TT
Cloud Identity Administrator
Tech Talent Link
- Location not stated
- Remote
- 12 hours ago
- Active Directory
- Identity Management
- Conditional Access
- Group Policy
- DNS
- Kerberos
- LDAP
- Azure AD
- Change Management
- Windows
- SAML
- OAuth
- OpenID Connect
- Windows Server
- Microsoft Intune
- PowerShell
- Azure
12 hours ago
Must be in Pacific or Mountain time zones.
About Us
We are a national provider of industry-leading workers' compensation solutions for employers, third-party administrators, insurance companies, and government agencies. Our continued investments in technology and people enable us to deliver innovative, integrated solutions. We are a stable and growing company with a supportive culture and opportunities for professional growth.
About the Role
We are is seeking a motivated Cloud Identity Administrator to join our Cloud Engineering Team. This position is designed for an IT professional who has a solid foundation in Microsoft technologies and has expertise in Microsoft Entra ID, Active Directory, identity management, and cloud technologies.
We are looking for someone with strong technical fundamentals, good troubleshooting instincts, attention to detail, and the curiosity and drive to learn.
What You'll Do
Microsoft Entra ID
- Administer Microsoft Entra ID users, groups, and access assignments.
- Assist with employee, contractor, service, and administrative account lifecycle management.
- Manage approved group memberships and role-based access assignments.
- Assist with Microsoft Entra roles and Privileged Identity Management (PIM).
- Support Conditional Access and authentication policies under the guidance of senior engineers.
- Assist with enterprise applications, application registrations, and Single Sign-On integrations.
- Help track and renew application certificates and secrets before expiration.
- Troubleshoot common authentication, provisioning, and access problems.
- Assist with identity, role, and access reviews.
Active Directory
- Administer Active Directory users, computers, security groups, and role groups.
- Create, modify, enable, disable, unlock, and maintain accounts through approved processes.
- Manage group memberships and approved access changes.
- Move users, computers, and servers to the appropriate Organizational Units (OUs).
- Perform password resets, account unlocks, and routine directory cleanup.
- Assist with Group Policy administration, testing, and troubleshooting.
- Troubleshoot common account, authentication, permissions, and domain access issues.
- Assist senior engineers with recurring Active Directory health assessments and remediation tasks.
- Learn the supporting technologies behind Active Directory, including DNS, Kerberos, LDAP, service accounts, and directory permissions.
Hybrid Identity
- Help support synchronization between on-premises Active Directory and Microsoft Entra ID.
- Monitor and troubleshoot common directory synchronization problems.
- Assist with Azure AD Connect administration and operational checks.
- Troubleshoot user, group, and attribute synchronization issues.
- Support authentication and access issues that cross on-premises and cloud environments.
Operations, Documentation, and Troubleshooting
- Work identity-related incidents, service requests, recurring controls, and project tasks.
- Research problems, document findings, and escalate appropriately when deeper expertise is required.
- Maintain accurate ticket assignments, work notes, evidence, and resolution details.
- Follow established approval, change-management, testing, and validation procedures.
- Create and maintain clear technical procedures and knowledge-base articles.
- Communicate status, questions, risks, and dependencies clearly to technical and nontechnical stakeholders.
- Identify repetitive tasks that could be simplified, standardized, or automated.
What We're Looking For
Required Qualifications
- 5 years of professional IT experience.
- Practical experience administering Active Directory users, computers, and groups.
- Familiarity with Microsoft Entra ID
- Experience supporting account provisioning, permissions, and access changes.
- Understanding of authentication, directory services, and role-based access.
- Experience troubleshooting Windows or Microsoft 365 environments.
- Ability to research unfamiliar technical problems and ask effective questions.
- Strong analytical and problem-solving skills.
- Good written and verbal communication skills.
- Good documentation habits and attention to detail.
- Ability to work constructively with a technical team and follow established procedures.
- Demonstrated curiosity, initiative, and desire to learn new technologies.
Preferred Qualifications
Experience with any of the following is helpful, but candidates are not expected to know all of them:
- Azure AD Connect or hybrid identity synchronization.
- Group Policy administration or troubleshooting.
- Microsoft Entra Conditional Access or PIM.
- Enterprise applications, SSO, SAML, OAuth, or OpenID Connect.
- DNS, Kerberos, LDAP, service accounts, or Windows Server fundamentals.
- Microsoft 365 administration.
- Microsoft Intune fundamentals.
- PowerShell scripting.
- Microsoft Azure fundamentals.
- Relevant Microsoft, CompTIA, or similar certifications.
- Bachelor's degree in information technology, computer science, or a related field, or equivalent professional experience.
Cloud Identity Administrator · Tech Talent Link