Req ID: 377705
We are currently seeking a Azure B2C/EID Specialist - Remote to join our team in Toronto, Ontario (CA-ON), Canada (CA).
Identity & Access Management (IAM) Engineer - Microsoft Entra ID / Azure AD B2CWe are seeking an experienced
IAM Engineer to design, implement, and support enterprise-grade identity and access management solutions using Microsoft Entra ID and Azure AD B2C. This role focuses on secure authentication, authorization, federation, and application onboarding, while ensuring reliability, performance, and compliance across customer-facing and internal applications. The ideal candidate brings deep expertise in modern authentication protocols, Azure AD B2C custom policies, and troubleshooting complex identity flows.
Day-to-Day ResponsibilitiesIdentity Architecture & Implementation- Design, implement, and manage IAM solutions using Microsoft Entra ID and Azure AD B2C.
- Configure and maintain authentication and authorization protocols including OAuth 2.0, OpenID Connect (OIDC), and SAML 2.0.
- Develop and manage access control mechanisms such as access tokens, API permissions, and OAuth grant types.
- Implement and manage Azure Application Proxy connectors and header-based SSO solutions.
- Onboard enterprise applications into Azure AD and configure secure authentication and authorization flows.
- Design and enforce Conditional Access policies aligned with security and compliance requirements.
Troubleshooting & Support- Troubleshoot authentication, token, and federation issues across enterprise and customer-facing applications.
- Debug and optimize Azure AD B2C authentication flows to improve performance and reliability.
- Provide production support, including incident management, root cause analysis, and issue resolution.
Azure AD B2C Customization- Develop and maintain Azure AD B2C custom policies, including claims transformations and user journey orchestration.
- Implement MFA for customer-facing applications.
- Integrate external systems using REST APIs within Azure AD B2C frameworks.
Monitoring & Diagnostics- Monitor and diagnose authentication flows using Application Insights, Kusto Query Language (KQL), and Azure Workbooks.
- Analyze logs and telemetry to identify issues, trends, and optimization opportunities.
Collaboration & Governance- Work closely with application teams, security teams, and business stakeholders to ensure secure IAM implementations.
- Contribute to IAM governance, standards, and best practices across the organization.
Basic Qualifications- 5+ years in Identity and Access Management (IAM) engineering or architecture.
- 5+ years hands-on experience with Microsoft Entra ID (Azure AD) and Azure AD B2C.
Authentication & Authorization Protocols- OAuth 2.0 - 3+ years
- OpenID Connect (OIDC) - 3+ years
- SAML 2.0 - 3+ years
- Access tokens, API permissions, OAuth grant types - 3+ years
Azure AD / B2C Expertise- Enterprise application onboarding - 2+ years
- Conditional Access policy design - 2+ years
- Azure Application Proxy & SSO configurations - 2+ years
- Troubleshooting authentication, token, and federation issues - 3+ years
- Azure AD B2C custom policies & user journeys - 3+ years
- Claims transformations & REST API integrations - 2+ years
Monitoring & Diagnostics- Application Insights - 2+ years
- KQL & Azure Workbooks - 2+ years
Security- Strong understanding of MFA, identity security best practices, and modern IAM patterns.
Nice to Have- Programming experience in .NET / C#.
- Experience providing production support in IAM environments.
- Familiarity with CI/CD pipelines and DevOps practices for IAM deployments.
- Experience with identity governance, risk-based authentication, or Zero Trust frameworks.
- Relevant certifications such as:
- Microsoft Certified: Identity and Access Administrator Associate
- Microsoft Certified: Azure Solutions Architect Expert
Pay TransparencyWhere required by law, NTT DATA provides a reasonable range of compensation for specific roles. The starting pay range for this remote role is $105,095-$202,812. This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on a number of factors, including the candidate's actual work location, relevant experience, technical skills, and other qualifications.
This position is eligible for company benefits including medical, dental, and vision insurance with an employer contribution, flexible spending or health savings account, life and AD&D insurance, short- and long-term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally-required benefits.
#LI-NorthAmerica