To Apply for this Job Click Here
Always Connecting, Always Evolving.
TECHEAD is seeking qualified applicants for the following Contract position – IAM Platform Administrator / Richmond VA – (JOB-21881). If you are looking for a new opportunity and this position looks to be a fit, please apply to see the TECHEAD difference that has made us successful for 30+ years!
You can find more about our team and values by checking us out at TECHEAD.com or on Glassdoor
Job Description:
IAM Platform Administrator
Contract: 6 Months with ongoing 6 Month renewals
Hybrid: 3-4 days onsite
Local Candidates Only
Richmond, VA
No C2C Candidate!
SUMMARY:
Seeking a seasoned and proactive IAM Platform Administrator to lead the design, integration, and operational support of enterprise-wide Identity and Access Management (IAM) ecosystem. This role is critical in shaping and maintaining a secure, scalable identity architecture across hybrid environments—spanning on-premises Active Directory, Microsoft Entra ID, and federated cloud services (Azure, AWS, M365, and more). Play a key role in implementing modern identity solutions, enabling seamless authentication, secure access, and governance aligned with zero trust principles
KEY RESPONSIBILITIES:
In addition to other occasional tasks, the candidate’s key responsibilities will be:
- Design and maintain identity architecture across on-premises AD, Microsoft Entra ID, and federated cloud platforms (Azure, AWS, M365).
- Implement and manage hybrid identity solutions, including seamless SSO, password less authentication, and conditional access policies.
- Automate identity lifecycle processes (provisioning, deprovisioning, role transitions) using PowerShell, Microsoft Graph, and Entra ID Governance.
- Integrate third-party applications with Entra ID using SAML, OAuth2, and OpenID Connect protocols.
- Monitor and troubleshoot authentication flows, device join states, token issuance (PRT), and MFA challenges.
- Administer and support IAM components including SSO, MFA, conditional access, and selfservice password reset.
- Manage user lifecycle operations (Joiner-Mover-Leaver) across AD, Entra ID, and Okta, ensuring accurate role-based access.
- Provide production-level support for Active Directory infrastructure, including domain controllers, replication, trust relationships, and GPOs.
- Design and maintain automation scripts (PowerShell, Python, Bash) for bulk provisioning, reporting, and account cleanup.
- Collaborate with security and compliance teams to enforce least privilege, RBAC, and Just-InTime access models.
- Monitor IAM systems for performance issues, outages, and anomalies, and respond swiftly to incidents.
- Collaborate with IT and helpdesk teams to resolve authentication and access-related issues.
- Document and maintain SOPs, escalation ladders, and architectural diagrams for identity services.
- Stay current on evolving identity threats, zero trust architecture, and Microsoft roadmap updates.
- Develop and deliver user training and support for IAM tools and workflows
MINIMUM QUALIFICATIONS:
- 10+ years of hands-on experience in IAM, IT security, or infrastructure administration.
- Deep expertise in Microsoft Entra ID (Azure AD) and Okta, including hybrid identity, federation, and synchronization.
- Strong proficiency in Active Directory administration, including GPOs, replication, and domain controller management.
- Proven experience managing access via roles, groups, and entitlements across web, cloud, and service-based environments.
- Skilled in lifecycle operations: provisioning, updates, suspension, and de-provisioning of identities.
- Experience with IAM automation and scripting using PowerShell, Microsoft Graph, or similar tools.
- Strong troubleshooting skills across IAM components and authentication protocols.
- Demonstrated ability to detect and respond to IAM-related security incidents.
PREFERRED QUALIFICATION:
- Experience managing hybrid identity environments integrating on-prem AD with clowith cloud IAM platforms.
- Certifications such as Security+, CISSP, Okta Certified Administrator, or Microsoft Entra Certified.
- Familiarity with federated identity protocols (SAML, OAuth2, OpenID Connect).
- Working knowledge of identity synchronization tools (e.g., Microsoft Entra Connect, Okta AD Agent).
- Hands-on experience with IAM migration projects from on-prem to cloud.
- Exposure to Identity Governance & Administration (IGA) and Privileged Access Management (PAM) solutions.
- Experience generating audit and compliance reports aligned with SOX, HIPAA, ISO 27001.
- Strong troubleshooting across multi-platform authentication (.NET, Java, cloud-native apps).
- Understanding of cloud and on-prem security best practices (Azure, AWS, GCP).
TECHEAD’s mission is to make our on-site associates successful by placing them in the right environment so they can grow and prosper. How we treat and respond to our clients and employees is a reflection of who we are and makes us stand out from the rest. Keeping our business focused on building and maintaining relationships with our employees and clients is the key to our success. We won’t strive for anything less.
TECHEAD provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
For more information on TECHEAD please visit www.techead.com.
No second parties will be accepted.
