- Location
- Chandler, Arizona (McKemy), United States of America
- Workplace
- Hybrid
- Type
- Full-time
- Department
- Engineering
- Seniority
- Director
- Experience
- 5+ years
- Education
- Master
- Visa
- Not sponsored
- Source
- Workday
Description
Who We Are:
At Avnet, relationships matter. We are a global, FORTUNE ® 500 technology distributor and solutions company that delivers design, supply chain and logistics expertise to customers at every stage of a product’s lifecycle. Our employees have a front row seat to the latest innovations shaping the world we live in and the future we share. We’re driven to help our customers around the world succeed and we do so by earning the trust of some of the biggest names in technology.
Working at Avnet means being a part of a global team. We work collaboratively and with integrity, doing business the right way. For more than a century, we have partnered together to help our customers, suppliers and teammates realize the transformative possibilities of technology. Experience what’s next at Avnet!
Applicants for this position must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa at this time
Description
We are seeking an experienced Microsoft Identity & Access Management professional with a minimum of 5 years' hands-on experience managing, supporting, and enhancing Microsoft Active Directory and Microsoft EntraID environments.
The successful candidate will possess a strong understanding of hybrid identity architectures, including how on-premises Active Directory integrates and synchronizes with Microsoft EntraID. They will have proven experience implementing secure authentication solutions, Conditional Access policies, SAML-based application integrations, and modern identity management best practices.
This role is critical in ensuring the security, reliability, and efficiency of our identity infrastructure and access management services.
Key Responsibilities
Active Directory Administration
- Manage and support Microsoft Active Directory environments.
- Administer users, groups, organizational units, and Group Policy Objects (GPOs).
- Troubleshoot authentication, replication, DNS, and Active Directory-related issues.
- Implement and maintain Active Directory security best practices.
- Support AD upgrades, migrations, and disaster recovery processes.
- Active Directory Sites and Services.
Microsoft EntraID Administration
- Administer Microsoft EntraID (formerly Azure Active Directory).
- Configure and manage users, groups, enterprise applications, and identities.
- Support identity lifecycle management processes.
- Configure and monitor authentication methods and identity protection capabilities.
- Implement and maintain EntraID security controls.
Hybrid Identity Management
- Manage and troubleshoot Active Directory synchronization with EntraID.
- Support Azure AD Connect / Entra Connect environments.
- Understand authentication mechanisms including:
- Password Hash Synchronization (PHS)
- Pass-through Authentication (PTA)
- Federation
- Single Sign-On (SSO)
Conditional Access & Authentication
- Design and implement Conditional Access policies.
- Configure Multi-Factor Authentication (MFA).
- Manage authentication methods and authentication strengths.
- Support passwordless authentication technologies including:
- Microsoft Authenticator
- FIDO2 Security Keys
- Windows Hello for Business
Application Integration
- Configure and support SAML-based application integrations.
- Manage Single Sign-On (SSO) solutions.
- Troubleshoot identity federation and authentication issues.
- Work with application owners and vendors to onboard enterprise applications.
Security & Compliance
- Review identity security posture and recommend improvements.
- Monitor and investigate authentication and access-related incidents.
- Support audit and compliance requirements.
- Implement least-privilege access principles and role-based access controls (RBAC).
Essential Skills & Experience
Required
- Minimum 5 years' experience administering Microsoft Active Directory.
- Minimum 5 years' experience working with Microsoft Entra ID (Azure AD).
- Strong understanding of hybrid identity architecture.
- Proven experience with Azure AD Connect / Entra Connect.
- Strong understanding of how Active Directory and Entra ID communicate and synchronise.
- Experience implementing and managing Conditional Access policies.
- Knowledge of authentication methods and identity protection controls.
- Experience implementing and supporting Multi-Factor Authentication.
- Strong understanding of Single Sign-On technologies.
- Hands-on experience integrating and troubleshooting SAML applications.
- Experience with DNS, LDAP, Kerberos, and Group Policy.
- Strong troubleshooting and problem-solving skills.
Desirable
- Experience with Microsoft Intune.
- Experience with Privileged Identity Management (PIM).
- Experience with Identity Governance.
- PowerShell scripting and automation experience.
- Experience with Microsoft Defender products.
- Knowledge of OAuth 2.0 and OpenID Connect.
- Experience in regulated or enterprise environments.
Preferred Certifications
One or more of the following certifications would be advantageous:
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Microsoft Certified: Azure Administrator Associate (AZ-104)
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900)
- Microsoft Certified: Azure Fundamentals (AZ-900)
Personal Attributes
- Strong communication skills.
- Ability to explain technical concepts to non-technical stakeholders.
- Excellent analytical and troubleshooting abilities.
- Strong attention to detail.
- Ability to work independently and collaboratively.
- Security-focused mindset.
What We Offer:
Our employees work hard to live our values and help us grow. Our total rewards strategy supports Avnet’s ability to attract, engage, develop, and reward our employees, while promoting a diverse and inclusive environment. We offer competitive compensation and benefit programs — from time away and flexible working arrangements to programs supporting employee well-being and opportunities to give back to your community.
Generous Paid Time Off
401K and Pension Plan
Paid Holidays
Family Support (Paid Leave, Surrogacy, Adoption)
Medical, Dental, Vision, and Life Insurance
Long-term and Short-term Disability Insurance
Health Savings Account / Flexible Spending Account
Education Assistance
Employee Development Resources
Employee Wellness, Leadership Development and Mentorship Programs
Benefits listed above may vary depending on the nature of your employment with Avnet.
This position will have access to ITAR product and therefore be authorized to access product. This position requires the employee to be a U.S. Citizen or National, or a lawful permanent resident as defined by 8 U.S.C. 1101(a)(20), or a protected individual as defined by 8 U.S.C. 1324b(a)(3).
The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills.
Avnet is an Equal Opportunity Employer committed to providing equal opportunities to all employees and applicants for employment without regard to race, color, religion, ancestry, national origin, sex (including pregnancy), age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information or any other characteristic protected by law. This policy of non-discrimination also applies to religious dress and grooming practices. Avnet will accommodate employee religious dress standards and grooming practices that do not result in undue hardship for the Company. If you are interested in applying for employment with Avnet and need special assistance or an accommodation to apply for a posted position contact our Human Resources Service Center at (888) 994-7669.