Cybersecurity Senior Engineer- Technical Lead – Identity Federation, Azure & Access Policy
TruistAbout the role
The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
RegularLanguage Fluency: English (Required)
Work Shift:
1st shift (United States of America)Please review the following job description:
The Technical Lead – Identity Federation, Azure & Access Policy is a senior, hands on identity engineer responsible for owning outcomes and leading execution of enterprise IAM capabilities across federation, Azure / Entra ID Conditional Access, and access policy enforcement. This role combines deep technical expertise, engineering leadership, data driven decision making, and modern automation—including effective use of Microsoft Copilot—to reduce IAM risk and improve control effectiveness at scale.This role serves as the technical authority and execution lead for complex IAM initiatives, driving results through influence, expertise, and accountability.
Essential Duties and Responsibilities
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Technical Leadership & Execution Ownership
Own end‑to‑end technical outcomes for identity federation and access policy initiatives.
Serve as technical lead of execution, guiding design, build, testing, deployment, and operational readiness.
Design, implement, and operate identity federation solutions using ADFS, Azure / Entra ID, and modern authentication protocols (SAML, OAuth2, OIDC).
Architect and maintain Azure / Entra ID Conditional Access policies aligned to Zero Trust principles and enterprise risk tolerance.
Engineering Design & Governance
Produce and lead review of engineering designs, consume architecture patterns, and create implementation guidelines.
Ensure solutions are secure, resilient, auditable, and aligned to enterprise IAM strategy.
Act as a gatekeeper for technical quality while partnering effectively with architecture, security, and infrastructure teams.
IAM Risk & Control Alignment
Design and operate IAM controls aligned to CSR 2.1 and NIST frameworks and industry control models.
Understand identity‑centric risk scenarios and ensure access controls appropriately mitigate those risks.
Support audit, risk, and regulatory inquiries with clear technical explanations and evidence.
Measurement & Data Analysis
Measure and continuously assess policy effectiveness, not just policy presence.
Analyze identity, authentication, and access data to:
Identify control gaps, misconfigurations, and trends
Validate risk reduction
Drive simplification and improvement
Translate technical data into actionable insights for security leadership and stakeholders.
Automation & AI‑Assisted Engineering
Demonstrate a strong history of automating repetitive IAM tasks using scripting and tooling.
Leverage Microsoft Copilot through sophisticated prompting and Agent Supervision to:
Accelerate analysis, scripting, and troubleshooting
Improve consistency and speed of IAM operations
Apply appropriate governance and judgment when using AI‑assisted outputs.
Application Partnership
Work closely with application managers and application owners to:
Implement secure and scalable authentication models based on architecture patterns
Integrate applications with federation and Conditional Access services
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s