Spruce Infotech
We are seeking a highly skilled Azure AD Security Engineer with expertise in security products, authentication, authorization. As a key member of our security team, you will play a vital role in ensuring the secure and compliant implementation of Azure AD solutions, with a focus on Identity, authentication and authorization, MFA, and SSO. Responsibilities:
- Design, implement, and manage Azure Active Directory solutions to ensure secure and efficient authentication and authorization processes aligned with industry best practices
- Drive the onboarding of applications, app registration, enterprise application setup, and role-based access management (RBAC).
- Lead the implementation of Multi-Factor Authentication (MFA) and Single Sign-On (SSO) for enhanced security.
- Expertise in configuring and troubleshooting authentication protocols, including OAuth, OpenID Connect, and SAML for secure authentication and authorization
- Configure and manage conditional access policies to control access based on specific conditions, locations, and device compliance
- Collaborate with cross-functional teams to support and troubleshoot IAM-related issues, ensuring solutions are secure, compliant, and scalable.
- Understand and implement security best practices for Azure products, services, and solutions.
- Utilize Azure Sentinel for monitoring, creating alerts, and developing automation scripts for incident response.
- Provide production support, responding to and resolving security incidents in a timely manner.
- Establish and maintain identity governance frameworks, including privileged identity management (PIM) for elevated access
- Stay informed of Azure updates, security threats, and industry best practices to enhance our security posture.
- Collaborate with DevOps and development teams, demonstrating a basic understanding of tools and requirements.
- Proven experience in implementing security solutions on Azure, with a focus on authentication/ authorization, MFA, and SSO.
- In-depth knowledge of Azure AD, Azure AD B2C, related authentication/authorization components and security protocols which including SAML, OAuth, and OpenID
- Strong scripting and automation skills (PowerShell, Azure CLI)
- Excellent understanding of cloud security principles
- Microsoft Certified: Azure Security Engineer Associate certification is a plus.
- Experience with Azure Sentinel for monitoring, alerting, and automation.
- Strong troubleshooting skills for identifying and resolving IAM-related issues.
- Ability to work in a dynamic environment and adapt to evolving security challenges.
- Excellent communication and collaboration skills for working with cross-functional teams.
- Commitment to maintaining a secure, compliant, and scalable IAM solution.
- Overall 4+ years of experience in Azure AD Security engineering