OPEN JOB : IAM Consultant (PKI and Entra ID)
LOCATION : HYBRID - Onsite at 2 Metrotech Center (Brooklyn) & Remote (2 days in office / 3 days remote)
WORK HOURS : 35 hour billable week (8 hour days with 1 hour unpaid lunch)
DURATION : 1 year
SCOPE OF SERVICES :
- Assess and develop a roadmap for OTI's disparate directories consolidation
- Provide guidance and implementation support for integration with Entra and other IAM
security enhancements
Architect and implement Citywide-level PKI modernization, including infrastructurechanges for reduced certificate lifespans
Advice on governance, compliance, lifecycle management and automation of digitalcertificates
Lead migration planning, risk assessment, and mitigation for directories and PKImodernization
Perform technical knowledge transfer, upskilling internal teams on new infrastructureand practices
TASKS :
PKI Architecture, Engineering and Administrator - 40%Entra ID Architecture, Engineering and Administrator - 30%Directory Architecture, Engineering and Administrator - 20%IAM Level 3 Technical Support - 10%MANDATORY SKILLS / EXPERIENCE :
12 years in IAM architect, engineering, administration and operations with focus ondirectory services and PKI
Deep expertise in Active Directory (on-prem and hybrid), Entra ID, and eDirectoryHands-on experience in designing and operating Microsoft PKI, including certificateauthority management, certificate lifecycle, and automation
Solid understanding of modern authentication / authorization protocols (OAuth, SAML,Kerberos, etc.)
Experience with security roadmap development, risk assessment, and compliance(NIST, ISO, SOX or PCI-DSS)
Strong documentation, communication, and stakeholder management skillsDESIRABLE SKILLS / EXPERIENCE :
Experience with cloud PKI servicesFamiliarity with Entra ID Governance, Conditional Access Policy, and modern securitycontrols
Experience automating PKI workflows (API / script-based certificate management)Multi-forest, multi-tenant IAM architecture expertisePrior experience working with NYC agencyWorking knowledge of enterprise ITSM, change management, and project managementmethodologies
SPECIAL REQUIREMENTS :
Ability to work cross-functionality with technical and business stakeholders in acomplex enterprise
Availability to provide after-hours support to critical migrations and incident responseIf you are interested in pursuing this opportunity, please respond back and include the following :
Updated resumeRequired compensationContact informationAvailabilityUpon receipt, one of our managers will contact you to discuss in full
Jason Denmark
INTERMEDIA GROUP, INC.
Email : jdenmark@intermediagroup.com
LINKEDIN :
LINK TO FULL LIST OF OPEN JOBS :