This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a specialist Identity Engineer to lead the design, implementation, and optimisation of Identity and Access Management (IAM) across a large scale government cloud environment. This role is focused on fortifying the "identity perimeter" using Microsoft Entra (Azure AD) and driving critical least privilege uplift initiatives.
Job Responsibility:
Entra ID Management: Design and maintain advanced IAM solutions using Microsoft Entra (Azure AD) for users, applications, and services
RBAC Architecture: Design and refine Role-Based Access Control models that align with both technical requirements and granular business logic
Least-Privilege Uplift: Lead proactive initiatives to identify excessive permissions, performing deep-dive clean-ups of high-risk accounts and entitlements
IAM Pattern Development: Author and document reusable IAM patterns to standardise how identities are onboarded and managed across cloud and DevOps workflows
Privileged Access Remediation: Execute the remediation of privileged access, ensuring that administrative roles are tightly controlled and audited
Collaboration & Governance: Partner with security and platform teams to embed identity controls into CI/CD pipelines and support continuous identity governance and access reviews
Technical Advisory: Act as a Subject Matter Expert (SME) on identity security standards, providing clear documentation and strategic recommendations to stakeholders
Requirements:
Active AGSVA Baseline Clearance
Strong experience with Azure AD, including Conditional Access, Identity Protection, and App Registrations
Proven ability to design and implement enterprise-grade RBAC and ABAC models in cloud-native environments
Demonstrated success in assessing and stripping back over permissioned identities and privileged roles
Deep understanding of least-privilege principles, OAuth2, SAML, and OIDC
Exceptional stakeholder engagement skills
Microsoft Certifications in Identity and Access Administrator (SC-300) or Azure Security (AZ-500) highly regarded
Experience integrating Entra ID with multi-cloud platforms (AWS/Azure), SaaS apps, and legacy enterprise systems
Previous experience working within the Australian Government or a similarly regulated sector
Nice to have:
NV1 clearance (or eligibility to obtain one)
Microsoft Certifications in Identity and Access Administrator (SC-300) or Azure Security (AZ-500)
Experience integrating Entra ID with multi-cloud platforms (AWS/Azure), SaaS apps, and legacy enterprise systems
Previous experience working within the Australian Government or a similarly regulated sector