Enter a job title or keyword

Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

New Era Technology


Job Location:

New York City, NY - USA

Monthly Salary: Not provided by the employer
Posted: 13 August 2026 (30+ days ago)
Application Deadline: 10 November 2026
Vacancies: 1 Vacancy

Job Summary

Join New Era Technology where People First is at the heart of everything we do. With a global team of over 3000 professionals were committed to creating a workplace where everyone feels valued empowered and inspired to grow. Our mission is to securely connect people places and information with end-to-end technology solutions at scale.

At New Era youll join a team-oriented culture that prioritizes your personal and professional development. Work alongside industry-certified experts access continuous training and enjoy competitive benefits. Guided by our core attributes putting people first embracing continuous learning and thriving through collaboration and inclusion we nurture our people to deliver exceptional customer service.

If you want to make an impact in a supportive growth-oriented environment New Era is the place for you. Apply today and help us shape the future of worktogether

Job Summary

New Era Technology is seeking an experienced Senior IAM Engineer to support enterprise Identity and Access Management operations cloud access governance RBAC modernization privileged access application identity integrations and identity security initiatives within a mature hybrid and multi-cloud environment.

The ideal candidate will have strong hands-on experience with Microsoft Entra ID/Azure AD Azure RBAC Privileged Identity Management (PIM) application federation/SSO least-privilege access IAM operations automation Splunk-based identity monitoring and Identity Threat Detection and Response (ITDR).

Key Responsibilities
  • Design maintain and optimize Azure RBAC across subscriptions management groups resource groups and Azure services.
  • Define enterprise role taxonomy and implement governed access using groups roles and approved assignments.
  • Administer Microsoft Entra ID/Azure AD on-premises Active Directory hybrid identity and workforce partner guest service and application identities.
  • Implement Microsoft Entra PIM Just-in-Time (JIT) privileged access MFA Conditional Access break-glass procedures privileged access monitoring and audit evidence.
  • Design implement and troubleshoot SAML OIDC OAuth Entra SSO enterprise applications app registrations service principals claims groups and application roles.
  • Promote managed identities govern service principals support credential rotation and improve CI/CD secret management.
  • Support the Saviynt-to-SailPoint transition including identity entitlement role certification policy procedure and control documentation.
  • Support IAM monitoring logging alerting investigation and ITDR use cases using Azure-native tools and Splunk.
  • Support AWS IAM GCP IAM and multi-cloud identity governance where required.
  • Support FedRAMP-relevant access controls configuration baselines change control audit readiness and privileged access governance.
  • Develop automation and scripting to improve IAM workflows reporting documentation access reviews runbooks and operational efficiency.
  • Identify opportunities to responsibly use AI tools for IAM analysis reporting documentation and workflow optimization.
  • Collaborate with Information Security infrastructure cloud application DevOps audit and other technical stakeholders.
Required Technical Skills
  • Strong hands-on experience with Microsoft Entra ID/Azure AD administration.
  • Strong knowledge of Azure RBAC security groups role assignments management groups subscriptions and resource-level access.
  • Experience with Microsoft Entra PIM JIT privileged access MFA Conditional Access and privileged authentication.
  • Strong understanding of Active Directory and hybrid identity.
  • Enterprise experience with SAML OIDC OAuth SSO Entra Enterprise Applications app registrations managed identities service principals claims and application roles.
  • Experience with least-privilege access design access reviews access certification identity/entitlement inventory credential management and secret hygiene.
  • Experience with Azure monitoring/logging and Splunk or comparable SIEM platforms.
  • Understanding of Identity Threat Detection and Response (ITDR).
  • Experience with IAM automation/scripting and CI/CD identity controls.
  • Strong IAM documentation skills including policies standards procedures runbooks and audit evidence.
Preferred Skills
  • SailPoint Identity IQ or Identity Now experience.
  • Experience supporting Saviynt-to-SailPoint migrations.
  • Broadcom/Symantec PAM or comparable PAM platforms such as CyberArk Beyond Trust or Delinea.
  • Cisco Splunk detection content or dashboard development.
  • AWS IAM GCP IAM workload identity governance and multi-cloud IAM.
  • FedRAMP control support or audit readiness.
  • Experience in financial services banking or other highly regulated enterprise environments.
  • DevOps CI/CD SDLC identity controls application resiliency IAM dependency management and vulnerability management integration.
  • AI-assisted workflow automation reporting documentation and operational analysis.
Required Qualifications
  • 7 years of Identity and Access Management experience preferred.
  • 4 years of Microsoft Entra ID/Azure AD experience preferred.
  • 3 years of Azure RBAC privileged access or cloud access governance experience preferred.
  • Hands-on enterprise application federation and SSO experience required.
  • Financial services banking or regulated enterprise experience strongly preferred.
  • Bachelors degree in Information Security Computer Science Information Technology or equivalent practical experience.
Key Competencies
  • Strong understanding and practical implementation of RBAC and least-privilege access at enterprise scale.
  • Strong troubleshooting skills for authentication federation SSO privileged access and identity monitoring.
  • Ability to work effectively across IAM Security Cloud Infrastructure Applications DevOps and Audit teams.
  • Strong communication documentation analytical and problem-solving skills.
  • Ability to work within disciplined change control audit compliance and operational stability environments.
  • Strong ownership accountability initiative and delivery focus.
  • Ability to balance security requirements with technical and business needs.
Engagement Details
  • Engagement: Full-time 12-month staff augmentation contractor
  • Work Schedule: Standard full-time hours; weekend work may be required for scheduled change management activities.
  • Environment: Hybrid identity multi-cloud enterprise SSO PAM IGA SIEM regulated financial services environment.
Physical Requirements
  • Regular use of a computer keyboard mouse and standard office equipment.
  • Ability to work for extended periods using computer screens and participate in remote meetings.
  • Ability to communicate effectively through phone and video conferencing.

#L1-RB1

New Era Technology LLC. and its subsidiaries (New Era we us or our) in its operating regions worldwide are committed to respecting your privacy and recognize the need for appropriate protection and management of any Personal Data that you may provide this we are also committed to providing you with a positive experience on our websites and while using our products services and solutions (Solutions).

View our Privacy Policy here never ask candidates to pay any fees at any point in our hiring process. If you are ever asked to provide payment for training certification equipment or any other purpose it is not from our company. Only communications from our official company channels should be trusted. Please note our official email domain is @. If you suspect fraudulent activity please contact us immediately at .


Required Experience:

IC