24 Sep
|
Rg Techsol
|
Pune
Role & responsibilities
People and Service Leadership
- Lead a global IAM team of five employees located in India and Israel, including work planning, prioritization, professional development, performance management, and workload balancing.
- Own the IAM service roadmap, operating model, standards, procedures, documentation, and continuous improvement plan.
- Act as the primary escalation point for critical identity incidents. The team provides 24x7 on-call coverage, while the manager is involved in critical escalations as required.
- Coordinate closely with Cybersecurity, Network, Cloud Operations, Modern Workspace, Applications, Service Desk, Local IT, project managers, and business stakeholders.
Technical Leadership and Architecture
- Serve as the technical authority for a complex hybrid identity workplace supporting approximately 10,000 users.
- Lead architecture and technical decisions across on-premises Active Directory, Microsoft Entra ID, identity synchronization, authentication, authorization, and access services.
- Provide hands-on technical leadership for complex incidents, root-cause analysis, major changes, migrations, upgrades, and security remediation.
- Own technical standards for identity lifecycle, privileged and sensitive accounts, administrative accounts, service accounts, user and group management, devices, servers, and other directory objects.
Active Directory and Hybrid Identity
- Govern a complex on-premises Active Directory environment consisting of a central enterprise forest and additional forests supporting SAP and security-separated systems.
- Oversee AD DS, domain controllers, sites and services, DNS, DHCP, Group Policy, trusts, replication, Kerberos, NTLM, LDAP/LDAPS, PKI,
NPS/RADIUS, and related Windows Server services.
- Lead forest and domain migrations, consolidation activities, lifecycle upgrades, functional-level planning, capacity management, monitoring, and proactive maintenance.
- Ensure reliable Microsoft Entra Connect and Cloud Sync operations and assess dependencies between on-premises directories, Microsoft Entra ID, Microsoft 365, and enterprise applications.
Microsoft Entra ID and Access Services
- Lead the design, governance, and operation of Microsoft Entra ID capabilities, including Conditional Access, MFA, PIM, SSO, Enterprise Applications, Application Proxy, Identity Governance, Access Reviews, and Lifecycle Workflows.
- Define secure access patterns based on Zero Trust and least privilege principles in coordination with the Cybersecurity team.
- Govern privileged identities and delegated administration within the IAM platforms. CyberArk remains owned by the Cybersecurity team and is managed through close coordination.
Reliability, Security, and Continuous Improvement
- Ensure high availability, backup readiness, disaster recovery, forest recovery, monitoring, patching, compliance, and operational resilience of identity services.
- Lead proactive health reviews, security hardening, audit remediation, vulnerability reduction, and retirement of legacy protocols and configurations.
- Drive PowerShell-based automation and code-driven processes, with appropriate version control, review, testing, and operational support.
- Ensure adherence to Incident, Problem, and Change Management practices, including RCA, preventive actions, risk assessment, and controlled implementation.
Preferred candidate profile
📌 Identity And Access Manager (Pune)
🏢 Rg Techsol
📍 Pune