IAM SME - Entra External ID
Group Nine LLC
IAM SME – Entra External ID
We are hiring an IAM SME to lead a secure SSO implementation of Entra External ID. Key duties include migrating from Azure AD B2C to Microsoft Entra External ID, establishing federation with external client portals (SAML/OIDC), providing reference SSO integration, and ensuring strong security, documentation, and knowledge transfer.
Key Responsibilities
- Organize discovery workshops to assess existing authentication methods, workflows, and types of external users.
- Evaluate Azure tenant readiness, licensing, security and compliance requirements, and establish a project plan with milestones and RACI assignments.
- Identify prerequisites such as network configuration, required ports, and environment setup strategy, collaborating with application teams to address dependencies.
- Develop an authentication architecture for external users with Entra External ID.
- Define user registration and login processes, IdP federation strategies (SAML/OIDC), and tailor branding and UX for user journeys.
- Design Conditional Access and MFA policies, including bypass options for partner-initiated flows when necessary (in partnership with app teams).
- Create architecture diagrams and high/low-level design documents.
- Prepare the development environment, configure the Entra External ID tenant, and register required applications.
- Set up federation and integration patterns for external client portals.
- Apply session and token management best practices to ensure smooth portal navigation and proper sign-out behavior.
- Establish a migration strategy and tools using Microsoft Graph APIs, along with scripts and infrastructure.
- Plan and conduct pilot migration, then advance to full-scale migration readiness.
- Maintain attribute mapping and ensure identity data integrity during migration.
- Lead UAT validation, manage issue triage and remediation tracking, and refine policies and UX from feedback.
- Verify conditional access/MFA enforcement versus bypass scenarios, and test end-to-end SSO functionality.
- Create comprehensive documentation covering configuration, federation, migration steps, and operational runbooks.
- Host working sessions and transfer knowledge to enable internal teams to manage additional client SSO integrations independently.
- Support cutover planning, rollback strategies, and post-migration stabilization.
- Collaborate with security operations teams to ensure logging, monitoring, and auditability of authentication events.
- Provide ongoing advisory support during early operations (hypercare) post go-live.
Required Skills & Experience
- 10+ years in Identity & Access Management with hands-on SSO and federation implementations.
- Strong expertise in:
- Microsoft Entra External ID
- OAuth2 / OIDC, SAML 2.0, JWT, token/session management
- Application registrations, redirect URIs, certificates/secrets, custom domains concepts
- Experience with Azure AD B2C and migration patterns to Entra External ID.
- Working knowledge of Microsoft Graph API for user migration and identity operations.
- Practical experience designing and implementing Conditional Access + MFA strategies.
- Strong documentation and stakeholder management skills; ability to run workshops and KT sessions.
Preferred Certifications (nice to have)
- Microsoft Certified: Identity and Access Administrator Associate
- Microsoft Certified: Cybersecurity Architect Expert
Soft Skills:
- Strong analytical, problem-solving, and troubleshooting skills.
- Excellent communication and stakeholder management abilities.
- Ability to work independently and collaboratively in a fast-paced environment.
$175k - $210k
...organization, the Identity & Access Management (IAM) team enables secure, seamless access to... ...and operations across multiple Microsoft Entra ID tenants, Ping and Entra ID federation... ...part of our selection process, external candidates may be required to attend an in...SuggestedFull timeWork experience placementLocal areaRemote work$103k - $120k
..., CURIOSITY, PASSION Role Summary: The IAM Analyst is responsible for supporting the... ...cloud, and enterprise systems. Perform user ID provisioning and access administration for... ...privilege. Assist with internal and external audit requirements by providing evidence of...SuggestedFull timeTemporary workRemote workWork from homeFlexible hours$140k - $182k
Position Overview We are seeking a Senior Manager - IAM Practice Lead with broad domain expertise to support State Street's IAM integration... ...Management, Directory Services) * Expertise in Microsoft Entra ID (formerly Azure AD) including Conditional Access, B2B/B2C, and...SuggestedFull timeTemporary workRemote workWork from homeFlexible hours$149k - $248k
...Public Trust What You Will Do: Serve as a Subject Matter Expert (SME) for enterprise financial and lending systems, supporting mission... ...Care, Hospital Indemnity, Accident Insurance, Legal Assistance and ID theft protection, etc.) Position may be eligible for a...SuggestedPermanent employmentFull timeTemporary workFlexible hours$90.15k - $208.67k
...want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Cybersecurity / IAM Engineer to join our team in Bethesda (REMOTE), Maryland (US-MD), United States (US). Job Summary: The Cybersecurity / IAM...SuggestedFull timeContract workTemporary workWork at officeRemote workFlexible hours- Group 1001 is a consumer-centric, technology-driven family of insurance companies on a mission to deliver outstanding value and operational performance by combining financial strength and stability with deep insurance expertise and a can-do culture. Group1001’s culture...Full timeTemporary workWork at officeImmediate startRemote work
$100k - $150k
...for an experienced candidate. Primary responsibilities include: * Level 3 support for the day-to-day operations of the Citizens IAM Platform Operations technologies including: * Azure Active Directory * AWS Directory Services * On-premise Active Directory *...Full timeWork experience placementWork at officeLocal areaRemote workMonday to FridayFlexible hoursNight shift$80k - $131k
As a Senior External Life Sales Advisor, you will work closely with American Family Insurance agents to support life insurance policies. Preferred candidates will be based in Arizona; however, we will also consider candidates located elsewhere in the Western region. You...Full timeLocal areaImmediate startRelocation package$80k - $128k
Responsibilities We are seeking an experienced IAM/ICAM Full Stack Developer to design, build, deploy, and support secure, cloud... ...IAM platforms such as Okta, Ping Identity, ForgeRock, Microsoft Entra ID, or AWS IAM Identity Center Familiarity with AWS GovCloud,...Contract workShift work$60 - $75 per hour
...Stewardship. Lead the design and implementation of a unified Microsoft Entra identity architecture, consolidating multiple tenants and legacy... ...-functional teams to design, approve, and implement cloud and IAM solutions, balancing architecture with hands-on execution...Hourly payFull timeContract workRemote work$170.14k - $212.75k
...Experience: 10 + years of related experience US Citizenship Required: Yes Job Description: GDIT is seeking a Cloud Architect / Developer SME to design, build, and secure large-scale Azure Government environments supporting mission‑critical federal systems. Key...Full timeTemporary workWork experience placementImmediate startRemote workWorldwideFlexible hours- ...SailPoint Developer / IAM SME Lead Location: Remote (prefer someone in VA/DC area but if not local that is fine) Skilled professional... ...IAM solutions comply with internal security policies and external regulatory standards. Implement and enforce RBAC, access control...Local areaRemote work
$112.2k - $196.4k
...amazingly talented Principal Entra ID & Active Directory Engineer to... ...related issues. Partner with IAM, Security, Infrastructure, and... ...and Problem Management. SME advisory posture for directory... ...and coordinate identity related external DNS records (such as Entra ID...Remote workFlexible hours$176k - $282k
Responsibilities Peraton is hiring a Solutions Architect, this role will be located be a remote role. What you'll do: The Solutions Architect - Air Force supports the Business Development Executive and capture teams in developing technically credible, competitively...Civilian ContractorContract workWork at officeRemote workShift work$100 per hour
We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize...Hourly payFull timePart timeWork experience placementWork at officeLocal areaFlexible hours$70 - $90 per hour
...F&O SME a0MP900000A19Rh.1_1778792124 We are seeking an experienced Enterprise Architect with a strong background in Dynamics 365 Finance & Operations to drive technology initiatives that enhance our operational capabilities. In this remote role, you will lead architectural...Remote work$110k - $143k
...opportunity to personally thrive, make a difference and be part of a culture where individuality is noticed and valued every day. Senior IAM Infrastructure Administrator Role Summary We are seeking a highly skilled IAM Infrastructure Administrator with deep...Full timeRemote workWork from homeFlexible hours$80k - $100k
...Account Manager, Clinical Laboratory/Transfusion Medicine in MT/ID/WA/OR territory. The Account Manager, CL/TM is a front-line, customer... ...development skills. Manages complex sales cycle internally and externally. Ability to analyze financial data and generate logical...Full timeContract workLocal areaRemote workWork from homeHome officeNight shift$107.36k - $166.75k
Job Summary Otsuka America Pharmaceutical Inc. is a global healthcare company with the corporate philosophy: “Otsuka-people creating new products for better health worldwide.” Otsuka researches, develops, manufactures and markets innovative products, with a focus on pharmaceutical...Full timeTemporary workWork at officeLocal areaWorldwideFlexible hoursNight shift$75k - $95k
Company Description Named Account Licensing Manager Company Description Agile IT is a Microsoft AOS-G partner and Cyber AB Registered Practitioner Organization (RPO) built for the Defense Industrial Base. As one of six original AOS-G resellers for GCC High, we help defense...Full timeFor contractorsRemote work- ...Opportunity (Part-Time) : Cyber Strategy Subject Matter Expert (SME) - building capacity on a USG contract, supporting a partner nation. Bottom Line Up Front: Hoplite Group is seeking a Cyber Strategy Subject Matter Expert (SME) to support a U.S. Government building...Contract workPart timeImmediate startRemote work
$157k - $212.41k
...Amgen team. Join us and transform the lives of patients while transforming your career. Medical Science Liaison, Oncology - WA, AK, ID, MT, WY Territory to include: WA, AK, ID, MT, WY What you will do Let’s do this. Let’s change the world. In this vital role you will...Full timeWork at officeFlexible hours- ...Opportunity (Part-Time): Aviation Logistics Subject Matter Expert (SME) - building capacity on a USG contract, supporting a partner nation. Bottom Line Up Front: Hoplite Group is seeking an Aviation Logistics SME to support a U.S. Government building partner capacity...Contract workPart timeImmediate startRemote work
$106.2k - $161.21k
...Thrive at work and at home. We boldly go. Where is the work: Virtual This position will cover a territory that includes AZ, CA, CO, ID, MT, NM, NV, OR, UT, WA, WY, and Western Canada. You will need to either currently live in this territory or able to relocate. What's...Hourly payFull timeLive inLocal areaImmediate startRemote workWork from homeRelocation- ...Opportunity (Part-Time): Fighter Pilot Subject Matter Expert (SME) - building capacity on a USG contract, supporting a partner nation . Bottom Line Up Front: Hoplite Group is seeking a Fighter Pilot SME to support a U.S. Government building capacity effort with...Contract workPart timeImmediate startRemote work
$99k - $156k
...Zapier, PowerShell/Python, APIs) and serve as SME for SaaS integrations across Okta,... ...Hands-on, production experience with AWS (IAM, VPCs, EC2/ECS or similar, basic networking... ...provider — Okta strongly preferred; Azure AD/Entra ID or similar acceptable — including SSO, lifecycle...Full timeTemporary workRemote work$70k - $85k
...policies, Identity & Access Management (IAM), endpoint compliance, and device lifecycle... ...MSP Management Coordinate and work with external Managed Service Providers, ensuring SLA adherence... ...experience managing O365, Azure and Entra ID Hands-on experience with Microsoft Intune...Full timeWork at officeLocal areaRemote work$105.7k - $149.28k
...Streams/Tasks, Snowpipe/Kafka Connector, and external stages (S3) Enforce security, compliance,... ...session parameters (SSO/SCIM with Okta/Entra ID) Manage Snowflake objects and... ...Operate secure integrations with AWS (S3, IAM/KMS, PrivateLink/VPC endpoints), catalogs...16 hoursFull timeContract workTemporary workWork experience placementCasual workWork at officeLocal areaRemote workWork from homeWork visaFlexible hours- ...Position Details We are currently looking for a Dutch Teacher for one of our clients in Online (US), United States. Reference ID: 1032444 Course Type: General Format: one-to-one Total Hours: 60 Session length: 1.5 hour Location: 10994, Online...Hourly payContract workPart timeFreelanceWorldwideRelocationVisa sponsorshipWork visaFlexible hours1 day per week
- ...Opportunity (Part-Time): Maritime Security Advisor Subject Matter Expert (SME) Bottom Line Up Front: Hoplite Group is seeking an experienced Maritime Security Advisor SME to support a U.S. Government institutional capacity-building (ICB) effort focused on maritime...Contract workPart timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IAM SME - Entra External ID. Be the first to apply!

