Full Job Description
Senior IAM Engineer
Req# [redacted] Responsibilities Design and implement Microsoft Entra External ID / Azure AD B2C solutions for customer-facing applications Configure user sign-up, sign-in, password reset, MFA, and account management workflows Implement authentication using OAuth 2.0, OpenID Connect, and SAML protocols Integrate external identity providers such as Google, Microsoft, Facebook, and enterprise IdPs Develop and maintain custom authentication policies and user flows Configure application registrations, redirect URIs, scopes, claims, and permissions Integrate Entra External ID with web, mobile, and API applications Troubleshoot authentication, authorization, token, and federation issues Implement security controls including MFA, Conditional Access, and identity protection Collaborate with development teams to integrate MSAL and secure APIs Monitor authentication activity, investigate security issues, and support migration from Azure AD B2C to Microsoft Entra External ID Automate identity configurations and document architecture, configurations, and authentication flows Requirements 5+ years of experience as an IAM Engineer or in a similar role designing and implementing identity solutions Expertise in Microsoft Entra External ID and Azure AD B2C for customer-facing applications Proficiency in OAuth 2.0, OpenID Connect, and SAML authentication protocols Experience integrating external identity providers such as Google, Microsoft, and Facebook Skills in configuring application registrations, redirect URIs, and scopes, claims, and permissions Background in troubleshooting authentication, authorization, and federation issues Knowledge of Conditional Access, MFA, and identity protection controls Familiarity with Microsoft Authentication Library (MSAL) and secure API integration Competency in Azure CLI, PowerShell, and Terraform/ARM/Bicep for automation Understanding of Azure AD B2C to Microsoft Entra External ID migration processes