Job Title: Microsoft Identity Engineer
Job Type: Direct Hire
Location: Houston, TX
Travel: Hybrid – 4x onsite
Salary: Up to $160k base
Start: ASAP
**No C2C or 3rd parties**
We’ve partnered exclusively with one of our top clients in Houston looking to add a senior Identity Engineer to their Infrastructure team. This individual will serve as a technical leader for their enterprise identity platform and be responsible for designing, implementing, securing, and supporting identity and access management solutions across their Microsoft and hybrid identity environments.
This is a highly hands-on engineering role focused on Microsoft Entra ID, Active Directory, Privileged Identity Management (PIM), Conditional Access, and IAM concepts. This position will play a key role in strengthening the organization’s identity security posture while leading initiatives related to Active Directory tiering, privileged access, and control plane modernization.
The ideal candidate brings 10+ years of enterprise identity experience and has deep expertise building and supporting large-scale Microsoft identity environments.
Job Responsibilities:
- Serve as the technical subject matter expert for enterprise identity and access management technologies
- Design, implement, and support Microsoft Entra ID and on-premises Active Directory environments
- Lead initiatives involving Active Directory tiering, privileged access, and identity security improvements
- Design and maintain Conditional Access policies, Privileged Identity Management (PIM), and role-based access controls
- Administer and secure enterprise identity infrastructure, including authentication, authorization, and identity lifecycle management
- Support CyberArk privileged access management solutions and privileged credential security
- Develop PowerShell automation to streamline identity administration and operational processes
- Manage Active Directory environments including domains, organizational units, group policies, DNS, FSMO roles, replication, delegation, and disaster recovery
- Provide technical leadership for identity-related projects and assist with future identity modernization initiatives
Qualifications:
- 10+ years of hands-on experience supporting enterprise identity and access management environments
- Expert-level experience with Microsoft Entra ID (Azure AD)
- Deep experience administering complex Active Directory environments
- Strong experience with:
- Conditional Access
- Privileged Identity Management (PIM)
- Identity governance and least privilege principles
- IAM concepts
- PowerShell automation
- Strong understanding of authentication and federation technologies including SAML, OAuth, OpenID Connect (OIDC), Single Sign-On (SSO), and Multi-Factor Authentication (MFA).
- Experience supporting enterprise-scale environments with hybrid identity architectures
Preferred/Desirable:
- Knowledge of Cyberark (setting up vaulting, safes, platforms, etc.) highly desirable
- Experience with Okta application integrations and federation beneficial
- Microsoft, Azure, CyberArk, or Okta certifications.
Please apply directly for consideration!
