Azure Active Directory Security Engineer

Full Time | Noida | India

Industry : Information Technology and Services
Experience7 - 15 years
Compensation1,000,000 - 3,200,000
Openings1

Role Overview

Designation / RoleAzure Active Directory Security Engineer

Key Responsibilities

  • Design, implement, and maintain Azure Active Directory architectures and integrations, including Azure AD Connect and federation scenarios.
  • Develop and enforce Conditional Access policies to manage secure access based on risk, device posture, and contextual signals.
  • Apply CIS Benchmarks and organizational security baselines to cloud and on-premises systems; lead CIS hardening efforts and continuous compliance validation.
  • Create, manage, and optimize Group Policy Objects (GPOs) for Windows domains to enforce security settings and operational consistency.
  • Automate identity and configuration tasks using PowerShell and other scripting tools to improve reliability and repeatability.
  • Implement and manage Multi-Factor Authentication, Privileged Identity Management, and identity protection capabilities.
  • Collaborate with endpoint, network, application, and compliance teams to align identity controls and policies across environments.
  • Monitor identity-related alerts, perform investigations, and tune detection rules in SIEM or monitoring platforms.
  • Document configurations, runbooks, and standard operating procedures; provide training and knowledge transfer to engineering and support teams.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • Proven experience with Azure Active Directory and hybrid identity topologies, including Azure AD Connect and federation.
  • Strong experience implementing CIS Benchmarks or equivalent hardening standards for servers, endpoints, and cloud services.
  • Expertise managing Group Policy Objects in Windows Server Active Directory environments.
  • Hands-on experience designing and implementing Conditional Access policies, MFA, and privileged access management.
  • Proficiency with PowerShell scripting for automation and configuration management.
  • Familiarity with identity protocols (SAML, OAuth2, OpenID Connect) and federation technologies.
  • Experience with endpoint management solutions such as Microsoft Intune and with monitoring/alerting via SIEM tools.
  • Excellent documentation, communication, and cross-team collaboration skills.

Skills

The ideal candidate will possess the technical skills listed below and be able to apply them to secure identity and access across cloud and on-premises platforms.

Skill Set

Active Directory Azure Active Directory Azure AD Connect Azure AD Privileged Identity Management Azure Monitor Azure Policy CIS Benchmarks Conditional Access Group Policy Identity and Access Management Microsoft Intune Multi-Factor Authentication OAuth2 OpenID Connect PowerShell SAML Security Baselines Security Compliance SIEM Windows Server
Application

Apply for this role

PDF, DOC, or DOCX up to your server upload limit.