Trupanion

Solutions & Platform Architect - Microsoft

Trupanion$145K — $165K *
Enterprise Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in Microsoft infrastructure engineering.
  • 5+ years in Microsoft identity engineering.
  • 5+ years of Microsoft 365 administration and architecture.
  • 5+ years in Intune and endpoint engineering.
  • Experience leading enterprise transformation initiatives.
  • Proficiency in designing Zero Trust architecture.
  • Familiarity with regulated or compliance-driven environments.

Responsibilities

  • Lead transformation initiatives for Active Directory dependency reduction.
  • Develop and execute an Entra-first identity architecture strategy.
  • Design and implement Microsoft Entra Cloud Sync solutions.
  • Migrate from outdated Entra Connect architectures where suitable.
  • Drive the retirement planning of ADFS systems.
  • Establish governance for identity source-of-authority.
  • Shape Microsoft’s passwordless authentication approach.

Benefits

  • Full medical, dental, and vision coverage with no employee cost.
  • Four weeks of paid time off plus 9 paid float holidays.
  • Five-week sabbatical after five years of service.
  • Open, casual, and pet-friendly office culture.
  • Free medical insurance for one pet (dog or cat).
  • Paid time off for volunteering at nonprofit organizations.
  • Access to on-site gym and dog walking services for office pets.
Full Job Description
Job Description

US - Seattle only: This position is open to candidates in the Seattle, WA area. You will have a hybrid remote/in-office schedule where you will work from our casual, pet-friendly office at least 3 days a week (Tuesday, Wednesday, and Thursday). Remote candidate may be considered based on experience.

The Solutions & Platform Architect - Microsoft serves as the organization's technical authority for Microsoft Identity, Security, Endpoint Management, and Zero Trust architecture. This role will lead the design, engineering, deployment, and operational maturity of Microsoft Entra ID, Identity Governance, Policies, Intune, Windows Autopilot, Defender, Global Secure Access, and Microsoft 365 security/E5 capabilities.

The ideal candidate combines deep hands-on engineering expertise with enterprise architecture capabilities and has successfully delivered complex identity transformations including Active Directory modernization, password less authentication, cloud-first endpoint management, and Zero Trust initiatives. This individual will partner closely with Technology Operations, Information Security, Infrastructure, Compliance, Service Desk, and business stakeholders to develop and execute Trupanion's Microsoft platform roadmap.

Responsibilities:

Identity Modernization
  • Lead Active Directory dependency reduction initiatives.
  • Develop and execute Entra-first identity architecture strategy.
  • Design and implement Microsoft Entra Cloud Sync.
  • Lead migration from Entra Connect architecture where appropriate.
  • Assess and reduce authentication dependencies.
  • Drive ADFS retirement planning and execution.
  • Establish identity source-of-authority governance

Authentication & Access Management
  • Lead Microsoft's passwordless authentication strategy.
  • Implement Microsoft Authenticator and Passkeys.
  • Design Windows Hello for Business deployment.
  • Implement Cloud Kerberos Trust architecture.
  • Develop phishing-resistant authentication standards.
  • Establish authentication lifecycle standards.

Endpoint Modernization
  • Lead Intune transformation initiatives.
  • Design cloud-first endpoint management standards.
  • Drive GPO-to-Intune migration programs.
  • Implement CIS benchmark controls through Intune.
  • Modernize Windows deployment and provisioning services.
  • Establish device lifecycle standards.

Entra Join & Autopilot Transformation
  • Lead Hybrid AD to Entra Join transition strategies.
  • Architect Autopilot modernization initiatives.
  • Implement Cloud Kerberos Trust integrations.
  • Design deployment and enrollment standards.
  • Remove legacy dependencies impacting modern deployments.

Secure Access Architecture
  • Lead evaluation of Microsoft Global Secure Access.
  • Design Entra Private Access architecture.
  • Design Entra Internet Access architecture.
  • Develop coexistence and migration strategies from Zscaler.
  • Conduct proof-of-concept testing.
  • Create migration roadmaps and operational support models.

Identity Governance
  • Evaluate and implement Entra Identity Governance capabilities.
  • Design Joiner-Mover-Leaver workflows.
  • Develop automated access certification processes.
  • Integrate identity lifecycle management with HR systems.
  • Improve role-based access governance and compliance.

Automation & Engineering
  • Develop PowerShell automation solutions.
  • Utilize Microsoft Graph APIs.
  • Automate provisioning and reporting.
  • Reduce operational overhead through engineering practices.
  • Build self-service capabilities for users and support teams.

Skills
  • Microsoft Entra ID, Conditional Access, Identity governance, PIM, Cloud sync, Entra connect, ADFS, SSO, MFA, Authentication flow.
  • Microsoft Intune, SCCM, Autopilot, Entra join, hybrid join, Windows update for business, CIS benchmarks, GPO migration
  • GSA, Entra Private Access, Entra Internet Access, Private Application Access
  • Powershell, Microsoft Graph, REST APIs, Azure Automation
  • Independent technical ownership, mentoring, cross-functional collaboration, and clear communication with technical and non-technical audiences


Qualifications

Required Qualifications
  • 8+ years Microsoft infrastructure engineering
  • 5+ years Microsoft identity engineering
  • 5+ years Microsoft 365 administration and architecture
  • 5+ years Intune and endpoint engineering
  • Experience leading enterprise transformation programs
  • Experience designing Zero Trust architecture
  • Experience supporting regulated or compliance-driven environments


Additional Information

Compensation:
  • The base salary range for this position is $145,000 - $165,000 on a full-time schedule.
  • Along with base compensation, Trupanion employees are currently eligible for monthly bonuses.
  • We want all employees to be invested in Trupanion's success, so we grant Restricted Stock Units to all new team members. Our new hire grants vest over 4 years.


Benefits and Perks:
  • Full medical, dental, and vision benefits at no cost to the employee
  • Four weeks of paid time off and 9 paid float holidays (you can decide which days are most important to you!)
  • Five-week sabbatical after five years of employment
  • Open, casual, pet-friendly, and fun office environment
  • Free medical health insurance for your pet (1 dog or cat)
  • Paid time off to volunteer at nonprofit organizations
  • Seattle Office Amenities: Free on-site gym, free dog walking services for office pets during business hours, free parking, and paid ORCA cards.

About Trupanion

Trupanion is a pet insurance provider based in Seattle, Washington. The company offers insurance policies for cats and dogs, covering veterinary costs for illnesses and injuries. Trupanion was founded in 2000 by Darryl Rawlings and has since grown to become one of the largest pet insurance providers in North America. The company is committed to providing high-quality pet insurance coverage and exceptional customer service to pet owners across the United States and Canada.
Learn more about Trupanion
Size
1,131 employees
Market Cap
$2 billion
Industry
Net Income
-$5.8 million
Founded
1999
5 Year Trend
+30%
Revenue
$502 million
NASDAQ

Similar Jobs

More Jobs at Trupanion

More Enterprise Technology Jobs

Find similar Solutions & Platform Architect - Microsoft jobs: