freehire launches on Product Hunt on 26 August.

Follow →

Senior Cloud Identity Engineer

Open 32d reposted 2×

About your tasks

  • Design and scale Microsoft Entra ID Governance by implementing Access Reviews, defining governance processes together with business stakeholders and building script-based automation to roll out governance capabilities consistently across a decentralized Microsoft Entra environment.
  • Engineer secure workload identity services by automating the lifecycle of Service Principals, certificates, secrets and federated credentials, integrating directly with Azure Key Vault and ensuring every solution follows Least Privilege principles from day one.
  • Design and implement modern self-service capabilities for Service Principals, Entra Groups and delegated administration, enabling engineering teams to work independently without unnecessary ownership or excessive permissions.
  • Review and optimize Azure RBAC, Entra RBAC, application permissions, Microsoft Graph permissions and OAuth consent models to continuously reduce excessive privileges, strengthen identity governance and improve Redcare’s cloud identity security posture.
  • Build identity monitoring and detection capabilities to proactively identify expiring credentials, permission misuse and guardrail violations using Microsoft Sentinel, Azure Monitor, Log Analytics and Kusto Query Language (KQL).
  • Support the automation of Joiner, Mover and Leaver processes with HRIS as single source of truth for identity

About you

  • You bring hands-on experience designing and automating cloud identity solutions with Microsoft Entra, Administrative Units, Microsoft Entra ID Governance, Microsoft Graph Permissions, Azure, Microsoft 365 and Power Platform in complex cloud environments.
  • You enjoy engineering secure, scalable identity platforms and designing Zero Trust and Least Privilege architectures while balancing developer experience with enterprise security requirements. You naturally think in automation, APIs, governance and secure-by-design rather than manual administration.
  • You challenge unnecessary permissions and advocate for modern identity governance, Permission Misuse Detection and continuous improvement to build secure, scalable cloud environments.
  • You are curious about emerging identity technologies, enjoy experimenting with new ideas, sharing your knowledge and presenting technical concepts to colleagues and stakeholders. You collaborate across teams to continuously improve the way cloud identity is designed, governed, secured and automated.

About your benefits:

In order to provide you with the best possible support for your individual needs - whether it‘s living a healthy life, having enough time for your family, or developing your skills - we offer a wide range of different, site-specific benefits.

  • Welcome days: We want you to feel at home with us from the very first day. Therefore, we welcome you with our comprehensive onboarding program.
  • Remote space: For our remote working employees we grant you 500,00 € to set up your office space from home. To create an environment for you and how you work best.
  • Anchor days: As per your remote contract there will be some occasions to travel to office for anchor days, this is fully reimbursed including any travelling costs or hotel expenses.
  • Personal development: Grow! We support and encourage your individual development through various in- and external trainings.
  • Employee referral program: Because you know best who fits in with us, successful recommendations are rewarded with a bonus.

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available