Active Directory Services / Entra Engineer (Hybrid)
Indexed description
Job Description
Join AbbVies Information Security & Risk Management (ISRM) team as anIAM Directory Services Engineer, where we empower our partners to succeed by delivering the knowledge, tools, and support needed toleveragedata and technology securely and effectively. As part of our Identity & Access Management (IAM) team,you willplay a pivotal role in shaping and executing our enterprise-wide IAM strategy.
The ideal candidate will have deepexpertiseinMicrosoft Entra ID (formerly Azure AD), Active Directory, Certificate Services,supportingrelatedauthentication tools,andPowerShell scriptingexperienceto design, implement, and manage Directory and Authentication solutions for our global workforce of80,000 users.
Responsibilities
- Designing, deploying, andmaintainingMicrosoft Entra ID (formerly Azure AD) solutions, including conditional access policies, application integrations, multi-factor authentication (MFA), single sign-on (SSO), and Zero Trust.
- Designing and managing custom roles and RBAC (Role-Based Access Control) in Entra ID for granular access management across hybrid and multi-cloud environments.
- Developing andmaintainingPowerShell scripts to automate identity management tasks, streamline processes, and enhance operational efficiency.
- Aligning Entra ID and hybrid identity controls with security best practices through ongoing configuration hardening, policy tuning, and operational guardrails (e.g., Zero Trust patterns, privileged access controls).
- Collaborating with cross-functional teams to integrate enterprise applications and cloud platforms with Directory and Authentication Services.
- Performing advanced troubleshooting and root cause analysis of complex Entra ID and Active Directory authentication and authorization issues.
- Administering and supporting certificate lifecycle management and authentication infrastructure, including Active Directory Certificate Services (AD CS), SCEP/NDES configurations, and endpoint credential and password management tools such asSpecOpsand LastPass.
- Staying current with industry trends and emerging technologies in IAM, AD, Azure, and related fields.
- Bachelor Degree with 5 years experience OR Masters Degree with 4 years experience
- Respective years of demonstratedexperience with a focus on Entra ID/Azure AD and Active Directory.
- Advancedproficiencyin PowerShell scripting for automation and management of identity systems.
- Hands-on experience with Active Directory, Entra ID features, including conditional access, MFA, SSO, and Entra ID Connect.
- Experience supporting certificate and authentication services, including Active Directory Certificate Services (AD CS).
- Excellent problem-solving skills and ability to work in a fast-paced, global environment.
- Strong collaboration skills across engineering, security, and operations teams
- In-depth knowledge of securing identity platforms and hybrid directory environments, including threat modeling and control design
- Strong communicationskills with the ability to document designs, drive implementation plans, and coordinate deliverables with stakeholders
- 5 years experience with a focus on Entra ID/Azure AD and Active Directory.
- Microsoft certifications such as Microsoft Certified: Identity and Access Administrator Associate or Microsoft Certified: Azure Solutions Architect Expert.
- Experience supporting large-scale environments (10,000+ users; 80,000+ users preferred).
- Familiarity with cloud platforms like AWS or Google Cloud for hybrid identity solutions.
- Knowledge of security best practices and compliance frameworks (e.g., NIST, ISO 27001).
- Experience with Active Directory (AD) environments, including group policies, user provisioning, directorysynchronization,and Certificate Services.
- Familiarity with PKI and certificate services administration (AD CS, SCEP/NDES) for issuing and managing device and user certificates supporting authentication use cases.
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state orlocal law:
- The compensation range described below is the range of possible base pay compensation that the Companybelieves ingood faith it will pay for this role at thetimeofthis posting based on the job grade for this position.Individualcompensation paid within this range will depend on many factors including geographiclocation,andwemayultimatelypaymore or less than the posted range. This range may bemodifiedin thefuture.
- We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick),medical/dental/visioninsurance and 401(k) to eligibleemployees.
- This job is eligible toparticipatein our short-term incentiveprograms.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visithttps://www.abbvie.com/join-us/equal-employment-opportunity-employer.html
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
https://www.abbvie.com/join-us/reasonable-accommodations.html
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search