Microsoft Identity and Access Management Engineer
WFA Digital Insight
As remote work becomes the norm, demand for skilled Microsoft Identity and Access Management Engineers has grown significantly. With the rise of digital transformation, companies like Novanta are seeking experts who can design and implement secure identity and access management solutions. According to recent statistics, the demand for identity and access management professionals has increased by 25% in the past year. Novanta stands out for its commitment to innovation and teamwork, making it an attractive option for those looking for a challenging and rewarding role. Before applying, candidates should be aware of the importance of staying up-to-date with the latest Microsoft technologies and security principles.
Job Description
About the Role
The Microsoft Identity and Access Management Engineer role at Novanta is a mid-level position that requires a strong understanding of Microsoft Identity and Access Management (IAM) technologies. As a key member of the Information Technology team, the successful candidate will be responsible for designing, implementing, and maintaining identity and access management solutions across the organization's Microsoft ecosystem. This includes managing user lifecycle processes, configuring Conditional Access policies, and integrating SaaS applications with Azure AD.The role requires a strong security mindset and a passion for enabling secure, seamless access across a modern enterprise environment. The ideal candidate will have experience working with Microsoft IAM technologies, including Azure Active Directory, Microsoft Privileged Identity Management, and Conditional Access policy configuration.
The team at Novanta values teamwork, collaboration, and empowerment, making it an excellent fit for those who thrive in a dynamic and supportive environment. The company is committed to innovation and has a strong focus on digital transformation, providing opportunities for professional growth and development.
What You Will Do
- Design, implement, and maintain Microsoft Azure Active Directory (Azure AD / Entra ID) environments in hybrid and cloud-native configurations
- Manage user lifecycle processes, including provisioning, de-provisioning, and role-based access control (RBAC) assignments
- Configure and maintain Conditional Access policies, Multi-Factor Authentication (MFA), and Single Sign-On (SSO) solutions
- Administer Microsoft Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions to enforce least-privilege principles
- Integrate SaaS applications and on-premises systems with Azure AD using SAML, OAuth 2.0, and OpenID Connect protocols
- Monitor identity infrastructure for threats, anomalies, and compliance gaps using Microsoft Defender for Identity and Microsoft Sentinel
- Support and manage on-premises Active Directory environments, Group Policy, and hybrid identity configurations (Azure AD Connect / Entra Connect)
- Collaborate with security, compliance, and application teams to ensure IAM policies meet regulatory requirements, including SOX, HIPAA, and GDPR
- Develop and maintain documentation, runbooks, and standard operating procedures for IAM systems and processes
- Troubleshoot identity-related incidents, service requests, and access issues in a timely and structured manner
- Participate in IAM roadmap planning, architecture reviews, and continuous improvement initiatives
What We Are Looking For
- 3-5 years of experience in identity and access management, with a strong focus on Microsoft technologies
- Hands-on expertise with Azure Active Directory / Microsoft Entra ID, including tenant management and identity governance
- Proficiency in managing on-premises Active Directory and hybrid identity environments
- Experience designing and implementing SSO integrations using SAML, OAuth 2.0, and OpenID Connect
- Familiarity with Microsoft Privileged Identity Management (PIM) and Conditional Access policy configuration
- Practical knowledge of MFA solutions, including Microsoft Authenticator and FIDO2 security keys
- Experience with PowerShell scripting for IAM automation, reporting, and administration tasks
- Solid understanding of Zero Trust security principles and their practical application to identity and access management
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent professional experience
Nice to Have
- Microsoft certifications, such as SC-300 (Microsoft Identity and Access Administrator Associate)
- Experience with Azure AD Connect and hybrid identity configurations
- Knowledge of regulatory requirements, including SOX, HIPAA, and GDPR
- Familiarity with IT service management frameworks, such as ITIL
Benefits and Perks
- Competitive salary and benefits package
- Opportunity to work with a leading company in the technology industry
- Collaborative and dynamic work environment
- Professional growth and development opportunities
- Flexible working hours and remote work options
- Access to the latest Microsoft technologies and training resources
- Comprehensive health and wellness programs
- Generous paid time off and holiday allowance
- Retirement savings plan and employee stock purchase plan
How to Stand Out
- Familiarize yourself with the latest Microsoft IAM technologies, including Azure Active Directory and Microsoft Privileged Identity Management.
- Highlight your experience with PowerShell scripting and automation in your resume and cover letter.
- Be prepared to discuss your understanding of Zero Trust security principles and how you apply them in your work.
- Showcase your problem-solving skills by providing examples of complex identity-related incidents you've troubleshooted in the past.
- Research Novanta's company culture and values to demonstrate your enthusiasm for the role and the company.
- Don't be afraid to ask about the team's dynamics and how the company supports professional growth and development during the interview.
This is a remote position listed on WFA Digital, the platform for professionals who work from anywhere. Browse more remote jobs across all categories.