Active Directory Services Entra Engineer
North Chicago, IL - USA
Job Summary
Join AbbVies Information Security & Risk Management (ISRM) team as an IAM Directory Services Engineer where we empower our partners to succeed by delivering the knowledge tools and support needed to leverage data and technology securely and effectively. As part of our Identity & Access Management (IAM) team you will play a pivotal role in shaping and executing our enterprise-wide IAM strategy.
The ideal candidate will have deep expertise in Microsoft Entra ID (formerly Azure AD) Active Directory Certificate Services supporting related authentication tools and PowerShell scripting experience to design implement and manage Directory and Authentication solutions for our global workforce of 80000 users.
Responsibilities:
- Designing deploying and maintaining Microsoft Entra ID (formerly Azure AD) solutions including conditional access policies application integrations multi-factor authentication (MFA) single sign-on (SSO) and Zero Trust.
- Designing and managing custom roles and RBAC (Role-Based Access Control) in Entra ID for granular access management across hybrid and multi-cloud environments.
- Developing and maintaining PowerShell scripts to automate identity management tasks streamline processes and enhance operational efficiency.
- Aligning Entra ID and hybrid identity controls with security best practices through ongoing configuration hardening policy tuning and operational guardrails (e.g. Zero Trust patterns privileged access controls).
- Collaborating with cross-functional teams to integrate enterprise applications and cloud platforms with Directory and Authentication Services.
- Performing advanced troubleshooting and root cause analysis of complex Entra ID and Active Directory authentication and authorization issues.
- Administering and supporting certificate lifecycle management and authentication infrastructure including Active Directory Certificate Services (AD CS) SCEP/NDES configurations and endpoint credential and password management tools such as SpecOps and LastPass.
- Staying current with industry trends and emerging technologies in IAM AD Azure and related fields.
Qualifications :
- Bachelor Degree with 5 years experience OR Masters Degree with 4 years experience
- Respective years of demonstrated experience with a focus on Entra ID/Azure AD and Active Directory.
- Advanced proficiency in PowerShell scripting for automation and management of identity systems.
- Hands-on experience with Active Directory Entra ID features including conditional access MFA SSO and Entra ID Connect.
- Experience supporting certificate and authentication services including Active Directory Certificate Services (AD CS).
- Excellent problem-solving skills and ability to work in a fast-paced global environment.
- Strong collaboration skills across engineering security and operations teams
- In-depth knowledge of securing identity platforms and hybrid directory environments including threat modeling and control design
- Strong communication skills with the ability to document designs drive implementation plans and coordinate deliverables with stakeholders
Preferred:
- 5 years experience with a focus on Entra ID/Azure AD and Active Directory.
- Microsoft certifications such as Microsoft Certified: Identity and Access Administrator Associate or Microsoft Certified: Azure Solutions Architect Expert.
- Experience supporting large-scale environments (10000 users; 80000 users preferred).
- Familiarity with cloud platforms like AWS or Google Cloud for hybrid identity solutions.
- Knowledge of security best practices and compliance frameworks (e.g. NIST ISO 27001).
- Experience with Active Directory (AD) environments including group policies user provisioning directory synchronization and Certificate Services.
- Familiarity with PKI and certificate services administration (AD CS SCEP/NDES) for issuing and managing device and user certificates supporting authentication use cases.
Additional Information :
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:
- The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location and we may ultimately pay more or less than the posted range. This range may be modified in the future.
- We offer a comprehensive package of benefits including paid time off (vacation holidays sick) medical/dental/vision insurance and 401(k) to eligible employees.
- This job is eligible to participate in our short-term incentive programs.
Note: No amount of pay is considered to be wages or compensation until such amount is earned vested and determinable. The amount and availability of any bonus commission incentive benefits or any other form of compensation and benefits that are allocable to a particular employee remains in the Companys sole and absolute discretion unless and until paid and may be modified at the Companys sole and absolute discretion consistent with applicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity driving innovation transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more visit & Puerto Rico applicants seeking a reasonable accommodation click here to learn more:
No
Employment Type :
Full-time
About Company
AbbVie is a global biopharmaceutical company focused on creating medicines and solutions that put impact first for patients, communities, and our world. We aim to address complex health issues and enhance people's lives through our core therapeutic areas: immunology, oncology, neuro ... View more