Microsoft Entra ID Specialist

£500.00 - £550.00/Day

Location
London, UK
Job Type
Contract
Industry
IT
Remote/Onsite
Part Remote
Experience Required
Not Provided
Education Required
Not Essential
Job Summary

We are seeking an experienced Microsoft Entra ID / Cloud Identity Specialist to support a key improvement programme focused on strengthening Microsoft Entra ID, with the impact of reducing identity-related risk and improving access controls. 


Working as part of a wider cyber security and infrastructure team, you will lead the assessment, prioritisation and remediation of any identitified vulnerabilities across the organisation’s Microsoft Entra ID and Active Directory environment, and also related services such as SSPR 


This role is ideally suited to an individual with strong hands-on experience in Microsoft Entra ID, Identity & Access Management (IAM), Active Directory and Conditional Access, who enjoys solving complex security challenges in large and diverse enterprise environments. 


Key Responsibilities 


  • Identify, assess and prioritise identity-related security vulnerabilities across the organisation. 
  • Lead remediation activities across Microsoft Entra ID, Active Directory and hybrid identity platforms. 
  • Review and strengthen Microsoft Entra ID authentication controls including MFA, Conditional Access, authentication methods and Single Sign-On. 
  • Support the migration away from SMS-based authentication to Microsoft Authenticator App. 
  • Ensure MFA is enforced on all user accounts to provide assurance that authentication controls are consistently applied. 
  • Implement automated controls to disable accounts where MFA has not been configured within a defined period.
  • Ensure correct configuration for use of self-service password reset functionality, that will minimise and remove risks associated with compromised, expired or externally controlled domains. Deploy enhanced robust authentication, such as YubiKeys, for operational support accounts. 
  • Maintain hygiene of the environment through removal of excessive privileges, dormant accounts, legacy access models and segregation of duties issues. 
  • Implement least-privilege access principles and role-based access controls. 
  • Support the deployment and optimisation of Privileged Access Management (PAM). 
  • Work closely with infrastructure, cyber security and service teams to ensure remediation activities are delivered effectively. 
  • Produce remediation plans, technical documentation and progress reporting for stakeholders. 
  • In conjunction with others, support the development of a long-term identity security roadmap. 


 

Essential Skills & Experience 


  • Strong experience in Identity & Access Management (IAM) environments. 
  • Hands-on experience with Microsoft Entra ID and related identity technologies, including: 
  • Microsoft Active Directory 
  • Microsoft Entra ID, including authentication methods, MFA registration, Conditional Access and SSPR 
  • Azure AD Connect / Hybrid Identity 
  • Group Policy Management 
  • Role-Based Access Control (RBAC) Conditional Access Policies 
  • Multi-Factor Authentication (MFA) 
  • Microsoft Authenticator App, passwordless authentication, FIDO2 security keys and Windows Hello for Business 
  • Experience identifying and remediating identity-related vulnerabilities and security weaknesses. 
  • Knowledge of authentication protocols including Kerberos, LDAP, SAML and OAuth. 
  • Strong understanding of Microsoft 365, Microsoft Entra ID and hybrid identity architectures. 
  • Experience automating administration and reporting through PowerShell. 
  • Knowledge of self-service password reset configuration, domain validation risks and identity recovery controls. 
  • Ability to design and implement automated identity controls, including account disablement based on MFA registration status. 
  • Excellent stakeholder engagement and communication skills.  


Desirable Experience 


  • Microsoft Defender for Identity 
  • CyberArk, BeyondTrust or other PAM technologies 
  • SailPoint, Saviynt, Microsoft Identity Manager or other IGA platforms 
  • Zero Trust identity security initiatives 
  • Public Sector environments 
  • Cyber Essentials / ISO27001 aligned security programmes  


What You'll Deliver 

  • Reduction in identity-related cyber risk. 
  • Remediation of any identified critical and high-risk identity vulnerabilities. 
  • Improved access governance and privileged access controls. 
  • Enhanced security posture across Microsoft Entra ID, Active Directory and hybrid identity environments. 
  • Migration away from SMS-based MFA towards stronger authentication methods, including Microsoft Authenticator App. 
  • Automated controls for disabling accounts that have not completed MFA registration within agreed timescales. 
  • Sustainable identity management processes and operational controls. 
  • Improved compliance with cyber security and audit requirements. 


 

Apply
Upload Your CV
Please upload a PDF or Doc file. Max 3mb in size.
Your Details
Job Managed With