Entra Engineer
Listed on 2026-01-01
-
IT/Tech
Cybersecurity, IT Support
The Role
Moderna is growing our Identity & Access Management (IAM) capabilities, and we’re looking for an experienced Entra to help build, secure, and support the future of authentication s role will focus on driving scalable identity solutions using Microsoft Entra , strengthening our MFA and access control strategy, and supporting our enterprise‑wide migration from Okta to Entra .
If you enjoy solving complex identity challenges, improving user experience, and building secure platforms that scale globally— this is the role for you.
Here’s What You’ll DoManage and support Entra Moderna’s primary identity platform, including SSO, MFA, Conditional Access, and directory integrations.
Configure and maintain application integrations, ensuring secure and seamless access for internal teams and external partners.
Work with application developers to implement secure SSO integrations and support modern OAuth/OIDC authentication flows.
Work directly with Entra Registrations and Enterprise Applications, including API permissions, app onboarding, and configuration updates.
Support external access and vendor collaboration by setting up secure B2B integrations, external identities, and sharing policies.
Play a key role in Moderna’s migration from Okta to Entra , including application assessment, testing, and troubleshooting.
Support identity lifecycle processes, including provisioning, deprovisioning, group‑based access, and SCIM integrations.
Troubleshoot authentication and access issues across Entra , Okta, and connected applications, partnering closely with vendors and application teams.
Manage incoming requests and incidents through Service Now, ensuring clear communication and timely resolution.
Maintain documentation, runbooks, and best practices to ensure smooth operations and audit readiness.
Assist with building and maintaining Conditional Access policies, ensuring strong alignment to Zero Trust principles.
Support governance of admin roles using Privileged Identity Management (PIM) and enforce least‑privilege access.
Partner with cybersecurity, directory, and platform engineering teams to enhance identity governance, automation, and overall IAM maturity.
Implement and strengthen phishing‑resistant authentication and Conditional Access policies.
Audit identity configurations, remediate security gaps, and reduce excessive permissions to maintain a least‑privilege environment.
Minimum Qualifications )
Bachelor’s degree in Computer Science , Information Security, or a related technical field, or equivalent hands‑on experience.
4–6 years of experience in IT, cybersecurity, or IAM, including direct experience supporting Entra / Azure AD.
Hands‑on experience configuring and supporting SSO, MFA, Conditional Access, SCIM provisioning, and group‑based access.
Strong troubleshooting and analytical skills with high attention to detail, especially when diagnosing authentication or access issues.
Experience documenting processes, maintaining operational consistency, and contributing to security‑focused workflows.
Experience managing or supporting IAM‑related tickets or identity lifecycle operations.
Experience managing custom claims, attributes, or scopes in an identity platform, and testing integrated application access flows.
Ability to communicate clearly, manage priorities, and collaborate effectively in a fast‑paced environment.
Ability to work collaboratively in a team environment and take direction from senior technical leads.
What You’ll Bring to the Table (Preferred Qualifications )
Experience with Okta Workforce Identity Cloud, including SSO, MFA, Lifecycle Management, or API‑based integrations—particularly valuable as Moderna migrates to Entra .
Experience with Okta Advanced Lifecycle Management, Okta Workflows, or expression‑based mapping logic.
Understanding of Zero Trust, least privilege, access governance, and modern authentication best practices.
Knowledge of cloud environments (AWS, Azure, GCP) and how identity integrates with cloud‑based applications and workloads.
Relevant certifications such as Microsoft SC‑300 or Okta Certified Professional/Administrator are strongly preferred.
Expe…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).