Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IAM SME - Entra External ID

Group Nine LLC

IAM SME – Entra External ID

We are hiring an IAM SME to lead a secure SSO implementation of Entra External ID. Key duties include migrating from Azure AD B2C to Microsoft Entra External ID, establishing federation with external client portals (SAML/OIDC), providing reference SSO integration, and ensuring strong security, documentation, and knowledge transfer.

Key Responsibilities
  • Organize discovery workshops to assess existing authentication methods, workflows, and types of external users.
  • Evaluate Azure tenant readiness, licensing, security and compliance requirements, and establish a project plan with milestones and RACI assignments.
  • Identify prerequisites such as network configuration, required ports, and environment setup strategy, collaborating with application teams to address dependencies.
  • Develop an authentication architecture for external users with Entra External ID.
  • Define user registration and login processes, IdP federation strategies (SAML/OIDC), and tailor branding and UX for user journeys.
  • Design Conditional Access and MFA policies, including bypass options for partner-initiated flows when necessary (in partnership with app teams).
  • Create architecture diagrams and high/low-level design documents.
  • Prepare the development environment, configure the Entra External ID tenant, and register required applications.
  • Set up federation and integration patterns for external client portals.
  • Apply session and token management best practices to ensure smooth portal navigation and proper sign-out behavior.
  • Establish a migration strategy and tools using Microsoft Graph APIs, along with scripts and infrastructure.
  • Plan and conduct pilot migration, then advance to full-scale migration readiness.
  • Maintain attribute mapping and ensure identity data integrity during migration.
  • Lead UAT validation, manage issue triage and remediation tracking, and refine policies and UX from feedback.
  • Verify conditional access/MFA enforcement versus bypass scenarios, and test end-to-end SSO functionality.
  • Create comprehensive documentation covering configuration, federation, migration steps, and operational runbooks.
  • Host working sessions and transfer knowledge to enable internal teams to manage additional client SSO integrations independently.
  • Support cutover planning, rollback strategies, and post-migration stabilization.
  • Collaborate with security operations teams to ensure logging, monitoring, and auditability of authentication events.
  • Provide ongoing advisory support during early operations (hypercare) post go-live.
Required Skills & Experience
  • 10+ years in Identity & Access Management with hands-on SSO and federation implementations.
  • Strong expertise in:
    • Microsoft Entra External ID
    • OAuth2 / OIDC, SAML 2.0, JWT, token/session management
    • Application registrations, redirect URIs, certificates/secrets, custom domains concepts
  • Experience with Azure AD B2C and migration patterns to Entra External ID.
  • Working knowledge of Microsoft Graph API for user migration and identity operations.
  • Practical experience designing and implementing Conditional Access + MFA strategies.
  • Strong documentation and stakeholder management skills; ability to run workshops and KT sessions.
Preferred Certifications (nice to have)
  • Microsoft Certified: Identity and Access Administrator Associate
  • Microsoft Certified: Cybersecurity Architect Expert
Soft Skills:
  • Strong analytical, problem-solving, and troubleshooting skills.
  • Excellent communication and stakeholder management abilities.
  • Ability to work independently and collaboratively in a fast-paced environment.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the IAM SME - Entra External ID in United States vacancy
  • $175k - $210k

     ...organization, the Identity & Access Management (IAM) team enables secure, seamless access to...  ...and operations across multiple Microsoft Entra ID tenants, Ping and Entra ID federation...  ...part of our selection process, external candidates may be required to attend an in... 
    Suggested
    Full time
    Work experience placement
    Local area
    Remote work

    NBCUniversal

    United States
    2 days ago
  • $103k - $120k

     ..., CURIOSITY, PASSION Role Summary: The IAM Analyst is responsible for supporting the...  ...cloud, and enterprise systems. Perform user ID provisioning and access administration for...  ...privilege. Assist with internal and external audit requirements by providing evidence of... 
    Suggested
    Full time
    Temporary work
    Remote work
    Work from home
    Flexible hours

    Ensono

    United States
    1 day ago
  • $140k - $182k

    Position Overview We are seeking a Senior Manager - IAM Practice Lead with broad domain expertise to support State Street's IAM integration...  ...Management, Directory Services) * Expertise in Microsoft Entra ID (formerly Azure AD) including Conditional Access, B2B/B2C, and... 
    Suggested
    Full time
    Temporary work
    Remote work
    Work from home
    Flexible hours

    Ensono

    United States
    1 day ago
  • $149k - $248k

     ...Public Trust What You Will Do: Serve as a Subject Matter Expert (SME) for enterprise financial and lending systems, supporting mission...  ...Care, Hospital Indemnity, Accident Insurance, Legal Assistance and ID theft protection, etc.) Position may be eligible for a... 
    Suggested
    Permanent employment
    Full time
    Temporary work
    Flexible hours

    Guidehouse

    United States
    12 hours ago
  • $90.15k - $208.67k

     ...want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Cybersecurity / IAM Engineer to join our team in Bethesda (REMOTE), Maryland (US-MD), United States (US). Job Summary: The Cybersecurity / IAM... 
    Suggested
    Full time
    Contract work
    Temporary work
    Work at office
    Remote work
    Flexible hours

    NTT DATA Services

    United States
    4 days ago
  • Group 1001 is a consumer-centric, technology-driven family of insurance companies on a mission to deliver outstanding value and operational performance by combining financial strength and stability with deep insurance expertise and a can-do culture. Group1001’s culture...
    Full time
    Temporary work
    Work at office
    Immediate start
    Remote work

    Group 1001

    United States
    12 hours ago
  • $100k - $150k

     ...for an experienced candidate. Primary responsibilities include: * Level 3 support for the day-to-day operations of the Citizens IAM Platform Operations technologies including: * Azure Active Directory * AWS Directory Services * On-premise Active Directory *... 
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work
    Monday to Friday
    Flexible hours
    Night shift

    Citizens

    United States
    2 days ago
  • $80k - $131k

    As a Senior External Life Sales Advisor, you will work closely with American Family Insurance agents to support life insurance policies. Preferred candidates will be based in Arizona; however, we will also consider candidates located elsewhere in the Western region. You... 
    Full time
    Local area
    Immediate start
    Relocation package

    American Family Insurance

    United States
    2 days ago
  • $80k - $128k

    Responsibilities We are seeking an experienced IAM/ICAM Full Stack Developer to design, build, deploy, and support secure, cloud...  ...IAM platforms such as Okta, Ping Identity, ForgeRock, Microsoft Entra ID, or AWS IAM Identity Center Familiarity with AWS GovCloud,... 
    Contract work
    Shift work

    Peraton

    United States
    7 hours ago
  • $60 - $75 per hour

     ...Stewardship. Lead the design and implementation of a unified Microsoft Entra identity architecture, consolidating multiple tenants and legacy...  ...-functional teams to design, approve, and implement cloud and IAM solutions, balancing architecture with hands-on execution... 
    Hourly pay
    Full time
    Contract work
    Remote work

    re:Members

    United States
    28 days ago
  • $170.14k - $212.75k

     ...Experience: 10 + years of related experience US Citizenship Required: Yes Job Description: GDIT is seeking a Cloud Architect / Developer SME to design, build, and secure large-scale Azure Government environments supporting mission‑critical federal systems. Key... 
    Full time
    Temporary work
    Work experience placement
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    United States
    1 day ago
  •  ...SailPoint Developer / IAM SME Lead Location: Remote (prefer someone in VA/DC area but if not local that is fine) Skilled professional...  ...IAM solutions comply with internal security policies and external regulatory standards. Implement and enforce RBAC, access control... 
    Local area
    Remote work

    Anveta

    United States
    4 days ago
  • $112.2k - $196.4k

     ...amazingly talented Principal Entra ID & Active Directory Engineer to...  ...related issues. Partner with IAM, Security, Infrastructure, and...  ...and Problem Management. SME advisory posture for directory...  ...and coordinate identity related external DNS records (such as Entra ID... 
    Remote work
    Flexible hours

    Parsons Company

    United States
    1 day ago
  • $176k - $282k

    Responsibilities Peraton is hiring a Solutions Architect, this role will be located be a remote role. What you'll do: The Solutions Architect - Air Force supports the Business Development Executive and capture teams in developing technically credible, competitively...
    Civilian Contractor
    Contract work
    Work at office
    Remote work
    Shift work

    Peraton

    United States
    2 days ago
  • $100 per hour

    We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize...
    Hourly pay
    Full time
    Part time
    Work experience placement
    Work at office
    Local area
    Flexible hours

    CVS Health

    United States
    5 hours ago
  • $70 - $90 per hour

     ...F&O SME a0MP900000A19Rh.1_1778792124 We are seeking an experienced Enterprise Architect with a strong background in Dynamics 365 Finance & Operations to drive technology initiatives that enhance our operational capabilities. In this remote role, you will lead architectural... 
    Remote work

    Nigel Frank

    United States
    a month ago
  • $110k - $143k

     ...opportunity to personally thrive, make a difference and be part of a culture where individuality is noticed and valued every day. Senior IAM Infrastructure Administrator  Role Summary We are seeking a highly skilled IAM Infrastructure Administrator with deep... 
    Full time
    Remote work
    Work from home
    Flexible hours
    United States
    a month ago
  • $80k - $100k

     ...Account Manager, Clinical Laboratory/Transfusion Medicine in MT/ID/WA/OR territory. The Account Manager, CL/TM is a front-line, customer...  ...development skills. Manages complex sales cycle internally and externally. Ability to analyze financial data and generate logical... 
    Full time
    Contract work
    Local area
    Remote work
    Work from home
    Home office
    Night shift

    QuidelOrtho

    United States
    12 hours ago
  • $107.36k - $166.75k

    Job Summary Otsuka America Pharmaceutical Inc. is a global healthcare company with the corporate philosophy: “Otsuka-people creating new products for better health worldwide.” Otsuka researches, develops, manufactures and markets innovative products, with a focus on pharmaceutical...
    Full time
    Temporary work
    Work at office
    Local area
    Worldwide
    Flexible hours
    Night shift

    Otsuka Pharmaceutical Co., Ltd.

    United States
    4 days ago
  • $75k - $95k

    Company Description Named Account Licensing Manager Company Description Agile IT is a Microsoft AOS-G partner and Cyber AB Registered Practitioner Organization (RPO) built for the Defense Industrial Base. As one of six original AOS-G resellers for GCC High, we help defense...
    Full time
    For contractors
    Remote work

    Agile IT

    United States
    4 days ago
  •  ...Opportunity (Part-Time) : Cyber Strategy Subject Matter Expert (SME) - building capacity on a USG contract, supporting a partner nation. Bottom Line Up Front: Hoplite Group is seeking a Cyber Strategy Subject Matter Expert (SME) to support a U.S. Government building... 
    Contract work
    Part time
    Immediate start
    Remote work

    Hoplite Group

    United States
    13 days ago
  • $157k - $212.41k

     ...Amgen team. Join us and transform the lives of patients while transforming your career. Medical Science Liaison, Oncology - WA, AK, ID, MT, WY Territory to include: WA, AK, ID, MT, WY What you will do Let’s do this. Let’s change the world. In this vital role you will... 
    Full time
    Work at office
    Flexible hours

    Amgen

    United States
    12 hours ago
  •  ...Opportunity (Part-Time): Aviation Logistics Subject Matter Expert (SME) - building capacity on a USG contract, supporting a partner nation. Bottom Line Up Front: Hoplite Group is seeking an Aviation Logistics SME to support a U.S. Government building partner capacity... 
    Contract work
    Part time
    Immediate start
    Remote work

    Hoplite Group

    United States
    26 days ago
  • $106.2k - $161.21k

     ...Thrive at work and at home. We boldly go. Where is the work: Virtual This position will cover a territory that includes AZ, CA, CO, ID, MT, NM, NV, OR, UT, WA, WY, and Western Canada. You will need to either currently live in this territory or able to relocate. What's... 
    Hourly pay
    Full time
    Live in
    Local area
    Immediate start
    Remote work
    Work from home
    Relocation

    Trane Italia

    United States
    4 days ago
  •  ...Opportunity (Part-Time): Fighter Pilot Subject Matter Expert (SME) - building capacity on a USG contract, supporting a partner nation . Bottom Line Up Front: Hoplite Group is seeking a Fighter Pilot SME to support a U.S. Government building capacity effort with... 
    Contract work
    Part time
    Immediate start
    Remote work

    Hoplite Group

    United States
    a month ago
  • $99k - $156k

     ...Zapier, PowerShell/Python, APIs) and serve as SME for SaaS integrations across Okta,...  ...Hands-on, production experience with AWS (IAM, VPCs, EC2/ECS or similar, basic networking...  ...provider — Okta strongly preferred; Azure AD/Entra ID or similar acceptable — including SSO, lifecycle... 
    Full time
    Temporary work
    Remote work

    Cribl

    United States
    2 days ago
  • $70k - $85k

     ...policies, Identity & Access Management (IAM), endpoint compliance, and device lifecycle...  ...MSP Management Coordinate and work with external Managed Service Providers, ensuring SLA adherence...  ...experience managing O365, Azure and Entra ID Hands-on experience with Microsoft Intune... 
    Full time
    Work at office
    Local area
    Remote work

    Guardian Dentistry Partners

    United States
    12 hours ago
  • $105.7k - $149.28k

     ...Streams/Tasks, Snowpipe/Kafka Connector, and external stages (S3) Enforce security, compliance,...  ...session parameters (SSO/SCIM with Okta/Entra ID) Manage Snowflake objects and...  ...Operate secure integrations with AWS (S3, IAM/KMS, PrivateLink/VPC endpoints), catalogs... 
    16 hours
    Full time
    Contract work
    Temporary work
    Work experience placement
    Casual work
    Work at office
    Local area
    Remote work
    Work from home
    Work visa
    Flexible hours

    Empower

    United States
    3 days ago
  •  ...Position Details We are currently looking for a Dutch Teacher for one of our clients in Online (US), United States. Reference ID: 1032444 Course Type: General Format: one-to-one Total Hours: 60 Session length: 1.5 hour Location: 10994, Online... 
    Hourly pay
    Contract work
    Part time
    Freelance
    Worldwide
    Relocation
    Visa sponsorship
    Work visa
    Flexible hours
    1 day per week

    Language Trainers

    United States
    more than 2 months ago
  •  ...Opportunity (Part-Time): Maritime Security Advisor Subject Matter Expert (SME) Bottom Line Up Front:   Hoplite Group is seeking an experienced Maritime Security Advisor SME to support a U.S. Government institutional capacity-building (ICB) effort focused on maritime... 
    Contract work
    Part time
    Remote work

    Hoplite Group

    United States
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IAM SME - Entra External ID. Be the first to apply!