About the Job
At cb5, we are on a mission to find exceptional talent. Our tight-knit organization is led by five brothers, each technology leaders in their respective technical fields and driven to foster a culture of excellence through solidarity. We are seeking a Senior Microsoft Identity Architect to serve as the authoritative voice on identity security, and industry best practices. This role is remote with limited requirement for onsite visits to customer locations in North Carolina.
Job Description
We are seeking a Sr Microsoft Identity Architect with deep expertise and experience in designing and transforming identity architectures based on Zero Trust principles. The focus of this role is to shepherd customers through assessing and optimizing the fidelity of their identity ecosystem. This role requires the ability to advise and translate directives from executive business leadership into actionable, execution ready roadmaps. To guide in the development of strategic solutions and orchestrate hands-on implementation with customer engineering teams to translate those executive mandates into hardened, audit-defensible architectures.
Key Responsibilities
- Demonstrate proficiencies in Microsoft identity service capabilities, including Active Directory, Entra ID, AD FS, and PKI
- Provide subject matter expertise in support of hybrid Microsoft identity environments comprising Active Directory and Entra ID
- Provide operational, architectural, and deployment experience of on-premises Active Directory and Entra ID
- Identify and interview stakeholders to develop and document identity solutions
- Perform discovery of existing infrastructure and AD-aware ecosystem to establish a clear picture of identity ecosystem
- Analyze identity estate, identifying risk areas which do not meet operational requirements or deviate from industry and Zero Trust practices
- Design end-state architecture, migration plans, validation plans, and cutover plans and assist in the development of the transition and adoption planning
- Support application teams in transition of legacy applications to Entra ID
- Provide technical identity teams support in the cutover and decommissioning of AD dependent legacy applications and infrastructure components
- Report on current state, issues, and future activities
Qualifications
5+ years of experience with Active Directory5+ years of experience in Entra ID suiteFamiliar with IAM IAG services (e.g. Sailpoint, Saviynt, ManageEngine)Familiar with IAM ecosystems components such as Okta, CyberArk, Radiant LogicAccomplished, supported, and lead multiple operational design, deployment, and migration for Active Directory and Entra IDEnterprise (more than 15,000 users) experience with design, implementation, and operation of Active DirectoryProven track record leading Zero Trust Identity transformations for Fortune 500 or equivalent organization.Expertise with Entra ID Connect, External Identities, Cross tenant access, Conditional Access Policies, MFA, Entitlement Management, etc.Experience using migration and integration tools such as ADMT or Dell / Quest Migration toolsSuperior problem solving and troubleshooting skills at the System Engineer / Architect level.The ability to work independently with minimal management supervision and as part of nationwide team of engineersPreferred Qualifications
Microsoft Certified : Cybersecurity Architect Expert.Microsoft Certified : Identity and Access Administrator Associate (SC-300)CISSP-ISSAP (Information Systems Security Architecture Professionalcb5 Solutions LLC is an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, disability, veteran status, or any other protected characteristic.