- Company Name
- Caraffi Limited
- Job Title
- Infrastructure Engineer
- Job Description
-
Job Title
Infrastructure Engineer (Identity Modernisation)
Role Summary
Contract role focused on designing, planning, and executing migration of legacy Active Directory (AD) infrastructure to Microsoft Entra ID. Acts as subject‑matter expert for identity modernisation, providing architectural guidance, risk assessment, and mentoring.
Expectations
* Deliver the migration on time and within scope.
* Maintain high security and compliance standards.
* Provide clear documentation and train permanent staff.
Key Responsibilities
* Lead end‑to‑end migration of on‑premises AD workloads to Entra ID.
* Assess current AD environment (domain controllers, trusts, GPOs, authentication flows) and design migration roadmap.
* Collaborate with security architects to embed Zero Trust and conditional access during migration.
* Manage migration pilots, proofs‑of‑concept, and phased cutovers.
* Implement Entra ID hybrid join, password hash sync, federation (if required), and conditional access.
* Migrate groups, users, service accounts, and workloads.
* Configure and troubleshoot authentication methods (MFA, SSO, passwordless).
* Align DNS, DHCP, PKI, and related infrastructure with Entra ID model.
* Develop and maintain automation scripts (PowerShell, REST API).
* Train internal engineers on Entra ID administration and support.
Required Skills
* Advanced knowledge of Entra ID, Azure AD Connect, Windows Server, and AD domain services.
* Proficiency in PowerShell and REST API scripting for identity tasks.
* Experience with Terraform for Azure identity services (IaC).
* Strong understanding of Zero Trust, Conditional Access, MFA, PKI, and secure identity architecture.
* Proven ability to lead large‑scale AD consolidation and migration projects.
* Troubleshooting expertise in DNS, DHCP, networking, and authentication flows.
* Familiarity with hybrid environments (Azure AD Connect Cloud Sync, federation, migration off ADFS).
* Exposure to cross‑identity migrations (e.g., Google Workspace) is a plus.
Required Education & Certifications
* Bachelor’s degree in Computer Science, Information Technology, or related field.
* Microsoft Certified: Azure Administrator Associate or Azure Solutions Architect Expert preferred.
* Microsoft Certified: Identity and Access Administrator Associate highly desirable.