Skip to main content
GuidePoint Security

Senior Microsoft Security Entra Engineer

RemoteUnited States only
Published
Role
Fullstack
Experience
Senior
Employment
Full-time
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

We are seeking a Senior Entra Engineer to join our Microsoft Cloud Security Team. This role focuses on deep identity specialization with hands-on Microsoft Entra ID expertise across client engagements.

Core skills

Identity and Access Management/Microsoft Entra ID/Conditional Access/MFA/Passwordless/PIM/RBAC/Access Reviews/Entitlement ManagementHybrid Identity/Entra Connect/Cloud Sync/on-premises Active Directory

Required skills

ADFSAuthentication Protocols/SAML/OAuth 2.0/OIDC/Kerberos/LDAP/SCIMOAuth 2.0OIDCPowerShell scriptingMicrosoft Graph PowerShellScripting/PowerShell

Optional skills

Entra External ID (B2B/B2C)Multi-domain/forest on-prem AD designMicrosoft PurviewIntuneDefender XDRMicrosoft SentinelSIEM/SOARSC-300

Required languages

English fluent

What you'll do

  • Design and implement end-to-end Entra ID environments, including tenant architecture, dynamic groups, administrative units, and identity lifecycle management at scale.
  • Design and implement Conditional Access (including Global Secure Access, token protection, authentication strengths), MFA/passwordless, PIM, RBAC, access reviews, and entitlement management.
  • Own hybrid identity design and troubleshooting, including Entra Connect/Cloud Sync, Entra Connect Health, password hash sync vs. pass-through auth vs. federation (ADFS), and Entra Domain Services.
  • Design and implement identity federation and integration between Entra ID and other identity providers (Okta, Ping Identity, ADFS, third-party SAML/OIDC IdPs), including migration scenarios.
  • Integrate applications via SSO (SAML/OIDC), enterprise app registrations, easing limitations for SAML and OIDC tokens, custom claims, and troubleshooting SAML/OIDC-based authentication.
  • Design and implement Entra External ID (B2B/B2C) for partner and customer-facing identity scenarios.
  • Design and implement identity solutions for Workload Identities such as Managed Identities and Workload Identity Federation.
  • Investigate and remediate identity risks using Entra ID Protection, sign-in and audit logs, and Entra recommendations; drive hybrid identity hygiene (stale object cleanup, privileged account reduction, tiered admin models).
  • Maintain depth of knowledge of how Entra ID intersects with Azure, Microsoft Purview, Intune, and Defender XDR, and support those workstreams as engagements require.
  • Adhere to the company's Core Values.

What they require

  • Bachelor’s Degree or higher.
  • 3-5+ years of hands-on production experience in Microsoft Entra ID, broader IT administration, identity management, or security operations.
  • Excellent communication skills.
  • Ability to troubleshoot complex identity issues independently.
  • Demonstrate ability to integrate with or migrate identity from other IdPs (Okta, Ping, ADFS, or similar).
  • Flexibility to adapt to emerging technologies including AI tools.

Benefits

  • Remote workforce primarily (U.S. based only)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of premium for employees and 70% for family plans) OR High Deductible Health Plan with HSA (GuidePoint pays 100% of employee's and 75% of family). Quarterly contributions: $850 per EE annually / $1750 for family)
  • Group Dental Insurance: GuidePoint pays 100% of the employee's premium and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off program
  • Healthy mobile phone and home internet allowance
  • Retirement plan eligibility after 2 months at open enrollment
  • Pet Benefit Option
CybersecurityMid-size
Salary not disclosed