Identity Architect - Microsoft Entra ID
StaffBright is partnering with a growing technology organization near Farmington Hills, MI, to find an experienced Identity Architect who will advance its enterprise identity and access environment. This role blends hands-on identity engineering with architecture and strategy, focusing on Microsoft Entra ID and Active Directory to modernize access management for employees, privileged users, applications, and external identities.
Responsibilities
- Develop a structured approach to roles, permissions, and enterprise access across Microsoft identity environments
- Design scalable identity solutions within Microsoft Entra ID, Active Directory, and hybrid environments
- Improve the employee access lifecycle, including creation, modification, and removal of access
- Build automation for onboarding, role changes, offboarding, and access provisioning
- Establish stronger standards for directory groups, permissions, privileged accounts, and access administration
- Strengthen controls around administrative and elevated access using technologies such as Conditional Access and PIM
- Help establish security standards for service accounts, application identities, service principals, and other machine-based identities
- Partner with software and application teams to ensure secure design of authentication and authorization solutions
- Provide technical direction around SSO, federation, tokens, and modern authentication protocols
- Support and improve identity governance capabilities, including access certifications, entitlement management, and privileged access
- Evaluate existing identity processes and identify opportunities for automation, standardization, and stronger security controls
- Create technical standards and documentation that support security, audit, and regulatory requirements
- Serve as a senior identity resource across infrastructure, cybersecurity, IT, and development teams
Requirements
- 5+ years of experience in Identity & Access Management, Identity Engineering, or Identity Architecture
- 3+ years of significant experience working with Microsoft Entra ID / Azure Active Directory
- Strong technical foundation in Active Directory, including Group Policy, organizational units, trusts, and hybrid environments
- Experience developing RBAC or other structured enterprise access models
- Hands-on experience with Microsoft identity governance capabilities such as PIM, access reviews, lifecycle workflows, and entitlement management
- Experience automating identity processes using technologies such as PowerShell, Microsoft Graph API, Azure Functions, or Logic Apps
- Experience working with identity provisioning, deprovisioning, and access lifecycle processes
- Ability to operate at both the architecture and implementation level
- Strong communication skills with the ability to explain identity and security concepts to both technical and non-technical stakeholders
Benefits
- 4 weeks of PTO + paid holidays
- Hybrid work schedule
- Benefits package well above industry standards
- Free onsite gym
- Company-paid professional development and job-related training opportunities
- Fast-growing organization with strong career growth potential
- Continued investment in employee development and advancement
StaffBright connects exceptional professionals with fulfilling opportunities in Finance, IT, Engineering, and Sales and Marketing. By partnering with industry-leading organizations, StaffBright helps accelerate careers while delivering outstanding results for clients through close collaboration and long-term relationships.