-
In this role, you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology.
- Design, implement, and maintain the organization's identity and access management strategy utilizing Entra ID and BeyondTrust tools.
- Manage user identities, access rights, and permissions within the Entra ID environment, ensuring appropriate access controls are in place.
- Oversee and manage the BeyondTrust PAM solution, including the secure handling of privileged accounts and sessions.
- Implement and enforce strong authentication methods such as Multi-Factor Authentication (MFA) and Conditional Access policies in Entra ID.
- Monitor and audit identity and access management activities for anomalies and potential security threats.
- Collaborate with IT teams and stakeholders to troubleshoot and resolve access-related issues, ensuring minimal disruption to business operations.
- Keep abreast of new features and updates in Entra ID and BeyondTrust, recommending and implementing improvements where beneficial.
- Create and maintain comprehensive documentation of all processes, configurations, and procedures related to Entra ID and BeyondTrust.
- Minimum of 2 years of experience in identity and access management, with at least 1 year in a similar role utilizing Entra ID and/or BeyondTrust.
- Proven expertise in Microsoft Entra ID administration.
- Strong knowledge of BeyondTrust Privileged Access Management (PAM) and/or other PAM solutions.
- In-depth understanding of identity protocols (SAML, OAuth, etc.), directory services, and Active Directory.
- Experience with scripting languages (PowerShell preferred) and automation tools.
- Familiarity with ITIL/ServiceNow or similar service management frameworks.
- Excellent problem-solving skills, ability to think strategically, and attention to detail.
- Strong communication and interpersonal skills, with the ability to explain complex technical concepts to non-technical audiences.
- Relevant certifications such as Microsoft Certified: Azure Identity and Access Administrator Associate are highly desirable.
- Certification in Microsoft Azure Security technologies, such as Microsoft Certified: Azure Security Engineer Associate.
- Hands-on experience with Azure AD Connect, Azure AD Domain Services, and Azure AD Privileged Identity Management.
- Knowledge of industry best practices and trends in identity and access management, such as Zero Trust Architecture.
- Cybersecurity Certifications such as Comptia Sec+, CySA+, (ISC)2 SSCP are preferred but not required.