Identity and Security Engineer

Houston, TX, US • Posted 19 hours ago • Updated 3 hours ago
Full Time
On-site
$130000 - $140000 per annum
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Identity and Security Engineer

Summary



Location: Atlanta, Austin, Houston, Dallas, Miramar, Orlando, Tallahassee, West Palm Beach, Fort Lauderdale, Phoenix, or Charlotte


Schedule: Remote - *Some onsite/local presence is needed*


Employment Type: Full-Time


Compensation: $130-140k



No C2C at this time



Overview


Our client is seeking an Identity & Security Engineer to serve as a lead technical resource responsible for the architecture, engineering, security, and monitoring of enterprise identity services across hybrid environments. This role will focus heavily on Active Directory, Entra ID, Identity and Access Management (IAM), Privileged Access Management (PAM), PKI, identity governance, and cloud identity integrations. The ideal candidate will have deep expertise in Microsoft identity technologies, strong security engineering capabilities, and experience driving modernization initiatives across both on-premises and cloud environments.




Responsibilities


Design, implement, optimize, and maintain enterprise identity platforms including Active Directory Domain Services, Entra ID, Single Sign-On (SSO), and Multifactor Authentication (MFA).


Architect secure identity frameworks utilizing RBAC, Conditional Access, least privilege, and Just-in-Time (JIT) access models.


Develop identity governance programs and access lifecycle management processes.


Lead the design and administration of identity services across hybrid cloud and on-premises environments.


Establish governance and security controls for service accounts, application registrations, and other non-human identities.


Integrate identity platforms with enterprise applications and business systems.


Partner with security, compliance, infrastructure, application, and DevOps teams to implement secure identity practices.


Lead PKI design, hardening initiatives, certificate lifecycle management, and authentication modernization efforts.


Engineer and support privileged access management and secure vendor remote access solutions.


Develop identity monitoring, auditing, and detection capabilities to identify suspicious or anomalous activity.


Support identity threat detection and response using ITDR, EDR, and SIEM platforms.


Perform root cause analysis and provide Tier 3 escalation support for complex authentication, authorization, and access-related issues.


Implement security controls to protect enterprise infrastructure from unauthorized access and identity-based threats.


Develop PowerShell automation, API integrations, and infrastructure-as-code solutions to reduce manual efforts.


Support compliance initiatives through identity-focused controls, governance, auditing, and evidence collection.


Lead identity-related projects through design, implementation, testing, deployment, and operational transition.


Create and maintain technical documentation, standards, procedures, and runbooks.


Evaluate emerging IAM and security technologies and recommend improvements to identity architecture and security posture.




Requirements


8+ years of experience supporting and engineering enterprise Active Directory environments.


5+ years of hands-on experience with Microsoft Entra ID in hybrid environments.


Deep expertise with Active Directory Domain Services (AD DS), Entra ID, ADCS, and Single Sign-On technologies.


Strong understanding of identity and access management principles, role-based access controls, and identity governance.


Experience designing and supporting federation, SSO, and MFA solutions.


Strong knowledge of authentication and authorization protocols including Kerberos, LDAP, SAML, OAuth 2.0, and OpenID Connect (OIDC).


Hands-on experience with Public Key Infrastructure (PKI), AD Certificate Services, and certificate lifecycle management.


Experience with Privileged Access Management (PAM) platforms and privileged access controls.


Advanced PowerShell scripting and automation experience.


Experience with Microsoft Graph API, Python, Terraform, or similar automation technologies.


Strong understanding of Zero Trust security concepts and identity protection strategies.


Experience with Microsoft Defender for Identity, Entra ID Protection, Microsoft Defender XDR, or similar security platforms.


Strong troubleshooting, analytical, and problem-solving skills.


Excellent communication skills with the ability to work across technical and non-technical teams.


Ability to work independently, lead initiatives, and serve as a senior technical resource.


Ability to participate in an on-call rotation and support critical production systems.




Preferred Experience


Experience with Okta, Ping Identity, or other enterprise IAM platforms.


Microsoft Entra Suite architecture and administration experience.


Certificate-based authentication modernization initiatives.


AWS and/or Google Cloud Platform cloud experience.


Microsoft certifications such as Azure Security Engineer Associate or Identity and Access Administrator Associate.


CISSP or other cybersecurity certifications.


Experience supporting large enterprise, professional services, legal, or highly regulated environments.


Experience with identity threat detection and response (ITDR) programs and identity-focused security operations.



All qualified applicants will receive consideration for employment without regard to race, color, national origin, age, ancestry, religion, sex, sexual orientation, gender identity, gender expression, marital status, disability, medical condition, genetic information, pregnancy, or military or veteran status. We consider all qualified applicants, including those with criminal histories, in a manner consistent with state and local laws, including the California Fair Chance Act, City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, Los Angeles County Fair Chance Ordinance, and San Francisco Fair Chance Ordinance.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10100245B
  • Position Id: JN092026429932-59
  • Posted 19 hours ago

Company Info

About Ledgent Technology

What do we do?

It's simple! At no cost to you, we help IT and Technology talent like you to connect with companies for either direct-hire opportunities, or we hire you to represent Ledgent Technology for contract or project-based assignments with companies throughout the U.S. and along the way, we strive to make life better for others.

Find a career in technology that makes you smile. Let Ledgent Technology help you through the process.

At Ledgent Technology, our priority is you. Whether your project or direct-hire technology job search was planned or not, the process can be stressful. We re here to help you through your journey, and in the end, our goal is to help you find the job that makes you smile. Our Promise: We love to create remarkable experiences every person, every time.

About_Company_One
Contact the job poster
PK

Parker Kulas

Recruiter @ Ledgent Technology
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Houston, Texas

Today

Easy Apply

Full-time

$110000 - $150000 per annum

Houston, Texas

Today

Easy Apply

Contract

$38.46 - $52.88 per hour

Minneapolis, Minnesota

Today

Easy Apply

Contract

$40 - $55 per hour

Burnsville, Minnesota

Today

Easy Apply

Contract

$41.00 - $50.00 per hour

Search all similar jobs