Skip to main content
GuidePoint Security

Senior Security Architect - AD/Entra ID

RemoteUnited States only
Published
Role
Unknown
Experience
Senior
Employment
Full-time
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

We are seeking a highly experienced Senior Security Architect (AD/Entra ID) to join our dynamic team and lead our identity and access management initiatives.

Core skills

Active Directory/Entra ID/Azure AD

Required skills

Azure Active DirectoryActive Directory ReplicationDNSSite LinksSite TopologyGroup PolicyGlobal CatalogsDomain controllersConditional AccessMFAHybrid environmentsAzure AD ConnectActive Directory MigrationsWS-FedOAuthSAMLPowerShellMicrosoft Graph APIDefender for Office 365Defender for IdentityDefender for Cloud AppsMicrosoft Purview Information ProtectionData Loss PreventionCompliance CenterCISSPCISMMicrosoft Certified: Identity and Access Administrator

What you'll do

  • Lead the evaluation, design, and development of Active Directory and Azure Active Directory technical requirements, solutions, and implementation roadmap to ensure functional, reliable, secure, and cost-effective technology environment.
  • Develop and enforce IAM policies, standards, and procedures to ensure compliance with regulatory requirements, and industry best practices.
  • Ensure continuous improvement within the IAM security architecture by introducing and implementing emerging security technologies and practices.
  • Provide to global project and operational teams technical advice, guidance, expertise, and risk analysis on your area of expertise.
  • Translate requirements into an architectural design and influence the deployment of key infrastructure components.
  • Maintain a thorough understanding of existing and emerging Microsoft Entra ID and related core technologies.
  • Analyze current Azure Active Directory environment to identify both technical and operational challenges while making recommendations and developing solutions for improvement.
  • Maintain and optimize on-premises Active Directory (AD) infrastructure, including DNS, GPOs, and domain controllers.
  • Participate in or lead complex or high severity troubleshooting and incident/problem resolutions with other infrastructure teams
  • Evaluate and ensure the resolution of technically complex security issues, internal control issues, critical incidents and/or crisis resolution management, escalating as necessary.
  • Implement and enforce Multi-Factor Authentication (MFA) and security best practices across user accounts and devices.
  • Develop and manage integrations using Microsoft Graph API for automation and custom applications, enabling advanced capabilities across Microsoft 365 services.
  • Create custom scripts to automate administrative tasks and data retrieval from the Graph API, enhancing operational efficiency.
  • Write and maintain Advanced PowerShell scripts to automate user and resource provisioning, reporting, and service configurations across Entra ID and Active Directory.
  • Implement and maintain security best practices.

What they require

  • 10+ years of relevant working experience in IT Security and IT Architecture.
  • 7+ years of experience with Active Directory architecture and infrastructure, with an in-depth understanding of Active Directory Replication, DNS, Site Links, Site Topology, Group Policy, Global Catalogs, and other core infrastructure components.
  • 3+ years of experience with Azure Active Directory architecture and design.
  • 5+ years of experience with Identity and Access Management (IAM) processes and technologies.
  • Proven expertise in designing and implementing IAM solutions in complex environments.
  • Expertise in managing Azure AD/Entra, including Conditional Access, MFA, security best practices, hybrid environments, GPOs, On-Premises Active Directory Migrations, and Azure AD Connect.
  • Experience with Microsoft Graph API for data retrieval and automation across Azure AAD.
  • In-depth knowledge of identity governance, authentication, authorization, and federation including MFA, SSO, and PAM.
  • Understanding of federation technologies (WS-Fed, OAuth, SAML, etc.).
  • Enterprise/Domain Admin and/or Azure Global Admin responsibilities.
  • Proven knowledge in managing Active Directory 2016/2019/2022 infrastructure for the Enterprise.
  • Strong experience in PowerShell and Microsoft Graph API is required.
  • Knowledgeable of Microsoft Security Stack: Defender for Office 365, Defender for Identity, Defender for Cloud Apps, Entra ID, Microsoft Purview Information Protection, Data Loss Prevention, and Compliance Center Experience including Litigation Hold, Retention, and eDiscovery.
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with stakeholders at all levels.
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes.
  • Relevant certifications such as CISSP, CISM, or Microsoft Certified: Identity and Access Administrator Associate are considered an asset.

Benefits

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions).
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family).
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans.
  • 12 corporate holidays and Flexible Time Off (FTO) program.
  • Healthy mobile phone and home internet allowance.
  • Eligibility for retirement plan after 2 months at open enrollment.
  • Pet Benefit Option.
CybersecurityMid-size

What people say about this company

4.2/ 5

  • Supportive work environment that encourages collaboration.
  • Opportunities for professional development and growth.
  • Some concerns about management effectiveness.
Salary not disclosed