Skills & Experience
10+ years in Identity & Access Management with hands-on SSO and federation implementations.
Strong expertise in Microsoft Entra External ID.
Strong expertise in OAuth2 / OIDC, SAML 2.0, JWT, token/session management.
Proficiency in application registrations, redirect URIs, certificates/secrets, custom domains concepts.
Experience with Azure AD B2C and migration patterns to Entra External ID.
Working knowledge of Microsoft Graph API for user migration and identity operations.
Practical experience designing and implementing Conditional Access and MFA strategies.
Strong documentation and stakeholder management skills; ability to run workshops and knowledge transfer sessions.
Experience integrating SSO with mobile apps (browser-based handoff, deep links, sign-out redirection patterns).
Familiarity with Identity Governance/RBAC best practices for least privilege access.
Hands-on experience with migrations at large scale.
Experience handling large external user populations with high availability and performance considerations.
Strong understanding of identity lifecycle management for external identities.
Ability to troubleshoot complex federation, token, and claims-related issues.
Familiarity with security logging, audit requirements, and identity-related incident response.
Certification
Microsoft Certified: Identity and Access Administrator Associate (preferred)
Microsoft Certified: Cybersecurity Architect Expert (preferred)