Identity and Access Engineer
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Microsoft infrastructure is easy until it has to be secure, federated and audited. Then it needs someone like you.
You would provide the senior Microsoft engineering for a multinational defence organisation in Mons, Belgium — designing, building and running the enterprise platform and the identity services on top of it, through the whole of their life.
What you would be doing
- Designing, configuring, operating and troubleshooting complex Microsoft enterprise infrastructure in secure environments
- Carrying Windows Server platforms and their services end to end: architecture, deployment, hardening, patching, upgrade, migration, monitoring and decommissioning
- Designing and administering Active Directory — domains, forests, trusts, group policy, authentication, DNS integration and the identity infrastructure around it
- Being the expert on identity and access: authentication, authorisation and federation, including AD FS, Entra ID and open-source stacks such as Keycloak
- Building and maintaining public key infrastructure, certificates and everything that depends on them, including lifecycle and trust
- Running on-premise SharePoint environments — site architecture, permissions, metadata, taxonomy, search, content management and integration
- Designing secure integrations with the rest of the estate, including the Atlassian stack, Power BI, Splunk and SQL Server
- Supporting the cloud reference environment and the pipelines behind it: source control, automated deployment, continuous integration and delivery, configuration management
- Automating with PowerShell and infrastructure as code so the work is repeatable
- Keeping it all inside the security requirements and hardening standards, remediating what reviews turn up
- Advanced troubleshooting and root-cause analysis, and the incident, problem, change, configuration and release processes around it
- Advising on where the platform should go next — technology, resilience, availability, scale
What you would bring
- At least six years designing and running Microsoft enterprise infrastructure at medium to large scale
- Strong hands-on Windows Server and Active Directory, with group policy and DNS, plus federation and single sign-on through AD FS and Entra ID
- Real depth in PKI, certificates, TLS and certificate lifecycle
- SharePoint from installation through security, integration and lifecycle, plus Microsoft 365 and hybrid environments
- Practical Azure and hybrid cloud, with pipelines and infrastructure automation
- Strong PowerShell; Python, SQL and infrastructure-as-code such as Terraform or Bicep are a plus
- SQL Server and the enterprise plumbing around it — networking, firewalls, proxies, load balancing, high availability, backup and recovery
- Troubleshooting complex failures, hardening, patching, upgrades, migrations and vulnerability remediation
- Working inside IT service management, and writing documentation someone else can follow
- A technical degree with a substantial IT component, plus four years in exactly this kind of work — or, exceptionally, ten years of progressive expertise in it
- Professional English
Nice to have
- Microsoft certification in Azure, identity, Windows Server, Microsoft 365 or SharePoint
- Security, service management, DevOps or cloud architecture certifications
- Work for military, governmental or other security-sensitive organisations, and on mission-critical services
- Integrations with Jira, Confluence, Bitbucket, Splunk or Power BI
- Endpoint configuration manager, Exchange or web application proxy
Why this one is worth a look
Identity and certificates are where the real engineering is, and here they carry a security weight most enterprises never see.