





Strong employer brand and metro location but niche senior skillset reduces applicant density.
Highly specialized enterprise IAM and PKI expertise limits cross-industry transferability.
Explicit 10+ years, lead/architect mandate, and specialized PKI/Keyfactor requirements make filters strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Design, implement, operate, and secure enterprise identity and certificate services across on-premises and cloud platforms (Active Directory, Microsoft Entra ID, PKI).
Own engineering activities including AD Domain Services, hybrid identity integration, Microsoft Entra ID administration, and PKI certificate lifecycle management.
Lead risk identification, automation of identity and PKI operations, security compliance, incident resolution, and collaborate with cross-functional teams to deliver resilient identity infrastructure.
10+ years in Enterprise IAM/Infrastructure Engineering with at least 5+ years in a Lead or Solution Architect role.
Deep hands-on expertise in Active Directory (multi-domain/forest, Group Policy, Kerberos), Microsoft Entra ID/Azure AD (Conditional Access, PIM, synchronization), and PKI (AD CS, certificate lifecycle, CA hierarchy).
Expert scripting and automation skills using PowerShell, Python or Bash, plus API integration experience.
Work Experience Required: 10+ years in Enterprise IAM/Infrastructure Engineering, 5+ years lead or architect capacity.
Experienced in large-scale PKI transitions and AD/Entra ID modernization projects within complex, global environments.
Skilled at communicating cryptographic and identity concepts to executives, security, and application teams.
Strong strategic problem solver with background in hybrid identity and security compliance across enterprise infrastructure.