IAM & SSO Engineer

Overview

The IAM & SSO Engineer will play a crucial role in enhancing and maintaining enterprise identity and access services within a fully remote setting. Over an initial three-month contract, the engineer will collaborate with teams to implement and optimize Microsoft Entra ID and various SSO solutions, ensuring secure and efficient access across Microsoft and Google environments. This position requires a hands-on approach to troubleshoot and enhance identity management systems while delivering seamless integrations with SaaS applications.

Responsibilities

  • Administer and support Microsoft Entra ID (Azure AD) including Conditional Access and Intune integrations.
  • Configure and troubleshoot SSO solutions using SAML 2.0, OIDC and OAuth 2.0.
  • Manage Google Workspace administration including SAML apps and OAuth applications.
  • Develop PowerShell scripts and utilize Microsoft Graph API for automation tasks.
  • Manage SSL/TLS certificates and DNS configurations including MX and CNAME records.
  • Support SSO integrations with various SaaS platforms like Salesforce and GitHub Enterprise.
  • Manage Azure service principals and application registrations.
  • Produce technical documentation including runbooks and rollback plans.

Requirements

  • Strong hands-on experience with Microsoft Entra ID (Azure AD).
  • Deep understanding of SAML 2.0, OIDC and OAuth 2.0 protocols.
  • Experience managing enterprise SSO integrations and SaaS access.
  • Google Workspace Super Admin experience.
  • Proficient in PowerShell scripting and Microsoft Graph API.
  • Experience with DNS records and Azure identity services.
  • Desirable experience with domain or tenant migration projects.
  • Familiarity with tools such as Datadog and Rapid7 InsightIDR.