Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

Posted Yesterday
Be an Early Applicant
Hiring Remotely in State Road, NC, USA
In-Office or Remote
Senior level
Information Technology
The Role
Lead enterprise Identity and Access Management operations including Entra ID/Azure AD administration, Azure RBAC design, privileged access (PIM/JIT), SSO/federation, service principal and managed identity governance, IAM automation and CI/CD controls, Splunk/ITDR monitoring, and support for Saviynt-to-SailPoint transition and multi-cloud identity governance in a regulated environment.
Summary Generated by Built In

 

Join New Era Technology, where People First is at the heart of everything we do. With a global team of over 3,000 professionals, we're committed to creating a workplace where everyone feels valued, empowered, and inspired to grow. Our mission is to securely connect people, places, and information with end-to-end technology solutions at scale.

At New Era, you'll join a team-oriented culture that prioritizes your personal and professional development. Work alongside industry-certified experts, access continuous training, and enjoy competitive benefits. Guided by our core attributes — putting people first, embracing continuous learning, and thriving through collaboration and inclusion — we nurture our people to deliver exceptional customer service.

If you want to make an impact in a supportive, growth-oriented environment, New Era is the place for you. Apply today and help us shape the future of work—together


Job Summary

New Era Technology is seeking an experienced Senior IAM Engineer to support enterprise Identity and Access Management operations, cloud access governance, RBAC modernization, privileged access, application identity integrations, and identity security initiatives within a mature hybrid and multi-cloud environment.

The ideal candidate will have strong hands-on experience with Microsoft Entra ID/Azure AD, Azure RBAC, Privileged Identity Management (PIM), application federation/SSO, least-privilege access, IAM operations, automation, Splunk-based identity monitoring, and Identity Threat Detection and Response (ITDR).

Key Responsibilities
  • Design, maintain, and optimize Azure RBAC across subscriptions, management groups, resource groups, and Azure services.
  • Define enterprise role taxonomy and implement governed access using groups, roles, and approved assignments.
  • Administer Microsoft Entra ID/Azure AD, on-premises Active Directory, hybrid identity, and workforce, partner, guest, service, and application identities.
  • Implement Microsoft Entra PIM, Just-in-Time (JIT) privileged access, MFA, Conditional Access, break-glass procedures, privileged access monitoring, and audit evidence.
  • Design, implement, and troubleshoot SAML, OIDC, OAuth, Entra SSO, enterprise applications, app registrations, service principals, claims, groups, and application roles.
  • Promote managed identities, govern service principals, support credential rotation, and improve CI/CD secret management.
  • Support the Saviynt-to-SailPoint transition, including identity, entitlement, role, certification, policy, procedure, and control documentation.
  • Support IAM monitoring, logging, alerting, investigation, and ITDR use cases using Azure-native tools and Splunk.
  • Support AWS IAM, GCP IAM, and multi-cloud identity governance where required.
  • Support FedRAMP-relevant access controls, configuration baselines, change control, audit readiness, and privileged access governance.
  • Develop automation and scripting to improve IAM workflows, reporting, documentation, access reviews, runbooks, and operational efficiency.
  • Identify opportunities to responsibly use AI tools for IAM analysis, reporting, documentation, and workflow optimization.
  • Collaborate with Information Security, infrastructure, cloud, application, DevOps, audit, and other technical stakeholders.
Required Technical Skills
  • Strong hands-on experience with Microsoft Entra ID/Azure AD administration.
  • Strong knowledge of Azure RBAC, security groups, role assignments, management groups, subscriptions, and resource-level access.
  • Experience with Microsoft Entra PIM, JIT privileged access, MFA, Conditional Access, and privileged authentication.
  • Strong understanding of Active Directory and hybrid identity.
  • Enterprise experience with SAML, OIDC, OAuth, SSO, Entra Enterprise Applications, app registrations, managed identities, service principals, claims, and application roles.
  • Experience with least-privilege access design, access reviews, access certification, identity/entitlement inventory, credential management, and secret hygiene.
  • Experience with Azure monitoring/logging and Splunk or comparable SIEM platforms.
  • Understanding of Identity Threat Detection and Response (ITDR).
  • Experience with IAM automation/scripting and CI/CD identity controls.
  • Strong IAM documentation skills, including policies, standards, procedures, runbooks, and audit evidence.
Preferred Skills
  • SailPoint Identity IQ or Identity Now experience.
  • Experience supporting Saviynt-to-SailPoint migrations.
  • Broadcom/Symantec PAM or comparable PAM platforms such as CyberArk, Beyond Trust, or Delinea.
  • Cisco Splunk detection content or dashboard development.
  • AWS IAM, GCP IAM, workload identity governance, and multi-cloud IAM.
  • FedRAMP control support or audit readiness.
  • Experience in financial services, banking, or other highly regulated enterprise environments.
  • DevOps, CI/CD, SDLC identity controls, application resiliency, IAM dependency management, and vulnerability management integration.
  • AI-assisted workflow automation, reporting, documentation, and operational analysis.
Required Qualifications
  • 7+ years of Identity and Access Management experience preferred.
  • 4+ years of Microsoft Entra ID/Azure AD experience preferred.
  • 3+ years of Azure RBAC, privileged access, or cloud access governance experience preferred.
  • Hands-on enterprise application federation and SSO experience required.
  • Financial services, banking, or regulated enterprise experience strongly preferred.
  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or equivalent practical experience.
Key Competencies
  • Strong understanding and practical implementation of RBAC and least-privilege access at enterprise scale.
  • Strong troubleshooting skills for authentication, federation, SSO, privileged access, and identity monitoring.
  • Ability to work effectively across IAM, Security, Cloud, Infrastructure, Applications, DevOps, and Audit teams.
  • Strong communication, documentation, analytical, and problem-solving skills.
  • Ability to work within disciplined change control, audit, compliance, and operational stability environments.
  • Strong ownership, accountability, initiative, and delivery focus.
  • Ability to balance security requirements with technical and business needs.
Engagement Details
  • Engagement: Full-time, 12-month staff augmentation contractor
  • Work Schedule: Standard full-time hours; weekend work may be required for scheduled change management activities.
  • Environment: Hybrid identity, multi-cloud, enterprise SSO, PAM, IGA, SIEM, regulated financial services environment.
Physical Requirements
  • Regular use of a computer, keyboard, mouse, and standard office equipment.
  • Ability to work for extended periods using computer screens and participate in remote meetings.
  • Ability to communicate effectively through phone and video conferencing.

#L1-RB1

New Era Technology, LLC., and its subsidiaries (“New Era” “we”, “us”, or “our”) in its operating regions worldwide are committed to respecting your privacy and recognize the need for appropriate protection and management of any Personal Data that you may provide us. In this, we are also committed to providing you with a positive experience on our websites and while using our products, services and solutions (“Solutions”).

View our Privacy Policy here https://www.neweratech.com/us/privacy-policy/

We never ask candidates to pay any fees at any point in our hiring process. If you are ever asked to provide payment for training, certification, equipment, or any other purpose, it is not from our company. Only communications from our official company channels should be trusted. Please note our official email domain is @neweratech.com. If you suspect fraudulent activity, please contact us immediately at [email protected]

Skills Required

  • Strong hands-on Microsoft Entra ID/Azure AD administration experience
  • Experience designing, maintaining, and optimizing Azure RBAC across subscriptions, management groups, and resource groups
  • Experience with Microsoft Entra PIM, JIT privileged access, MFA, and Conditional Access
  • Strong understanding of Active Directory and hybrid identity
  • Hands-on enterprise application federation and SSO experience (SAML, OIDC, OAuth, Entra SSO, app registrations, claims, application roles)
  • Experience with least-privilege access design, access reviews, certification, entitlement inventory, and credential/secret management
  • Experience with Azure monitoring/logging and Splunk or comparable SIEM for IAM monitoring and ITDR use cases
  • IAM automation and scripting experience, including CI/CD identity controls
  • Strong IAM documentation skills (policies, standards, procedures, runbooks, audit evidence)
  • 7+ years of Identity and Access Management experience
  • 4+ years of Microsoft Entra ID/Azure AD experience
  • 3+ years of Azure RBAC, privileged access, or cloud access governance experience
  • Bachelor's degree in Information Security, Computer Science, Information Technology, or equivalent practical experience
  • Experience supporting regulated environments (financial services, banking) and audit readiness (FedRAMP-relevant controls)
  • Experience with SailPoint IdentityIQ or IdentityNow and Saviynt-to-SailPoint migrations
  • Experience with PAM platforms (Broadcom/Symantec, CyberArk, BeyondTrust, Delinea)
  • Experience with AWS IAM, GCP IAM, workload identity governance, and multi-cloud identity
  • Experience developing Splunk detection content or dashboards (Cisco Splunk preferred)
  • Familiarity with AI-assisted workflow automation, reporting, and operational analysis

New Era Technology Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about New Era Technology and has not been reviewed or approved by New Era Technology.

  • Leave & Time Off Breadth Time off is positioned as generous, with multiple sources pointing to roughly four weeks of PTO up front or ~28–29 days including company holidays in some U.S. roles. Time away is also described as straightforward to use and sometimes viewed as a meaningful offset to weaker cash compensation.
  • Strong & Reliable Incentives Earnings upside appears stronger in certain sales and account roles where on‑target earnings can be attractive when performance is high. Variable pay can materially lift total compensation in these roles relative to positions with mostly fixed pay.
  • Flexible Benefits Flexible work arrangements such as remote and hybrid options are commonly highlighted as part of the overall rewards experience. Flexible Spending Accounts (e.g., medical, dependent care, commuter transit) are also referenced as available in at least some contexts.

New Era Technology Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
1,535 Employees

What We Do

New Era Technology is a global managed technology service provider. New Era serves as a trusted adviser to more than 14,500 customers worldwide. Customers rely on New Era’s seamless blend of solutions that securely connect people, places, and information in a rapidly changing digital world. New Era has offices in the Americas, the United Kingdom, APAC, and Europe. New Era provides solutions and services to diverse industries including Global Enterprise, Banking & Finance, Smart Buildings & IoT, Healthcare, Education, and Government. Solutions and Services: • Collaboration & Unified Communications • Data Networking • Digital Transformation • SecureBlu Security Services • CloudBlu Cloud Services • Physical Security & Life Safety • Managed Services • Professional Services

Similar Jobs

CSC Logo CSC

Tax Research & QA Intern

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
4 Locations
8500 Employees

GitLab Logo GitLab

Senior Team Member Relations Partner

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
2 Locations
2500 Employees
105K-176K Annually

SailPoint Logo SailPoint

Customer Success Manager

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
United States
2461 Employees
60K-101K Annually

SailPoint Logo SailPoint

Customer Success Manager

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
United States
2461 Employees
60K-101K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account