Job Description
Job Summary
Job Description – L3.2 Hybrid Azure AD (Entra ID) Engineer
Role Overview
We are looking for a highly experienced L3.2 Hybrid Azure AD (Entra ID) Engineer to lead and own enterprise identity services across on-prem Active Directory and Azure AD environments. This role goes beyond L3 support, involving deep technical expertise, architectural guidance, and proactive service improvements.
Key Responsibilities
- Hybrid Identity Ownership
- Own and manage end-to-end Hybrid Identity architecture (AD + Azure AD / Entra ID)
- Design, implement, and optimize identity synchronization and authentication mechanisms
- Ensure high availability and resilience of identity services
- Expert-Level Troubleshooting & RCA
- Act as the highest escalation point (L3.2/SME) for critical identity issues
- Lead troubleshooting of:
- Complex Azure AD Connect / sync failures
- Advanced authentication issues (SSO, MFA, federation)
- AD replication, trust, and connectivity issues
- Perform deep Root Cause Analysis (RCA) and implement permanent fixes
- Identity Architecture & Security
- Provide guidance on:
- Identity architecture design & best practices
- Zero Trust implementation
- Conditional Access, Identity Protection, PIM strategies
- Drive improvements in identity security posture and compliance
- Automation & Innovation
- Develop advanced automation using PowerShell, Azure Automation, Graph API
- Lead initiatives to optimize identity operations and reduce manual effort
- Build reusable scripts/tools for monitoring, reporting, and provisioning
- Governance & Strategy
- Define and enforce identity governance standards, policies, and SOPs
- Participate in design reviews, audits, and transformation initiatives
- Ensure compliance with enterprise security and regulatory requirements
- Collaboration & Leadership
- Work with cross-functional teams (Security, Cloud, Network, Apps)
- Provide technical mentoring to L2/L3 engineers
- Support application onboarding, federation, and SSO integration strategies
Required Skills
- Deep expertise in:
- Azure AD (Entra ID) – advanced/architect level
- Active Directory (AD DS, GPO, replication, trusts)
- Azure AD Connect / Entra Connect (advanced troubleshooting)
- Strong experience with:
- SSO (SAML, OAuth, OIDC), MFA, Conditional Access
- Federation (ADFS – strong preferred)
- Advanced PowerShell & automation skills
- Strong knowledge of identity security & Zero Trust principles
Experience
- 8–12+ years of IT experience
- Minimum 5–7 years in Hybrid Identity / Azure AD roles
- Experience in large enterprise / global environments
Preferred Skills
- Expertise in:
- Microsoft 365 ecosystem (Exchange, Teams identity dependencies)
- Intune / Endpoint Manager
- Knowledge of:
- Azure architecture and networking basics
- ITIL processes & service governance
Certifications (Highly Preferred)
- SC-300 – Identity & Access Administrator
- AZ-104 – Azure Administrator
- AZ-305 – Azure Solutions Architect (added advantage)
- ITIL Foundation
Key Expectations
- Provide technical leadership and SME support
- Ensure stability, scalability, and security of identity services
- Drive automation, transformation, and continuous improvement initiatives
- Minimize recurring incidents through proactive RCA and design improvements
Key Responsibilities
Job Description – L3.2 Hybrid Azure AD (Entra ID) Engineer
Role Overview
We are looking for a highly experienced L3.2 Hybrid Azure AD (Entra ID) Engineer to lead and own enterprise identity services across on-prem Active Directory and Azure AD environments. This role goes beyond L3 support, involving deep technical expertise, architectural guidance, and proactive service improvements.
Key Responsibilities
- Hybrid Identity Ownership
- Own and manage end-to-end Hybrid Identity architecture (AD + Azure AD / Entra ID)
- Design, implement, and optimize identity synchronization and authentication mechanisms
- Ensure high availability and resilience of identity services
- Expert-Level Troubleshooting & RCA
- Act as the highest escalation point (L3.2/SME) for critical identity issues
- Lead troubleshooting of:
- Complex Azure AD Connect / sync failures
- Advanced authentication issues (SSO, MFA, federation)
- AD replication, trust, and connectivity issues
- Perform deep Root Cause Analysis (RCA) and implement permanent fixes
- Identity Architecture & Security
- Provide guidance on:
- Identity architecture design & best practices
- Zero Trust implementation
- Conditional Access, Identity Protection, PIM strategies
- Drive improvements in identity security posture and compliance
- Automation & Innovation
- Develop advanced automation using PowerShell, Azure Automation, Graph API
- Lead initiatives to optimize identity operations and reduce manual effort
- Build reusable scripts/tools for monitoring, reporting, and provisioning
- Governance & Strategy
- Define and enforce identity governance standards, policies, and SOPs
- Participate in design reviews, audits, and transformation initiatives
- Ensure compliance with enterprise security and regulatory requirements
- Collaboration & Leadership
- Work with cross-functional teams (Security, Cloud, Network, Apps)
- Provide technical mentoring to L2/L3 engineers
- Support application onboarding, federation, and SSO integration strategies
Required Skills
- Deep expertise in:
- Azure AD (Entra ID) – advanced/architect level
- Active Directory (AD DS, GPO, replication, trusts)
- Azure AD Connect / Entra Connect (advanced troubleshooting)
- Strong experience with:
- SSO (SAML, OAuth, OIDC), MFA, Conditional Access
- Federation (ADFS – strong preferred)
- Advanced PowerShell & automation skills
- Strong knowledge of identity security & Zero Trust principles
Experience
- 8–12+ years of IT experience
- Minimum 5–7 years in Hybrid Identity / Azure AD roles
- Experience in large enterprise / global environments
Preferred Skills
- Expertise in:
- Microsoft 365 ecosystem (Exchange, Teams identity dependencies)
- Intune / Endpoint Manager
- Knowledge of:
- Azure architecture and networking basics
- ITIL processes & service governance
Certifications (Highly Preferred)
- SC-300 – Identity & Access Administrator
- AZ-104 – Azure Administrator
- AZ-305 – Azure Solutions Architect (added advantage)
- ITIL Foundation
Key Expectations
- Provide technical leadership and SME support
- Ensure stability, scalability, and security of identity services
- Drive automation, transformation, and continuous improvement initiatives
- Minimize recurring incidents through proactive RCA and design improvements
Skill Requirements
Other Requirements
Job Description – L3.2 Hybrid Azure AD (Entra ID) Engineer
Role Overview
We are looking for a highly experienced L3.2 Hybrid Azure AD (Entra ID) Engineer to lead and own enterprise identity services across on-prem Active Directory and Azure AD environments. This role goes beyond L3 support, involving deep technical expertise, architectural guidance, and proactive service improvements.
Key Responsibilities
- Hybrid Identity Ownership
- Own and manage end-to-end Hybrid Identity architecture (AD + Azure AD / Entra ID)
- Design, implement, and optimize identity synchronization and authentication mechanisms
- Ensure high availability and resilience of identity services
- Expert-Level Troubleshooting & RCA
- Act as the highest escalation point (L3.2/SME) for critical identity issues
- Lead troubleshooting of:
- Complex Azure AD Connect / sync failures
- Advanced authentication issues (SSO, MFA, federation)
- AD replication, trust, and connectivity issues
- Perform deep Root Cause Analysis (RCA) and implement permanent fixes
- Identity Architecture & Security
- Provide guidance on:
- Identity architecture design & best practices
- Zero Trust implementation
- Conditional Access, Identity Protection, PIM strategies
- Drive improvements in identity security posture and compliance
- Automation & Innovation
- Develop advanced automation using PowerShell, Azure Automation, Graph API
- Lead initiatives to optimize identity operations and reduce manual effort
- Build reusable scripts/tools for monitoring, reporting, and provisioning
- Governance & Strategy
- Define and enforce identity governance standards, policies, and SOPs
- Participate in design reviews, audits, and transformation initiatives
- Ensure compliance with enterprise security and regulatory requirements
- Collaboration & Leadership
- Work with cross-functional teams (Security, Cloud, Network, Apps)
- Provide technical mentoring to L2/L3 engineers
- Support application onboarding, federation, and SSO integration strategies
Required Skills
- Deep expertise in:
- Azure AD (Entra ID) – advanced/architect level
- Active Directory (AD DS, GPO, replication, trusts)
- Azure AD Connect / Entra Connect (advanced troubleshooting)
- Strong experience with:
- SSO (SAML, OAuth, OIDC), MFA, Conditional Access
- Federation (ADFS – strong preferred)
- Advanced PowerShell & automation skills
- Strong knowledge of identity security & Zero Trust principles
Experience
- 8–12+ years of IT experience
- Minimum 5–7 years in Hybrid Identity / Azure AD roles
- Experience in large enterprise / global environments
Preferred Skills
- Expertise in:
- Microsoft 365 ecosystem (Exchange, Teams identity dependencies)
- Intune / Endpoint Manager
- Knowledge of:
- Azure architecture and networking basics
- ITIL processes & service governance
Certifications (Highly Preferred)
- SC-300 – Identity & Access Administrator
- AZ-104 – Azure Administrator
- AZ-305 – Azure Solutions Architect (added advantage)
- ITIL Foundation
Key Expectations
- Provide technical leadership and SME support
- Ensure stability, scalability, and security of identity services
- Drive automation, transformation, and continuous improvement initiatives
- Minimize recurring incidents through proactive RCA and design improvements