Overview
On Site
$150,000 - $170,000 annually
Full Time
Skills
RBAC
DevOps
Provisioning
Management
Auditing
Mentorship
IT Security
Regulatory Compliance
Cloud Computing
Microsoft
Cloud Security
Identity Management
Active Directory
Microsoft Azure
Amazon Web Services
Google Cloud Platform
Google Cloud
Scripting
Windows PowerShell
Python
Terraform
CyberArk
SailPoint
Innovation
Collaboration
Continuous Improvement
Artificial Intelligence
Messaging
Job Details
RESPONSIBILITIES:
Kforce has a client that is seeking a Hybrid Identity Lead Engineer to join a Mission-Driven team in New York, NY.
Summary:
Are you passionate about building secure, scalable identity solutions across hybrid environments? We're looking for a Hybrid Identity Lead Engineer to join our dynamic team and lead enterprise-wide identity and access management (IAM) initiatives that support modern Zero Trust architectures.
In this role, you'll be at the forefront of integrating and managing identity platforms like Active Directory, Microsoft Entra ID (Azure AD), AWS IAM, and Google Cloud Platform IAM. You'll help shape the future of secure access across cloud and on-premises systems, driving automation, compliance, and innovation.
What You'll Do:
* Identity Lead Engineer will architect and maintain a unified IAM framework across AD, Azure AD, AWS, and Google Cloud Platform
* Implement enterprise identity standards including RBAC, naming conventions, and lifecycle automation
* Lead the adoption of Zero Trust principles and enforce least privilege access across multi-cloud environments
* Collaborate with DevOps and cloud teams to ensure secure, auditable access models
* Administer and optimize on-prem Active Directory and Entra ID Conditional Access policies
* Automate provisioning and group management using PowerShell, Python, or Terraform
* As an Identity Lead Engineer, you will respond to audit findings and security assessments with expert-level IAM solutions
* Mentor engineers and contribute to cross-functional initiatives across IT security, infrastructure, and compliance
REQUIREMENTS:
* Bachelor's degree in a related field
* Cloud certifications such as: Microsoft Certified: Identity and Access Administrator Associate; AWS Certified Security Specialty; Google Cloud Platform Cloud Security Engineer
* 7+ years of experience in identity and access management
* Hands-on experience with Active Directory, Azure AD, AWS IAM, and Google Cloud Platform IAM
* Strong scripting skills (PowerShell, Python, Terraform)
* Familiarity with PAM tools (e.g., CyberArk, BeyondTrust) and IGA solutions (e.g., SailPoint)
Why Join Us?
You'll be part of a forward-thinking team that values innovation, collaboration, and continuous improvement. This is a high-impact role where your expertise will directly contribute to the security and efficiency of enterprise systems.
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Kforce has a client that is seeking a Hybrid Identity Lead Engineer to join a Mission-Driven team in New York, NY.
Summary:
Are you passionate about building secure, scalable identity solutions across hybrid environments? We're looking for a Hybrid Identity Lead Engineer to join our dynamic team and lead enterprise-wide identity and access management (IAM) initiatives that support modern Zero Trust architectures.
In this role, you'll be at the forefront of integrating and managing identity platforms like Active Directory, Microsoft Entra ID (Azure AD), AWS IAM, and Google Cloud Platform IAM. You'll help shape the future of secure access across cloud and on-premises systems, driving automation, compliance, and innovation.
What You'll Do:
* Identity Lead Engineer will architect and maintain a unified IAM framework across AD, Azure AD, AWS, and Google Cloud Platform
* Implement enterprise identity standards including RBAC, naming conventions, and lifecycle automation
* Lead the adoption of Zero Trust principles and enforce least privilege access across multi-cloud environments
* Collaborate with DevOps and cloud teams to ensure secure, auditable access models
* Administer and optimize on-prem Active Directory and Entra ID Conditional Access policies
* Automate provisioning and group management using PowerShell, Python, or Terraform
* As an Identity Lead Engineer, you will respond to audit findings and security assessments with expert-level IAM solutions
* Mentor engineers and contribute to cross-functional initiatives across IT security, infrastructure, and compliance
REQUIREMENTS:
* Bachelor's degree in a related field
* Cloud certifications such as: Microsoft Certified: Identity and Access Administrator Associate; AWS Certified Security Specialty; Google Cloud Platform Cloud Security Engineer
* 7+ years of experience in identity and access management
* Hands-on experience with Active Directory, Azure AD, AWS IAM, and Google Cloud Platform IAM
* Strong scripting skills (PowerShell, Python, Terraform)
* Familiarity with PAM tools (e.g., CyberArk, BeyondTrust) and IGA solutions (e.g., SailPoint)
Why Join Us?
You'll be part of a forward-thinking team that values innovation, collaboration, and continuous improvement. This is a high-impact role where your expertise will directly contribute to the security and efficiency of enterprise systems.
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.