Track Manager (Support & Operations)

Technology, Data & Digital · IT Infrastructure & Security · Cloud Engineering · Cybersecurity

In short

We are seeking a highly experienced L3.2 Hybrid Azure AD (Entra ID) Engineer to manage enterprise identity services across on-prem Active Directory and Azure AD. This role requires deep technical expertise, architectural guidance, and proactive service improvements, acting as the highest escalation point for critical identity issues.

Responsibilities

  • Own and manage end-to-end Hybrid Identity architecture (AD + Azure AD / Entra ID).
  • Design, implement, and optimize identity synchronization and authentication mechanisms.
  • Ensure high availability and resilience of identity services.
  • Act as the highest escalation point (L3.2/SME) for critical identity issues.
  • Lead troubleshooting of complex Azure AD Connect/sync failures, advanced authentication issues (SSO, MFA, federation), and AD replication, trust, and connectivity issues.
  • Perform deep Root Cause Analysis (RCA) and implement permanent fixes.
  • Provide guidance on identity architecture design, best practices, Zero Trust implementation, Conditional Access, Identity Protection, and PIM strategies.
  • Drive improvements in identity security posture and compliance.
  • Develop advanced automation using PowerShell, Azure Automation, Graph API.
  • Lead initiatives to optimize identity operations and reduce manual effort.
  • Build reusable scripts/tools for monitoring, reporting, and provisioning.
  • Define and enforce identity governance standards, policies, and SOPs.
  • Participate in design reviews, audits, and transformation initiatives.
  • Ensure compliance with enterprise security and regulatory requirements.
  • Work with cross-functional teams (Security, Cloud, Network, Apps).
  • Provide technical mentoring to L2/L3 engineers.
  • Support application onboarding, federation, and SSO integration strategies.

Requirements

  • Deep expertise in Azure AD (Entra ID) – advanced/architect level.
  • Deep expertise in Active Directory (AD DS, GPO, replication, trusts).
  • Deep expertise in Azure AD Connect / Entra Connect (advanced troubleshooting).
  • Strong experience with SSO (SAML, OAuth, OIDC), MFA, Conditional Access.
  • Strong experience with Federation (ADFS – strong preferred).
  • Advanced PowerShell & automation skills.
  • Strong knowledge of identity security & Zero Trust principles.
  • 8–12+ years of IT experience.
  • Minimum 5–7 years in Hybrid Identity / Azure AD roles.
  • Experience in large enterprise / global environments.

Desired Qualifications

  • Expertise in Microsoft 365 ecosystem (Exchange, Teams identity dependencies).
  • Expertise in Intune / Endpoint Manager.
  • Knowledge of Azure architecture and networking basics.
  • Knowledge of ITIL processes & service governance.
  • SC-300 – Identity & Access Administrator certification (Highly Preferred).
  • AZ-104 – Azure Administrator certification (Highly Preferred).
  • AZ-305 – Azure Solutions Architect certification (added advantage).
  • ITIL Foundation certification (Highly Preferred).

Benefits

  • You'll supercharge your potential.
  • You'll find your career.
  • And you'll find your spark.
  • All at a place that knows that helping its customers stay on top starts by putting its people first.
#Identity Management#Azure AD#Active Directory#Hybrid Identity#Cloud Security#Automation#Troubleshooting#SME
HCLTech Logo

Company

HCLTech

Job Posted

2 weeks ago

Employment Type

Full Time

WorkMode

Hybrid

Experience Level

Senior

Locations

Gautam Buddha Nagar, India

Applicants

Be an early applicant