Microsoft Azure IAM & PKI Specialist (SME)
Posted 12 days ago
Job Viewed
Job Description
Experience: 8-12 years
Job Description- Identity & Access Management (IAM) concepts (SSO, MFA, conditional access, RBAC).
- Entra ID administration (user/group management, app registration, service principals).
- Identity Governance (access reviews, entitlement management, lifecycle workflows).
- Permissions Management (cloud entitlements across Azure, GCP).
- Troubleshooting authentication & authorization issues.
- Azure AD / Entra integration with Azure resources.
- Azure Monitor, Log Analytics, Sentinel (security monitoring).
- Familiarity with ARM templates/Bicep for infrastructure automation.
- Domain & forest trust management.
- DNS integration with AD.
- Security hardening (admin tiering, delegation).
- Certificate templates, enrollment policies, and auto-enrollment.
- Automated issuance & renewal (SCEP, ACME protocols).
- Integrating PKI with endpoint, server, and network devices.
- Governance & compliance for certificate usage.
- Deep understanding of PKI trust chains.
- Secure design of enterprise PKI.
- Hardware Security Module (HSM) integration.
- Integration with AD for authentication.
- NPS policies for wired/wireless 802.1X authentication.
- Troubleshooting RADIUS authentication issues (logs, Event Viewer).
- GCP IAM (roles, service accounts, policies).
- Project, folder, and organization-level resource management.
- Integration with external identity providers (Entra ID, SAML).
- Monitoring & logging with Google Cloud Operations Suite.
- Security best practices in GCP (org policy, security command center).
Mid-Senior level
Employment typeFull-time
Job functionFinance, Information Technology, and Consulting
IndustriesIT Services and IT Consulting, Banking, and Financial Services
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSenior Systems and Cloud Engineer
Posted today
Job Viewed
Job Description
The Senior Systems and Cloud Engineer will be highly skilled and experienced professional responsible for designing, implementing, and maintaining complex IT systems and cloud infrastructure. This role requires a strong understanding of various operating systems, virtualization technologies, cloud platforms (OCI Azure, GCP), networking, and security best practices. The Senior Systems and Cloud Engineer will play a crucial role in ensuring the stability, performance, and security of the organization's IT infrastructure while maintaining strict compliance with all relevant cybersecurity regulations.
Key Responsibilities Cloud Infrastructure Management- Lead and execute cloud migration projects.
- Design, implement, and manage cloud infrastructure solutions on platforms like OCI, Azure, and GCP.
- Provision and manage virtual machines, containers, and other cloud resources.
- Manage cloud storage solutions (object, block, file) for efficient data storage and retrieval
- Automate infrastructure provisioning and management using tools like PowerShell, Terraform, or Ansible.
- Optimize cloud resource utilization and costs.
- Ensure high availability, disaster recovery, security, and business continuity for cloud-based systems.
- Maintain and troubleshoot on-premises hardware and operating systems (Windows, Linux).
- Deploy, configure and manage VMware vSphere virtual environment.
- Install, configure, and manage on-premises software applications.
- Integrate on-premises systems with cloud infrastructure for seamless data flow.
- Manage and maintain server infrastructure (physical and virtual) including installation, configuration, and troubleshooting.
- Administer and maintain operating systems (Linux, Windows) and related services.
- Design, implement, and administer Office 365 services, including Exchange Online, SharePoint Online, Teams, OneDrive, and related applications.
- Manage user accounts, licenses, and permissions within the Office 365 environment.
- Configure and manage email services, including mailbox creation, distribution groups, and email policies.
- Monitor Office 365 services and troubleshoot issues to ensure high availability and reliability.
- Implement and maintain system security measures, including firewalls, intrusion detection systems, OS hardening, and access controls.
- Perform system performance tuning and optimization.
- Participate in capacity planning and resource allocation.
- Deploy, configure, and manage Microsoft Intune for endpoint management and security.
- Enforce device compliance policies, including device encryption, password complexity, and malware protection.
- Deploy and manage mobile device management (MDM) policies.
- Deploy and manage applications through the Intune platform.
- Troubleshoot and resolve Intune-related issues.
- Investigate and respond to malware infections and other endpoint threats.
- Implement and enforce security policies on endpoints.
- Implement and manage identity and access solutions, including Azure Active Directory (AAD) and Single Sign-On (SSO).
- Configure and manage user authentication, password policies, and multi-factor authentication (MFA).
- Implement and manage role-based access control (RBAC) and conditional access policies.
- Implement and manage Privileged Access Management (PAM) solutions.
- Implement and manage data loss prevention (DLP) policies to protect sensitive information.
- Configure and manage retention policies and data archiving within Office 365.
- Monitor compliance with industry, local regulations, and organizational policies.
- Develop and implement automation scripts for system administration tasks using scripting languages like Python, Bash, or PowerShell.
- Automate routine maintenance tasks to improve efficiency and reduce manual effort.
- Develop and maintain monitoring and alerting systems.
- Implement and maintain security best practices across cloud and on-premises infrastructure.
- Perform regular security audits, vulnerability assessments, and penetration testing.
- Ensure compliance with local industry regulations such as NCA and data security standards.
- Monitor security alerts and respond to security incidents.
- Integrate systems with Cybersecurity tools such as SIEM, PAM, …
- Proactively monitor cloud and on-premises system performance using monitoring tools such as SolarWinds.
- Identify and troubleshoot performance bottlenecks to ensure optimal resource utilization.
- Implement cost-saving measures by optimizing cloud resource allocation.
- Collaborate with other IT teams (e.g., development, security, operations) to ensure smooth system operations.
- Effectively communicate technical information to both technical and non-technical audiences.
- Participate in on-call rotation for system support.
- Research and evaluate new technologies and tools to improve system performance and efficiency.
- Stay current with the latest industry trends and best practices in cloud computing and systems administration.
- Bachelor’s degree in computer science, Information Technology, or a related field
- 4+ years of experience in systems administration, O365, Exchange Online and cloud computing.
- Proven experience with cloud platforms like OCI, Azure, or GCP.
- In-depth knowledge of Azure AD, Microsoft Office 365 services, including Exchange Online,
- Strong expertise in virtualization technologies such as VMware vSphere
- Microsoft Active Directory, GPOs, Windows Servers, Networking services (DNS, DHCP,) and related systems
- Experience with identity and access management solutions, including Azure Active Directory and Single Sign-On.
- Strong understanding of data governance and compliance requirements within Office 365.
- Strong understanding of networking concepts, security and cybersecurity principles.
- Proficiency in PowerShell scripting and automation.
- Strong analytical and problem-solving abilities.
- Effective communication and interpersonal skills.
- A proactive learner with the ability to work in a team environment.
- Microsoft 365 Certified: Administrator
- Cloud computing certification in major cloud technologies
- Microsoft Certified: Security, Compliance, and Identity Fundamentals
Be The First To Know
About the latest Azure Jobs in Jeddah !