Miracle Software Systems is currently in search of a skilled "Senior SSO Engineer Microsoft Entra ID (Azure AD)" possessing extensive expertise in Microsoft Entra ID (Azure AD), Single Sign-On (SSO) Architecture & Implementation,SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation. This exciting career opportunity is a REMOTE position.
Requirement Details :
Tittle: Senior SSO Engineer Microsoft Entra ID (Azure AD)
Duration: Long Term
Location: North Carolina(Hybrid)
Skills Required: Microsoft Entra ID (Azure AD), Single Sign-On (SSO) Architecture & Implementation,SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation
Position Summary
We are seeking a highly skilled Senior SSO Engineer with expertise in Microsoft Entra ID (formerly Azure AD) and modern web application authentication frameworks. This role will be responsible for designing, implementing, securing, and supporting enterprise Single Sign-On (SSO) solutions across cloud and on-premises environments. The ideal candidate will bring strong identity architecture experience, hands-on federation expertise, and a security-first mindset to support mission-critical web applications.
Key Responsibilities:
- Design and implement enterprise SSO solutions using Microsoft Entra ID. Configure and manage authentication protocols including: SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation
- Integrate Entra ID with internal and external web applications (custom and SaaS) Implement Conditional Access, MFA, passwordless authentication, and Zero Trust policies
- Configure and manage: Enterprise Application, App registrations, API permissions and scopes, Managed identities and service principals
- Support B2B, B2C, Microsoft External tenant identity scenarios
- Lead troubleshooting of complex authentication and federation issues
- Conduct security reviews and ensure compliance with IAM best practices
- Automate identity provisioning using SCIM, PowerShell, Graph/REST APIs, or Infrastructure as Code
- Collaborate with development teams to implement secure authentication in web apps
- Provide Tier 3 escalation support for identity and access issues
- Create architecture documentation and operational runbooks
Required Qualifications:
- 7+ years of experience in Identity & Access Management (IAM)
- 2+ years hands-on experience with Microsoft Entra ID
- Strong experience integrating SSO with modern web applications (.NET, Java, Node.js, etc.)
- Deep understanding of authentication & authorization protocols (SAML, OAuth2, OIDC)
- Experience with Conditional Access policies and security hardening
- Familiarity with identity governance and lifecycle management
- Strong troubleshooting skills across authentication flows and token validation
- Experience with PowerShell scripting and Microsoft Graph API
- Understanding of Zero Trust architecture principles
Preferred Qualifications:
- Experience with hybrid identity (Entra Connect, federation services)
- Experience with Identity Protection and Privileged Identity Management (PIM)
- Knowledge of CI/CD pipelines for identity configuration
- Security certifications such as:
- Microsoft SC-300 (Identity and Access Administrator)
- Microsoft AZ-104 (Azure Administrator Associate)
- Experience with large-scale enterprise IAM environments
Core Competencies:
- Identity architecture & design thinking
- Security-focused mindset
- Strong problem-solving & analytical skills
- Clear technical communication
- Ability to lead technical initiatives independently
Note : If you are interested, please forward your updated resume along with your current contact information. Alternatively, recommend someone interested in this position.