Senior Identity Security Engineer responsible for designing and enhancing identity environments across Microsoft platforms. Collaborating with teams to deliver secure certificate services in hybrid and cloud settings.
Responsibilities
Design and architect modern Microsoft identity platforms, including new Active Directory and Entra ID environments, design patterns, standards and long-term roadmaps for secure, scalable foundations
Integrate third-party identity services, including platforms such as Okta, Ping, Duo, Auth0 and Yubico
Assess and improve existing identity environments by identifying risks, technical debt, reliability issues and leading the engineering work to implement practical, measurable improvements
Engineer PKI and certificate lifecycle services at scale, including PKI/ADCS design and operation, certificate automation, cloud integrations and modern machine-identity use cases
Plan and lead safe migrations and legacy exits, including decommissioning legacy AD forests, MIM, ADFS and outdated identity components
Drive adoption of passwordless and modern authentication, implementing solutions such as Windows Hello, passkeys, FIDO2 and supporting clients through change and adoption
Evolve organisations toward cloud-first identity models, implementing hybrid identity strategies, modern authentication, attribute mastering and secure workload/device identity patterns
Automate identity and certificate operations using automation, DevSecOps practices and infrastructure-as-code to deliver secure, consistent and maintainable identity services
Advising clients on IAM best practices, standards and regulatory requirements, including GDPR, ISO 27001, NIST Frameworks
Requirements
Strong engineering background with deep expertise across Active Directory, Entra ID and PKI/ADCS in large, complex environments
Pragmatic, methodical problem-solver able to diagnose and resolve identity issues end-to-end in hybrid platforms
Effective communicator and collaborator, working across architecture, engineering and operations teams
Trusted by clients and colleagues; delivers practical, secure solutions that reduce real-world risk
Broad experience across Active Directory, PKI, hybrid identity and modern authentication, including tiering, automation and identity hygiene
Skilled in identity migrations and legacy exits, covering AD consolidation, ADFS/MIM retirement and modernisation
Strong automation capability with PowerShell, CI/CD, monitoring and IaC to improve reliability and consistency
Experience in Microsoft identity & security certifications (SC-300, SC-100, AZ-500 or equivalent AD/Entra/PKI qualifications)
Security or architecture credentials like CISSP, ISSAP, CRISC, TOGAF or SABSA
Cloud platform certifications across Azure, AWS, GCP or Terraform
Benefits
A collaborative and supportive environment in which you can grow and develop your career
The tools and opportunity to do work you can be proud of
A chance to work alongside some of the best people in the industry, who always seek to share their knowledge and experience
Hybrid working – we empower you to make smart choices about when and where to work to achieve great results
Industry leading coaching and mentoring
Competitive salary and an excellent benefits package
Information Security Consultant managing security standards implementation at LUZA Group in Lisbon, Portugal. Handling analysis of risk and supporting audits while working in a hybrid model.
Senior Cybersecurity Analyst at Boeing performing advanced cybersecurity assessments and risk evaluations for third - party vendors. Focusing on automation, lean processes, and collaborating with key stakeholders across departments.
Cybersecurity Manager ensuring regulatory compliance in information security within the Mexican framework. Collaborating with technology teams to strengthen governance, risk, and control model.
CISA Auditor focusing on cloud security audits for a Zurich - based international bank. Ensuring cybersecurity and identifying vulnerabilities in IT systems with risk - oriented audits.
Cybersecurity Specialist managing compliance for DoD security transition to Zero Trust Architecture. Involves overseeing RMF activities and ensuring ATO deadlines are met in cloud environments.
Engineer II responsible for managing enterprise customer support in Security Engineering. Focused on troubleshooting and diagnosing security incidents in a hybrid work environment.
Guest Safety Agent at HRI Hospitality ensuring safety and hospitality for guests and managing outlet spaces. Maintaining a secure environment while engaging with guests and visitors in New Orleans.
Cybersecurity Architect for Saint Louis University developing and assessing security strategies and architecture. Ensuring secure IT services through effective security technologies and practices.
Senior Commercial Manager developing and executing Cyber Security strategies, managing client portfolios and leading complex negotiations in São Paulo.
Security Officer responsible for maintaining safety at WarHorse Casino. Enforcing policies, responding to incidents, and providing customer service to guests.