Lead the design, implementation, configuration, and ongoing administration of Microsoft Entra ID (Azure AD) Privileged Identity Management (PIM).
Manage privileged access controls across Microsoft Entra ID, Azure subscriptions, management groups, resource groups, and Azure resources.
Define and maintain privileged access governance policies, standards, operational procedures, and security controls aligned with enterprise requirements.
Design and implement Just-In-Time (JIT) access, role eligibility, approval workflows, access reviews, Privileged Access Groups, and role activation policies.
Perform privileged access assessments, role reviews, recertifications, and remediation of excessive or inappropriate access.
Develop, maintain, and enhance automation solutions using Terraform, Git, CI/CD Pipelines, Ansible, PowerShell, and Python for identity and privileged access management.
Build reusable Infrastructure-as-Code (IaC) modules and deployment frameworks for Azure PIM, role assignments, Service Principals, Managed Identities, and related identity governance controls.
Design, customize, and support federation integrations and authentication workflows using automated CI/CD pipelines.
Manage and troubleshoot federation configurations, claims transformations, token issuance policies, and authentication-related issues.
Develop and maintain REST API-based integrations and automation workflows for identity lifecycle management.
Manage the complete lifecycle of Service Principals, Enterprise Applications, and Managed Identities, including provisioning, governance, credential management, and decommissioning.
Implement and manage secrets, certificates, credential rotation, expiration monitoring, and secure authentication practices for non-human identities.
Automate onboarding, access assignment, certification, and retirement processes for privileged and service identities.
Monitor privileged access activities and maintain reporting, dashboards, and audit evidence to support security, compliance, and operational requirements.
Support internal and external audits, security reviews, risk assessments, and compliance initiatives related to privileged access management.
Investigate and resolve identity, authentication, authorization, and privileged access issues across Azure environments.
Collaborate with IAM, Security, Cloud Engineering, DevOps, and application teams to implement secure and scalable access management solutions.
Drive continuous improvements in privileged access governance, identity security, automation, and operational efficiency.