Jobs and Careers
AC

Senior Identity & Access Management (IAM) Engineer, Workforce Identity

Acrisure
United Statesfull_timeVerifiedPosted 6 Aug 2026
💰 $19,000/yr

About the role

About Acrisure

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services – and more. 

In the last twelve years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.

Job Summary:

You will be a hands-on IAM engineer responsible for designing, automating, and operating Acrisure's Workforce Identity Platform across Microsoft Entra ID, Active Directory, cloud platforms, and enterprise applications. You will build paved-road patterns for identity federation, authentication, least privilege, privileged access management, and lifecycle governance while ensuring authentication and authorization boundaries remain secure, measurable, and frictionless. 

As a member of the Workforce Identity team, you will develop deep expertise across both Microsoft Entra ID and Active Directory technologies. Success in this role means turning identity into an enabler by making secure access seamless for users, applications, and services while maintaining the highest standards of governance, security, and compliance.

Responsibilities:

Workforce Identity Platform Engineering 

Design and Operate Workforce Identity Services 

  • Design, implement, and maintain Microsoft Entra ID and Active Directory services supporting the enterprise workforce. 
  • Develop and maintain workforce identity architecture standards, authentication policies, and tenant governance controls. 
  • Manage and secure Entra ID tenant architecture and identity infrastructure. 
  • Implement and support Conditional Access, MFA, phishing-resistant authentication, passwordless authentication, and Identity Protection capabilities. 
  • Establish and maintain tenant security posture standards, administrative tiering strategies, and privileged identity controls. 
  • Design and maintain federation and enterprise SSO integrations using SAML, OIDC, OAuth2, and related identity protocols. 
  • Support Entra B2B collaboration and external workforce access patterns. 
  • Define and maintain enterprise application onboarding standards and identity integration requirements. 

Workforce Identity Operations and Administration 

  • Implement and support SAML/OIDC application integrations across SaaS, cloud, and enterprise platforms. 
  • Manage group administration, dynamic group lifecycle management, and directory governance processes. 
  • Administer Entra Connect, cloud synchronization, and hybrid identity platforms. 
  • Troubleshoot authentication, federation, Conditional Access, synchronization, and access-related issues. 
  • Govern application registrations, service principals, enterprise applications, and API permissions. 
  • Manage guest-user onboarding, lifecycle management, access reviews, and external collaboration controls. 
  • Maintain directory hygiene, tenant monitoring, operational support procedures, and identity health reporting. 
  • Develop automation solutions using PowerShell, Microsoft Graph API, Terraform, and related identity engineering tools. 

Cross-Training and Operational Resiliency 

  • Develop broad expertise across both Entra ID and Active Directory platforms. 
  • Participate in structured cross-training programs to ensure workforce identity services do not depend on a single individual. 
  • Maintain shared runbooks, architecture documentation, standards, and operational procedures. 
  • Participate in on-call support and escalation activities for workforce identity services as required. 

Architect and Automate Identity Foundations 

Work with Identity Architects and Identity Automation Engineering to: 

  • Design and maintain secure-by-default IAM architectures across Entra ID, AWS IAM, and hybrid enterprise systems. 
  • Develop paved-road templates for access control patterns such as federated access, role assumption, service accounts, and workload identities. 
  • Automate provisioning and deprovisioning pipelines using identity APIs, SCIM, and workflow orchestration platforms. 
  • Implement polic

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Acrisure

View company profile →