Job Description Overview CTG is seeking to fill an Azure Engineering - IAM Architect opening for our client. Location: Remote in Atlanta/Raleigh/Charlotte Duration: Ongoing Contract Duties: • Design and implement secure, scalable, and compliant Access Management (IAM) systems in Azure environments. • Develop Role-Based Access Control (RBAC) models for Azure subscriptions across multiple tenants following the principle of least privilege. • Create and maintain custom IAM policies using tagging and policy initiatives to govern access to Azure resources. • Integrate Azure AD with third-party Providers (IdPs) such as Okta, Ping, and ADFS for Single Sign-On (SSO) and federation. • Enable Privileged Management (PIM) for just-in-time privileged access, ensuring secure and monitored access for elevated roles. • Develop automated scripts using Terraform, Bicep, and ARM templates to deploy IAM resources in compliance with company standards. • Collaborate with security and compliance teams to enforce Conditional Access, Multi-Factor Authentication (MFA), and audit logging policies. • Provide expertise in integrating Azure AD with on-premise Active Directory (Hybrid) and manage governance and compliance processes. • Assist in aligning IAM architecture with Zero Trust principles and continuous security posture management. Skills: • Expertise in Azure & Access Management (IAM) including Azure AD, RBAC, and Privileged Management (PIM). • Knowledge of Azure Policy, Azure Blueprints, and Conditional Access policies. • Experience in governance, compliance frameworks (ISO 27001, NIST, GDPR, HIPAA, SOX), and auditing access logs. • Proficiency in IAM automation using Terraform, Bicep, Power Shell, and Azure CLI. • Understanding of Zero Trust architecture and its implementation in Azure environments. • Experience in managing solutions for both B2B and B2C models. Experience: • 7+ years of hands-on experience in designing, implementing, and managing IAM systems in large-scale Azure environments. • Proven ability to develop and implement custom RBAC roles, IAM policies, and automate IAM processes. • Strong background in integrating management systems with third-party IdPs for SSO and federated solutions. • Experience working with cross-functional teams to meet security and compliance requirements. • Demonstrated experience in using monitoring tools like Azure Monitor, Log Analytics, and Security Center to audit IAM activities and enforce compliance. Education: • Bachelor's degree in Computer Science, Information Technology, or a related field. Relevant certifications (e.g., Azure Architect, Microsoft Certified: Azure Administrator Associate) are a plus. Excellent verbal and written English communication skills and the ability to interact professionally with a diverse group are required. To Apply: To be considered, please apply directly to this requisition using the link provided. For additional information, please contact Laura Dominguez at . Kindly forward this to any other interested parties. Thank you! The expected base salary for this position ranges from $105,000 to $115,000 annually. Salary offers are based on a wide range of factors including relevant skills, training, experience, education, market factors, and where applicable, licensure or certifications obtained. In addition to salary, a competitive benefit package is also offered. #J-18808-Ljbffr
Job Type
Fulltime role
Skills required
Azure
Location
Atlanta, Georgia
Salary
$105,000 - $115,000
Date Posted
May 2, 2025
ZipRecruiter is seeking an Azure Engineering - IAM Architect to design and implement secure IAM systems in Azure environments. This remote position requires expertise in Azure AD, RBAC, and IAM automation.