Jobs · Michigan

Identity Architect - Microsoft Entra ID

StaffBright · Farmington Hills, MI · 1 wk ago
HybridFull-time

StaffBright is partnering with a growing technology organization near Farmington Hills, MI, to find an experienced Identity Architect who will advance its enterprise identity and access environment. This role blends hands-on identity engineering with architecture and strategy, focusing on Microsoft Entra ID and Active Directory to modernize access management for employees, privileged users, applications, and external identities.

Responsibilities

  • Develop a structured approach to roles, permissions, and enterprise access across Microsoft identity environments
  • Design scalable identity solutions within Microsoft Entra ID, Active Directory, and hybrid environments
  • Improve the employee access lifecycle, including creation, modification, and removal of access
  • Build automation for onboarding, role changes, offboarding, and access provisioning
  • Establish stronger standards for directory groups, permissions, privileged accounts, and access administration
  • Strengthen controls around administrative and elevated access using technologies such as Conditional Access and PIM
  • Help establish security standards for service accounts, application identities, service principals, and other machine-based identities
  • Partner with software and application teams to ensure secure design of authentication and authorization solutions
  • Provide technical direction around SSO, federation, tokens, and modern authentication protocols
  • Support and improve identity governance capabilities, including access certifications, entitlement management, and privileged access
  • Evaluate existing identity processes and identify opportunities for automation, standardization, and stronger security controls
  • Create technical standards and documentation that support security, audit, and regulatory requirements
  • Serve as a senior identity resource across infrastructure, cybersecurity, IT, and development teams

Requirements

  • 5+ years of experience in Identity & Access Management, Identity Engineering, or Identity Architecture
  • 3+ years of significant experience working with Microsoft Entra ID / Azure Active Directory
  • Strong technical foundation in Active Directory, including Group Policy, organizational units, trusts, and hybrid environments
  • Experience developing RBAC or other structured enterprise access models
  • Hands-on experience with Microsoft identity governance capabilities such as PIM, access reviews, lifecycle workflows, and entitlement management
  • Experience automating identity processes using technologies such as PowerShell, Microsoft Graph API, Azure Functions, or Logic Apps
  • Experience working with identity provisioning, deprovisioning, and access lifecycle processes
  • Ability to operate at both the architecture and implementation level
  • Strong communication skills with the ability to explain identity and security concepts to both technical and non-technical stakeholders

Benefits

  • 4 weeks of PTO + paid holidays
  • Hybrid work schedule
  • Benefits package well above industry standards
  • Free onsite gym
  • Company-paid professional development and job-related training opportunities
  • Fast-growing organization with strong career growth potential
  • Continued investment in employee development and advancement

StaffBright connects exceptional professionals with fulfilling opportunities in Finance, IT, Engineering, and Sales and Marketing. By partnering with industry-leading organizations, StaffBright helps accelerate careers while delivering outstanding results for clients through close collaboration and long-term relationships.

Similar jobs