Senior IAM Engineer - Entra ID
RELEX Solutions · Helsinki, Finland
Hybridisenior💰 5,950–7,250 EURTech · SoftwareJulkaistu 18.09.2026 klo 12.47
Taidot
microsoft entra idazure admicrosoft graph apiazure logic appsazure functionspowershellgraph sdkazure infrastructureidentity governancerbacssomfaconditional access policiespimaccess reviewssamloidcoauth2scimzero trustsoc2iso 27001
Työn kuvaus
About the Role RELEX is looking for a Senior IAM Engineer, specializing in Entra ID, to join our Identity & Access Management (IAM) and Security team. This role owns the design, implementation, and ongoing operation of our Microsoft Entra ID (Azure AD) environment, ensuring secure, scalable, and automated identity solutions across the organization. The ideal candidate combines deep Entra ID and IAM expertise with broader Azure infrastructure knowledge and a DevOps mindset, automating the monitoring, management, and governance of Entra ID resources through Microsoft Graph API, Azure Logic Apps, and Azure Functions. Technical Role Accountability Act as the technical owner and escalation point for the Entra ID environment: architecture decisions, configuration changes, and operational health. Accountable for the security, availability, and compliance posture of Entra ID and related Azure identity infrastructure, including sign-off on changes with security or governance impact. Drive continuous improvement of identity governance by automating monitoring, alerting, and reporting on Entra ID resources (users, groups, apps, roles, policies) rather than relying on manual reviews. Own the audit trail for identity changes: ensure automated logging, alerting, and remediation workflows are in place to catch drift, misconfigurations, or policy violations early. Partner with Security and Infrastructure leadership to define governance KPIs (e.g., access review completion, stale account cleanup, privileged role usage) and report on them. Key Responsibilities Design, configure, and maintain Microsoft Entra ID (Azure AD), including conditional access policies, identity governance, PIM, and access reviews. Own end-to-end identity and access management processes: user lifecycle management, role-based access control (RBAC), single sign-on (SSO), and multi-factor authentication (MFA). Automate the monitoring and management of Entra ID resources (users, groups, app registrations, roles, licenses, policies) for stronger governance, using Microsoft Graph API, Azure Logic Apps, and Azure Functions to detect drift, enforce policy, and trigger remediation. Develop and maintain automation for identity operations using Microsoft Graph API, Azure Logic Apps, Azure Functions, and PowerShell/Graph SDK. Build event-driven automation (e.g., Event Grid triggers, scheduled/Timer-triggered Functions, Automation Account runbooks) to react to identity events in near real time rather than relying on periodic manual checks. Apply security best practices and compliance standards (Zero Trust, least privilege, SOC2/ISO 27001) across the identity landscape. Integrate Entra ID with enterprise applications (SAML, OIDC, OAuth2, SCIM provisioning). Work across the broader Azure infrastructure stack (subscriptions, resource groups, networking, Key Vault, storage, monitoring/Log Analytics) to ensure identity controls are properly integrated with the underlying cloud environment. Build and maintain