant architecture, dynamic groups, administrative units, and identity lifecycle management at scale. Access Control & Governance: Design and implement Conditional Access (including advanced scenarios like Global Secure Access, token protection, and authentication strengths), MFA/passwordless, PIM, RBAC, access reviews, and entitlement management. Hybrid Identity: Own hybrid identity design and troubleshooting, including Entra Connect / Cloud Sync, Entra Connect Health, password Hash Sync vs. pass-through auth vs. federation (ADFS), and Entra Domain Services. Identity Federation & Integration: Design and support identity federation and integration between Entra ID and other identity providers (Okta, Ping Identity, ADFS, third-party SAML/OIDC IdPs), including migration scenarios moving customers onto Entra. Application Integration: Integrate applications via SSO (SAML/OIDC), enterprise app registrations, SCIM provisioning, and application proxy/Global Secure Access for on-prem app publishing. Advanced understanding of SAML and OIDC tokens, custom claims, and troubleshooting SAML and OIDC-based authentication. External Identities: Design and implement Entra External ID (B2B/B2C) for partner and customer-facing identity scenarios. Workload Identities: Design and implement identity solutions for Workload Identities such as Managed Identities and Workload Identity Federation. Risk & Investigation: Investigate and remediate identity risks using Entra ID Protection, sign-in and audit logs, and Entra recommendations; drive hybrid identity hygiene (stale object cleanup, privileged account reduction, tiered admin models). Adjacent Microsoft Security: Maintain deep knowledge of how Entra ID intersects with Azure, Microsoft Purview, Intune, and Defender XDR, and support those workstreams as engagements require. Other duties as assigned. Adhere to GuidePoint Security Core Values. Required Education and Experience: Bachelor’s Degree and 3–5+ years of hands-on, production experience specifically in Microsoft Entra ID, in addition to broader IT administration, identity management, or security operations experience. Deep working knowledge of Conditional Access, MFA/passwordless, PIM, RBAC, access reviews, and entitlement management. Strong hands-on experience with hybrid identity: Entra Connect/Cloud Sync, on-premises Active Directory, and the tradeoffs between password hash sync, pass-through authentication, and federation. Knowledge of core authentication and provisioning protocols: SAML, OAuth 2.0/OIDC, Kerberos, LDAP, and SCIM. Experience…

Salary estimate

$111,000 – $150,000/yr
Provided by the employer.

Skills for this role

AzureCommunicationSecurity

Resume tips for Senior Microsoft Security Entra Engineer applicants

Interview preparation

Prepare concrete STAR-format stories that show Senior Microsoft Security Entra Engineer outcomes you drove.

Research the employer's product and recent news before the interview.

Be ready to explain how you'd approach a typical Senior Microsoft Security Entra Engineer problem end to end.

Have thoughtful questions ready about the team, tools and success metrics.

About GuidePoint Security

GuidePoint Security is actively hiring on Jobedly. Explore their open roles and what it's like to work there.

Apply on Jobedly ⚡ One-click AI Apply

Similar jobs

Companies hiring for similar roles