
Sr. IAM Engineer - Active Directory
- Cork
- €70,500-117,500 per year
- Permanent
- Full-time
- Provide deep subject matter expertise and support the analysis, design, and implementation for hybrid on-prem and cloud Active Directory environments and Azure Active Directory/Entra ID tenants.
- Engage and collaborate with business and technical partners to integrate systems and applications with centralized authentication such as Active Directory or Azure Active Directory/Entra ID.
- Provide deep subject matter knowledge and expertise on Active Directory, Azure Active Directory/Entra ID, and Okta Active Directory synchronization.
- Support new product comparison, vetting, and selection process to ensure technology is relevant and meets business requirements.
- Drive Active Directory and Entra ID disaster recovery drills, process improvements, and documentation efforts.
- Continually enhance authentication platforms, ensuring systems are protected from new and evolving Cyber threats and systems are operationally stable.
- Collaborate closely with global cross-functional teams to ensure the stability, scalability, and security of the Active Directory and Azure Active Directory/Entra ID environments and Okta. Participate in discussions on all aspects of identity and access management.
- Respond to and resolve complex, high-severity incidents.
- Lead regular reviews of deployed infrastructure, develop detailed architecture, and create and update new technical documentation and Standard Operating Procedures (SOP).
- Analyze the current authentication services platforms to identify both technical and operational opportunities for enhancements and develop continuous improvement action plans.
- Lead regular assessment of systems and process hygiene and identify and implement automation.
- Actively research and implement new innovations in IT security as well as IAM technologies and services, striving to ensure McKesson continues to deliver best practices and standards.
- Provide on-call support as needed for operational continuity of Identity platforms.
- Proven experience as an Active Directory/Entra ID Engineer or similar role with a minimum of 7 years of experience.
- Advanced understanding of Active Directory, Azure Active Directory/Entra ID, Lightweight Directory Access Protocol, Active Directory Federation Services, and other centralized identity stores.
- Advanced understanding of Microsoft Azure and familiarity with IAM permissions on Management Groups, subscriptions, and resources.
- Advanced understanding of Active Directory and Entra ID backup and restore processes and experience of performing Disaster Recovery exercises.
- Advanced understanding of Windows Server operating systems and Active Directory/Azure Active Directory/Entra ID services.
- Advanced understanding of PowerShell scripting with proven experience implementing automation, including experience utilizing APIs such as Microsoft Graph.
- Advanced knowledge with directory synchronization tools, such as Azure Active Directory/Entra ID Connect and Okta Active Directory integration.
- Proven ability to effectively prioritize and execute tasks with competing priorities; strong influencing skills to work with various service owners.
- Demonstrated experience effectively leading and managing collaborative, service management solutions across disparate functional teams.
- Provide advanced knowledge of Azure Active Directory/Entra ID capabilities such as Conditional Access Policies, Privileged Identity Manager, and Application Registrations.
- Advanced understanding of Active Directory attributes, LDAP Queries, PowerShell Scripting, Active Directory Federation Services (ADFS), Group Policy Object (GPO) analysis, configuration, and item-level targeting, active directory replication, Active Directory backup and restore, as well as certificate installation.
- Advanced understanding of implementing security on Active Directory and Entra ID and hardening those platforms.
- Advanced understanding of Single-Sign On and authentication protocols such as SAML & OIDC.
- Advanced knowledge of security best practices for Active Directory and Azure Active Directory/Entra ID.
- Excellent problem-solving skills and ability to work well under pressure.
- Degree or equivalent and typically requires 7+ years of relevant experience. Less years required if has relevant Master’s or Doctorate qualifications.