×
Register Here to Apply for Jobs or Post Jobs. X

Senior Microsoft Security Entra Engineer- Remote (Anywhere in the U.S

Remote / Online - Candidates ideally in
Philadelphia, Philadelphia County, Pennsylvania, 19117, USA
Listing for: GuidePoint Security, LLC
Remote/Work from Home position
Listed on 2026-08-16
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 140000 - 190000 USD Yearly USD 140000.00 190000.00 YEAR
Job Description & How to Apply Below
Position: Senior Microsoft Security Entra Engineer- Remote (Anywhere in the U.S.)

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

General Description

GuidePoint Security is seeking a Senior Entra Engineer to join our Microsoft Cloud Security Team. This role is a deep identity specialization, you'll bring strong, hands‑on Microsoft Entra  across our client engagements, ranging from small businesses to large enterprises. You'll design, implement, and troubleshoot complex Entra environments, including how Entra integrates with other identity providers and with on‑premises Active Directory in hybrid scenarios.

You'll partner with principal consultants, owning the identity workstream on an engagement, across varied industries and environments.

You'll own your technical delivery independently (80% utilization target), managing your time and communication within assigned engagements, and contribute to internal practice and knowledge‑sharing efforts between projects.

Roles and Responsibilities
  • Entra : Design and implement end-to-end Entra , including tenant architecture, dynamic groups, administrative units, and identity lifecycle management at scale.
  • Access Control & Governance: Design and implement Conditional Access (including advanced scenarios like Global Secure Access, token protection, and authentication strengths), MFA/passwordless, PIM, RBAC, access reviews, and entitlement management.
  • Hybrid Identity: Own hybrid identity design and troubleshooting, including Entra Connect / Cloud Sync, Entra Connect Health, password Hash Sync vs. pass‑through auth vs. federation (ADFS), and Entra Domain Services.
  • Identity Federation & Integration: Design and support identity federation and integration between Entra  other identity providers (Okta, Ping Identity, ADFS, third‑party SAML/OIDC IdPs), including migration scenarios moving customers onto Entra.
  • Application Integration: Integrate applications via SSO (SAML/OIDC), enterprise app registrations, SCIM provisioning, and application proxy/Global Secure Access for on‑prem app publishing. Advanced understanding of SAML and OIDC tokens, custom claims, and troubleshooting SAML and OIDC‑based authentication.
  • External Identities: Design and implement Entra External  (B2B/B2C) for partner and customer‑facing identity scenarios.
  • Workload Identities: Design and implement identity solutions for Workload Identities such as Managed Identities and Workload Identity Federation.
  • Risk & Investigation: Investigate and remediate identity risks using Entra , sign‑in and audit logs, and Entra recommendations; drive hybrid identity hygiene (stale object cleanup, privileged account reduction, tiered admin models).
  • Adjacent Microsoft Security: Maintain deep knowledge of how Entra  with Azure, Microsoft Purview, Intune, and Defender XDR, and support those work streams as engagements require.
  • Other duties as assigned.
  • Adhere to GuidePoint Security Core Values.
Required

Education and Experience
  • Bachelor's Degree and 3-5+ years of hands‑on, production experience specifically in Microsoft Entra , in addition to broader IT administration, identity management, or security operations experience.
  • Deep working knowledge of Conditional Access, MFA/passwordless, PIM, RBAC, access reviews, and entitlement management.
  • Strong hands‑on experience with hybrid identity:
    Entra Connect/Cloud Sync, on‑premises Active Directory, and the tradeoffs between password hash sync, pass‑through authentication, and federation.
  • Knowledge of core authentication and provisioning protocols: SAML, OAuth 2.0/OIDC, Kerberos, LDAP, and SCIM.
  • Experience integrating or migrating identity with other IdPs (Okta, Ping, ADFS, or similar) alongside or into Entra .
  • Comfortable troubleshooting complex, real‑world identity issues independently, including sign‑in failures, sync errors, and token/claims issues.
  • Basic to…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary