Senior Security Infrastructure Engineer (IT Security Lead)
Job Responsibilities
- Lead the design, implementation, and governance of enterprise security infrastructure across Identity & Access Management (IAM), Microsoft Entra ID, Active Directory, PKI, Microsoft 365, and Azure Security.
- Define and enforce Zero Trust architecture, Conditional Access, identity governance, and privileged access management (CyberArk PAM/EPM).
- Manage Azure Landing Zone security, ExpressRoute, Azure Firewall, Private Link, and hybrid cloud security controls.
- Oversee Enterprise PKI, certificate lifecycle management, email security, encryption, and Microsoft Defender security solutions.
- Lead security architecture reviews, major incident investigations, vulnerability remediation, and security hardening initiatives.
- Drive compliance with security governance, ISMS, and audit requirements while mentoring L1–L3 engineers and leading technical security projects.
Requirements
- 9–12 years of experience in IT Infrastructure Security, IAM, and Cloud Security.
- Strong hands-on experience with Microsoft Entra ID, Active Directory, ADFS, Azure AD Connect, Azure AD B2C, Microsoft Identity Manager (MIM), and CyberArk PAM/EPM.
- Expertise in Azure Security, Zero Trust Architecture, Conditional Access, Microsoft 365 Security, PKI, and certificate lifecycle management.
- Experience with Microsoft Defender, Azure Monitor, Log Analytics, and enterprise security governance.
- Strong leadership, stakeholder management, troubleshooting, and documentation skills.
Preferred Certifications
- CISSP
- Microsoft Certified: Cybersecurity Architect Expert (SC-100)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
Hashtags
#CyberSecurity #ITSecurity #IAM #MicrosoftEntra #AzureSecurity #ActiveDirectory #ZeroTrust #CyberArk #PKI #Microsoft365 #CloudSecurity #IdentityManagement #Azure #CISSP