POSITION TITLE : Entra ID / Active Directory BPSI Engineer Estimate Start Date : pril 28, 2025 End Date : October 31, 2025 Work Location / Type : This is a hybrid position; 1-2 days onsite and 3-4 days remote. The candidate will report to ad be working from 390 Robert St N, St Paul, MN Narrative Description of Position :
Identity Management & Administration :
- Design, implement, and manage hybrid Active Directory (AD) environments and Azure Active Directory (Entra ID)
- Integrate systems and applications with centralized authentication solutions
- Administer identity federation services such as Single Sign On (SSO) and Multifactor Authentication (MFA)
- Manage directory synchronization tools like Azure AD Connect or Okta
Azure B2C / Entra External ID Support
Design, implement, and manage Azure AD B2C and Entra External ID environments.Integrate external-facing applications and services with Azure AD B2C for consumer identity and access management.Develop and configure user flows, custom policies, and branding customizations within Azure AD B2C.Collaborate with development teams to ensure seamless authentication experiences for external users.Monitor and optimize performance, scalability, and availability of Azure AD B2C / Entra External ID solutions.Ensure compliance with security standards and regulatory requirements for external identity management.Security & Compliance :
Implement security measures to protect AD / Entra ID environments against vulnerabilitiesEnsure compliance with CJIS, PCI, HIPAA, and other relevant regulatory frameworksConduct regular disaster recovery exercises for AD / Entra ID environmentsDevelop and enforce security baselines and policies for identity servicesOperational Excellence :
Monitor system performance, capacity planning, and resolve high-severity incidentsAutomate processes using PowerShell scripting or other tools to enhance efficiencyConduct regular health checks of identity platforms to ensure operational stabilityMaintain detailed technical documentation and Standard Operating Procedures (SOPs)Collaboration & Leadership :
Provide technical leadership to cross-functional teamsMentor junior engineers and operational teams on best practicesParticipate in architectural discussions to design scalable, secure solutionsCollaborate with stakeholders to align identity services with business needsWhat education and experience are required for this job (minimum qualifications)
ny of the following combinations of education (in Computer Science, Systems Security, or similar) and relevant experience :
Bachelor's degree and 5 years of experienceAssociate's degree and 7 years of experienceHigh school diploma or GED and 9 years of experienceExperience should include Active Directory / Entra ID engineering and experience managing environments containing sensitive data (CJIS, PCI, HIPAA, etc.).
Knowledge, Skills, and Abilities :
Advanced knowledge of Active Directory (on-premises) and Azure Active Directory / Entra IDExpertise in authentication protocols such as LDAP, Kerberos, SAML, OIDCProficiency in PowerShell scripting for automation tasksExperience with disaster recovery planning for directory servicesFamiliarity with Group Policy Objects (GPO), AD replication, backup / restoration processesStrong understanding of identity security best practicesExperience implementing privileged access management (PAM) solutionsFamiliarity with regulatory frameworks like CJIS, PCI DSS, HIPAAStrong problem-solving abilities under pressureExcellent communication skills for collaboration across teamsHigh attention to detail with a proactive approach to identifying risksWhat additional skills and experience would be helpful in this job (desired qualifications) :
Relevant certifications such as Microsoft Certified : Identity and Access Administrator Associate (SC300) or MCSE : Core InfrastructureExpertise with Microsoft AzureExpertise with Entra IDExperience in domain consolidation or migration projectsKnowledge of modern access control models (RBAC, PBAC)Exposure to AI / ML tools for enhancing IT operationsSpecifications of Position : Specifications Descriptions of Specifications MINIMUM SPECIFICATION REQUIREMENTS : Must have to be accepted for consideration for this position. Level of Education Bachelor's degree and 5 years of experience
ssociate's degree and 7 years of experience
High school diploma or GED and 9 years of experience Years of experience in Position Title Two plus years' experience architecting or administering Entra ID environments. DESIRED SPECIFICATIONS : Not required, but desire experience in these specifications for this position. ITSM Strong understanding of ITIL or IT Service Management frameworks Technology Experience should include Active Directory / Entra ID engineering and experience managing environments containing sensitive data (CJIS, PCI, HIPAA, etc.).
dvanced knowledge of Active Directory (on-premises) and Azure Active Directory / Entra ID Productivity Tools Proficiency with documentation and content development tools, i.e. - Microsoft Word, Visio, PowerPoint, Confluence, SharePoint, etc. Communications Requirements Communicate complex technical information clearly and concisely to diverse audiences through well-structured documentation, ensuring accuracy, usability, and consistency across all formats Work Environment bility to work independently and manage multiple priorities in a fast-paced environment. Hybrid telework / onsite office environment.