Identity Technical Architect
Job Summary
Role name: Identity Technical Architect
About the Role:
Key Responsibilities
Identity Advisory & Architecture
- Assess existing Active Directory environments and define hybrid/cloud identity strategies.
- Design identity architectures and migration roadmaps from onprem AD to Microsoft Entra ID.
- Develop HLD/LLD covering identity sync authentication frameworks and access governance.
Identity Migration & Implementation
- Architect and implement AD Entra ID migrations via Entra Connect / Entra Connect Sync.
- Design and deploy hybrid identity models: PHS PTA federation.
- Lead directory consolidation tenant onboarding and modernization projects.
- Implement SSO MFA conditional access and modern authentication.
- Integrate applications using SAML OAuth2 OIDC SCIM.
Identity Security & Governance
- Implement identity lifecycle management and automated provisioning.
- Enforce leastprivilege RBAC and governance controls.
- Align identity solutions with Zero Trust and compliance frameworks.
Delivery & Collaboration
- Support presales: solution design technical proposals SoW.
- Produce architecture documents identity flows and operational guides.
- Provide KT and mentor customer teams and internal engineers.
Qualifications & Experience
- 7 years in IAM Infrastructure or Security Architecture.
- Strong experience with AD architecture & administration.
- Handson expertise with Microsoft Entra ID and Entra Connect deployments.
- Proven delivery of AD Entra ID or hybrid identity projects.
- Experience with SSO MFA CA identity federation.
- Application integration using modern identity protocols.
- Familiarity with thirdparty AD migration tools.
- Proficiency in PowerShell Bash GraphAPI.
- Experience with Azure Functions & Azure Monitor alerts.
Technical Skills
Identity Platforms
- Microsoft Active Directory
- Microsoft Entra ID
- Microsoft Entra Connect / Azure AD Connect
Identity & Authentication
- SSO MFA Conditional Access
- Identity Federation
Protocols
- SAML 2.0 OAuth 2.0 OIDC
- LDAP / Kerberos
- SCIM
Security & Governance
- RBAC & access models
- Identity lifecycle management
- Zero Trust architecture
- Identity governance & compliance
Certifications
- SC300: Microsoft Identity & Access Administrator
- AZ305: Designing Microsoft Azure Infrastructure Solutions
Soft Skills
- Strong communication & stakeholder management.
- Ability to translate business needs into identity architectures.
- Experience leading identity transformation projects.
- Collaborative and capable of mentoring engineers.
Required Experience:
Staff IC
About Company
Created in 1987, Stefanini is a $1B global IT provider of business solutions with locations in 40 countries across the Americas, Europe, Australia and Asia. With more than 25,000 employees, Stefanini provides onshore, offshore and nearshore IT services, including application developme ... View more