Role description
Associate III - Cloud Infrastructure Services
Who we are:
At UST, we help the world’s best organizations grow and succeed through transformation. Bringing together the right talent, tools, and ideas, we work with our client to co-create lasting change. Together, with over 30,000 employees in 25 countries, we build for boundless impact—touching billions of lives in the process. Visit us at .
You are: The Cloud Identity & Directory Services Engineer is responsible for designing, implementing, and managing identity, authentication, and authorization services across hybrid environments, including Active Directory and major cloud platforms such as Azure, AWS, and GCP. This role focuses on securing both human and machine identities, enabling Zero Trust principles, and ensuring seamless access to enterprise applications and cloud resources. AD and cloud IAM Engineer
The Prospect:
- Design, implement, and manage enterprise Identity & Access Management (IAM) solutions across Active Directory, Microsoft Entra ID, Azure, AWS, and GCP, ensuring secure and scalable identity services.
- Serve as the Subject Matter Expert (SME) for Active Directory and Microsoft Entra ID, managing identity lifecycle, authentication, authorization, federation, and hybrid identity integrations.
- Administer and secure Active Directory environments, including Group Policy (GPO), DNS, DHCP, Organizational Units (OUs), AD Sites & Services, domain controllers, replication, and directory security hardening.
- Implement modern identity security controls including Multi-Factor Authentication (MFA), Conditional Access, Identity Protection, Privileged Identity Management (PIM), Access Reviews, Entitlement Management, and Single Sign-On (SSO).
- Design and support secure authentication and federation architectures using SAML, OAuth 2.0, OpenID Connect (OIDC), Kerberos, LDAP, and FIDO2 standards.
- Manage cloud identity and access controls across AWS and GCP,
including IAM roles, policies, service accounts, federated access, workload identities, cross-account access, and least-privilege enforcement
What are we Looking for:
- Lead governance of enterprise applications and privileged access, including Azure Enterprise Applications, App Registrations, Service Principals, Secrets Management, and privileged account controls.
- Drive IAM governance, compliance, and risk management through access certifications, role-based access control (RBAC), segregation of duties (SoD), audit readiness, and regulatory compliance initiatives.
- Manage identity security technologies and supporting infrastructure, including PKI, certificate lifecycle management, Azure Key Vault, AWS Secrets Manager, HashiCorp Vault, and machine/workload identities.
- Partner with Cloud, Security, Infrastructure, and Compliance teams to advance Zero Trust adoption, strengthen identity security posture, remediate IAM-related findings, and support secure cloud transformation initiatives.
- Preferred Certifications One or more of the following certifications are preferred: Microsoft SC-300, AZ-500, SC-100, AWS Certified Security Specialty, Google Professional Cloud Security Engineer, CISSP, CCSP, or equivalent Identity & Access Management (IAM) certification.
What we believe:
We’re proud to embrace the same values that have shaped UST since the beginning. Since day one, we’ve been building enduring relationships and a culture of integrity. And today,
it's those same values that are inspiring us to encourage innovation from everyone to champion diversity and inclusion and to place people at the centre of everything we do.
Humility:
We will listen, learn, be empathetic and help selflessly in our interactions with everyone.
Humanity:
Through business, we will better the lives of those less fortunate than ourselves.
Integrity:
We honour our commitments and act with responsibility in all our relationships.
Equal Employment Opportunity Statement
UST is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation.
All employment decisions shall be made without regard to age, race, creed, colour, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
UST reserves the right to periodically redefine your roles and responsibilities based on the requirements of the organization and/or your performance.
- To support and promote the values of UST.
- Comply with all Company policies and procedures
Skills
Active Directory, Azure Key Vault, AWS, DHCP
About UST
UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients’ organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.
📌 IAM+ Active Directory Engineer (India)
🏢 UST
📍 India