POSITION TITLE : Entra ID / Active Directory Engineer
Estimate Start Date : pril 28, 2025 End Date : October 31, 2025 Work Location / Type : This is a hybrid position; 1-2 days onsite and 3-4 days remote. The candidate will report to ad be working from 390 Robert St N, St Paul, MN Narrative Description of Position :
Identity Management & Administration :
- Design, implement, and manage hybrid Active Directory (AD) environments and Azure Active Directory (Entra ID)
- Integrate systems and applications with centralized authentication solutions
- dminister identity federation services such as Single Sign On (SSO) and Multifactor Authentication (MFA)
- Manage directory synchronization tools like Azure AD Connect or Okta
Security & Compliance :
Implement security measures to protect AD / Entra ID environments against vulnerabilitiesEnsure compliance with CJIS, PCI, HIPAA, and other relevant regulatory frameworksConduct regular disaster recovery exercises for AD / Entra ID environmentsDevelop and enforce security baselines and policies for identity servicesOperational Excellence :
Monitor system performance, capacity planning, and resolve high-severity incidentsutomate processes using PowerShell scripting or other tools to enhance efficiencyConduct regular health checks of identity platforms to ensure operational stabilityMaintain detailed technical documentation and Standard Operating Procedures (SOPs)Collaboration & Leadership :
Provide technical leadership to cross-functional teamsMentor junior engineers and operational teams on best practicesParticipate in architectural discussions to design scalable, secure solutionsCollaborate with stakeholders to align identity services with business needsWhat education and experience are required for this job (minimum qualifications)
ny of the following combinations of education (in Computer Science, Systems Security, or similar) and relevant experience :
Bachelor's degree and 5 years of experiencessociate's degree and 7 years of experienceHigh school diploma or GED and 9 years of experienceExperience should include Active Directory / Entra ID engineering and experience managing environments containing sensitive data (CJIS, PCI, HIPAA, etc.).
Knowledge, Skills, and Abilities :
dvanced knowledge of Active Directory (on-premises) and Azure Active Directory / Entra IDExpertise in authentication protocols such as LDAP, Kerberos, SAML, OIDCProficiency in PowerShell scripting for automation tasksExperience with disaster recovery planning for directory servicesFamiliarity with Group Policy Objects (GPO), AD replication, backup / restoration processesStrong understanding of identity security best practicesExperience implementing privileged access management (PAM) solutionsFamiliarity with regulatory frameworks like CJIS, PCI DSS, HIPStrong problem-solving abilities under pressureExcellent communication skills for collaboration across teamsHigh attention to detail with a proactive approach to identifying risksWhat additional skills and experience would be helpful in this job (desired qualifications) :
Relevant certifications such as Microsoft Certified : Identity and Access Administrator Associate (SC300) or MCSE : Core InfrastructureExpertise with Microsoft AzureExpertise with Entra IDExperience in domain consolidation or migration projectsKnowledge of modern access control models (RBAC, PBAC)Exposure to AI / ML tools for enhancing IT operations