Req ID: 385290
We are currently seeking a Identity & Access Management (IAM) Security Engineer - ONSITE in Addison, TX to join our team in Addison, Texas (US-TX), United States (US).
Prior to Applying, please review and comply accordingly:** Must be a US citizen or Green card holder to proceed with applying.
**Please carefully review the job requirements and pay transparency details below prior to applying
**Must be willing to work onsite daily at Client's Location in Addison, TX. (more specific details to be shared during the interview process)
Role Overview:This role supports the security and operation of the Client's identity, privileged access, device management, and authentication platforms. The position partners with Security, Infrastructure, Application Teams, Audit, and other stakeholders to implement security controls, remediate deficiencies, and maintain reliable and secure access for users.
Key Responsibilities:- Manage Microsoft Entra ID, Conditional Access, authentication methods, and identity security controls.
- Administer Privileged Identity Management (PIM), privileged access roles, and access governance.
- Configure and support Microsoft Intune MDM/MAM, device compliance, and application protection policies.
- Support Active Directory, hybrid identity, directory synchronization, and access management.
- Manage enterprise application authentication and SSO integrations (SAML, OAuth).
- Monitor and remediate identity security risks, audit findings, and compliance gaps.
- Evaluate and implement Microsoft security enhancements, including Entra B2B and passkey adoption.
- Perform identity and device cleanup activities and maintain security documentation.
- Develop PowerShell automation to improve operational efficiency.
Priorities:- Conditional Access and authentication support
- Privileged access and PIM administration
- Intune enrollment, compliance, and device management
- Identity, SSO, and application access support
- Security remediation, audits, access reviews, and change management
Required Qualifications:- 8+ years of experience in Identity & Access Management, Infrastructure Security, or Information Security.
- Must have experience with Microsoft Entra ID, Conditional Access, PIM, Intune, Active Directory, and/or Hybrid Identity.
- Experience with SSO technologies, identity governance, and PowerShell scripting is required.
- Strong understanding and knowledge of risk management and information security principles.
Preferred Qualifications:- Strong systems and network administration experience.
- Experience managing enterprise security and identity platforms.
- Proven ability to collaborate with technical and business stakeholders.
- Knowledge of network security and enterprise infrastructure environments.
NTT DATA provides a reasonable range of compensation for U.S.-based positions. The starting pay range for this remote role is $106,000-$142,000 . This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on a number of factors, including the candidate's actual work location, relevant experience, technical skills, and other qualifications.
This position may also be eligible for incentive compensation based on individual and/or company performance. If the position offered in temporary, the position will not be eligible for incentive compensation.
This position is eligible for company benefits including medical, dental, and vision insurance with an employer contribution, flexible spending or health savings account, life and AD&D insurance, short and long term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally-required benefits.
Whenever possible, we hire locally to NTT DATA offices or client sites. This ensures we can provide timely and effective support tailored to each client's needs. While many positions offer remote or hybrid work options, these arrangements are subject to change based on client requirements. For employees near an NTT DATA office or client site, in-office attendance may be required for meetings or events, depending on business needs. At NTT DATA, we are committed to staying flexible and meeting the evolving needs of both our clients and employees. NTT DATA recruiters will never ask for payment or banking information and will only use [redacted].com, [redacted].com and [redacted].nttdataservices.com email addresses. If you are requested to provide payment or disclose banking information, please submit a contact us form, https://us.nttdata.com/en/contact-us.