Job Title: MS Azure Cloud Architect
Job Location: Houston - Texas - USA
Job Type: Contract
Job Description:
- Conduct a comprehensive analysis of existing SailPoint Identity IQ or Identity Security Cloud configurations including users roles groups policies and workflows
- Map SailPoint identity governance features eg provisioning access certifications to equivalent Microsoft Entra ID capabilities
- Identify dependencies custom configurations and potential challenges in migrating from SailPoint to Entra ID
- Design migration strategies for transitioning identity data including users groups service principals and access policies to Entra ID
- Architect Entra ID solutions leveraging Microsoft Graph APIs Azure RBAC and conditional access policies to replicate SailPoint functionality
- oPlan hybrid identity architectures ensuring seamless integration between on premises Active Directory and Entra ID during migration
- Configure Microsoft Entra ID connectors and APIs to import identity data from SailPoint ensuring data integrity and consistency
- Migrate user accounts group memberships and access policies including B2B guest users and B2C consumer identities to Entra ID
- Implement single sign on SSO and multifactor authentication MFA in Entra ID to replace SailPoint SSO configurations
- Transition cloud governance features such as Azure Management Objects eg Management Groups Subscriptions Resource Groups to Entra ID
- Access Management and Governance
- Configure Entra ID role based access control RBAC using built in and custom roles to align with Sail Points access control model
- Set up Entra ID Privileged Identity Management PIM for managing elevated access and replacing Sail Points privileged account management
- Implement automated access reviews policy enforcement and compliance reporting in Entra ID to maintain governance standards
- Perform end to end testing of migrated identity data access policies and SSO configurations to ensure functionality and security
- Validate migration outcomes against business requirements addressing discrepancies in user access or policy enforcement
- Test hybrid identity synchronization using Azure AD Connect to ensure continuity between on premises and cloud environments
- Ensure migrated configurations comply with organizational security policies and regulatory standards eg GDPR HIPAA SOC
- Implement Entra ID security features such as conditional access riskbased policies and custom security attributes to enhance identity protection
- Document migration processes and configurations for audit and compliance purposes
- Stakeholder Collaboration and Training
- Collaborate with security infrastructure and compliance teams to align migration plans with business objectives
- Provide training and documentation to end-users and administrators on Entra ID features and workflows postmigration
- Work with Microsoft and SailPoint support teams to resolve migration related issues
- Monitor Entra ID performance and address API rate limits or integration issues using best practices like exponential backoff Optimize Entra ID configurations for scalability and efficiency ensuring alignment with long term IAM goals
- Decommission SailPoint components postmigration ensuring a clean transition
Technical Skills
- Deep knowledge of Microsoft Entra ID including RBAC PIM and conditional access policies
- Proficiency in SailPoint IdentityIQ or Identity Security Cloud including connector configurations and governance features
- Experience with PowerShell scripting REST APIs and JSON for identity data migration
- Familiarity with Azure Management Objects and hybrid identity architectures