IAM Engineer

Richmond, VA, US • Posted 1 day ago • Updated 9 hours ago
Full Time
On-site
USD $228,800.00 - 228,800.00 per year
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • Microsoft Azure
  • Group Policy
  • Collaboration
  • OIDC
  • Technical Drafting
  • Directory Services
  • Active Directory
  • Dragon NaturallySpeaking
  • DNS
  • GPO
  • Cloud Computing
  • Microsoft
  • Management
  • Kerberos
  • LDAP
  • SAML
  • OAuth
  • Authentication
  • Authorization
  • Lifecycle Management
  • Information Lifecycle Management
  • Infrastructure Lifecycle Management
  • Information Security Governance
  • Soft Skills
  • Communication
  • Documentation
  • English
  • Law
  • Elasticsearch
  • PDF
  • Legal
  • Recruiting
  • LOS
  • Account Management

Summary

We are seeking a forward-thinking IAM Engineer to drive the evolution of our identity landscape. In this role, you will lead the charge in transitioning our organization from a legacy, on-premises Active Directory (AD) environment to a modern, cloud-first identity architecture.

As a key member of our security and infrastructure team, you will rationalize our existing AD footprint while building out robust, scalable solutions in Microsoft Entra ID. This is a "builder" role that sits at the intersection of architecture, security, and hands-on engineering, directly supporting our broader Zero Trust and digital transformation initiatives.

Key Responsibilities
Identity Modernization: Lead the design and implementation of cloud-native identity solutions, reducing reliance on legacy on-premises infrastructure.

Hybrid Management: Manage and optimize the integration between on-premises Active Directory and Microsoft Entra ID (Azure AD), ensuring seamless synchronization and security.

Infrastructure Rationalization: Simplify and consolidate AD domains, forests, and Group Policy Objects (GPOs) to improve efficiency and reduce the attack surface.

Zero Trust Engineering: Implement modern authentication controls, including Conditional Access policies, Least-Privilege Access, and Identity Governance.

Cross-Functional Collaboration: Partner with Security, Infrastructure, and Application teams to integrate modern protocols (OIDC, SAML, OAuth) into the enterprise ecosystem.

Documentation: Create high-quality architecture diagrams, technical design documents, and implementation playbooks for global identity services.

Technical Qualifications
Directory Services: Deep expertise in Microsoft Active Directory (Forest/Domain design, DNS, Trust relationships, and GPO management).

Cloud Identity: Proven experience operating Microsoft Entra ID and managing hybrid identity synchronization.

Protocols: Proficiency in both legacy (Kerberos, LDAP) and modern (SAML, OAuth 2.0, OpenID Connect) authentication/authorization standards.

Security Frameworks: Strong understanding of Zero Trust architecture, identity lifecycle management (ILM), and security governance.

Soft Skills: Excellent communication skills with the ability to translate complex technical concepts into clear documentation for diverse stakeholders. Equal Opportunity Employer / Disabled / Protected Veterans

The Know Your Rights poster is available here:
_EEOC_KnowYourRights6.12.pdf

The pay transparency policy is available here:
_%20English_formattedESQA508c.pdf

For temporary assignments lasting 13 weeks or longer, AllSTEM Connections is pleased to offer major medical, dental, vision, 401k and any statutory sick pay where required.

We are committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please contact your staffing representative who will reach out to our HR team.

AllSTEM Connections participates in the E-Verify program in certain locations as required by law. Learn more about the E-Verify program.
_Participation_Poster_ES.pdf

We also consider for employment qualified applicants regardless of criminal histories, consistent with legal requirements, including, if applicable, the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance. Pursuant to applicable state and municipal Fair Chance Laws and Ordinances, we will consider for employment-qualified applicants with arrest and conviction records, including, if applicable, the San Francisco Fair Chance Ordinance. For Los Angeles, CA applicants: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.

Additional Skills

(none specified)

AllSTEM Representative Contact Info

Account Executive:

Nichols

Branch Phone:



Location:

Ontario, CA
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 80184143
  • Position Id: 10fd54c2a100e687652ca1e0176b41d1
  • Posted 1 day ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Richmond, Virginia

Today

Full-time

Remote

Today

Full-time

Remote

Today

Easy Apply

Third Party, Contract

Remote or California

Today

Full-time

USD 170,900.00 - 227,900.00 per year

Search all similar jobs