Role: Cloud Security-Azure IAM/RBAC Engineer
Duration: 12+ months
Location: New York, NY or Pittsburgh, PA(4 days onsite required weekly from day one)
Interview: Video
LOCAL Candidates ONLY !
Required Technical Skills
Advanced knowledge of Microsoft Entra ID (Azure AD), Azure RBAC, security groups, privileged identity management (PIM), and JIT access workflows.
Hands-on experience with Azure Policy and resource configurations, including enabling managed identities, provisioning Azure AD admin roles for services, and minimizing local service key usage.
Familiarity with Azure monitoring and logging capabilities, AAA (authentication, authorization, accounting) concepts, and integration with approval workflow tools.
Strong understanding of least-privilege access design and practical application of access control best practices in Azure.
Competence in baseline configuration management and maintaining accurate asset/data inventories.
Qualifications and Competencies
Demonstrated experience implementing least-privilege design at scale and articulating the rationale for RBAC in Azure.
Ability to author and maintain IAM policies and procedures, perform access reviews, and support audit evidence and control test preparation.
Proven capability to implement and govern remote/elevated access, emergency access processes, and related incident handling.
Strong communication and documentation skills for technical writing and stakeholder coordination.
Ability to collaborate across engineering, security, and operations teams to drive consistent, compliant access practices.
Nice-to-Have
Experience integrating identity workflows with enterprise approval systems and ticketing/incident processes.
Exposure to application identity design patterns and CI/CD controls for secret management.
Background in supporting audit readiness for access controls in cloud environments.
Raj Kiran