We are looking for a Senior Active Diretory/Entra ID Engineer (f/m/d) as soon as possible for our location in Melsungen.
In this role you are responsible for designing, developing, and operating the B. Braun Active Directory and Entra ID platform. The role focuses on acting as a subject matter expert for directory, authentication, and provisioning services, including Active Directory, Entra ID and related complex services.
Tasks and responsibilities:
- Lead the design, implementation, administration, and continuous improvement of Active Directory, Microsoft Entra ID, and hybrid identity solutions.
- Manage and enhance Identity and Access Management (IAM) services, including authentication, authorization, provisioning, and directory synchronization.
- Design, implement, and maintain security controls such as Conditional Access, MFA, password less authentication, PIM, PAM, and Zero Trust architecture principles.
- Configure and support Single Sign-On (SSO), identity federation, and application integrations using SAML, OAuth2, OpenID Connect (OIDC), SCIM, and LDAP.
- Collaborate with IT, Infrastructure, Information Security, Audit, Compliance, and other stakeholders to ensure secure and compliant identity services.
- Develop and maintain PowerShell automation and reporting solutions to improve operational efficiency and identity governance processes.
- Ensure the reliability, performance, and security of identity services through monitoring, troubleshooting, root cause analysis, incident resolution, and continuous service improvement.
- Support projects, audits, compliance initiatives, and escalated technical issues while contributing to the development of identity management standards, procedures, and best practices.
Professional competencies:
- Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field, or an equivalent combination of education and professional experience
- Extensive hands-on experience with Active Directory and Microsoft Entra ID, including hybrid identity environments
- Strong expertise in Active Directory, Microsoft Entra ID, and LDAP services, as well as identity and access management best practices
- Solid understanding of Group Policy design, administration, and configuration in enterprise environments
- In-depth knowledge of authentication and federation technologies, including Kerberos, SAML, and OpenID Connect (OIDC)
- Proven experience with Windows Server platforms and Microsoft identity and authentication technologies
- Strong understanding of cloud security architectures, identity-centric security models, and Zero Trust principles
- Advanced PowerShell scripting, automation, and troubleshooting skills
- Fluent English communication skills, both written and spoken
- Relevant industry certifications such as Microsoft Certified: Identity and Access Administrator Associate (SC-300), Microsoft Certified: Cybersecurity Architect Expert (SC-100), or equivalent certifications are considered an advantage
Personal competencies:
- You possess strong analytical and problem-solving skills, enabling you to effectively address complex technical challenges and identify sustainable solutions
- Driven by a passion for technology and continuous learning, you proactively stay current with emerging trends and advancements in identity and security technologies
- You are capable of working independently in a fast-paced, global environment, managing multiple priorities while maintaining a high level of quality and accountability
- Strong written and verbal communication skills enable you to collaborate effectively with both technical and business stakeholders and translate complex topics into clear, actionable insights
- You thrive in taking ownership of technical initiatives, driving innovation and continuously enhancing enterprise-wide identity and security capabilities
- With a risk-aware and analytical mindset, you make informed decisions that balance security, operational requirements, and business objectives
- A strong customer and service orientation, combined with a commitment to operational excellence, quality, and continuous improvement, completes your profile
Benefits:
- Company pension scheme
- Mobility benefits, e.g., the B. Braun Job Ticket or Job Bike
- Family-support services, e.g., vacation childcare
- Flexible working hours such as flextime and mobile work
- Employee discounts
- Various working models, e.g., job sharing/part-time
Diversity makes us stronger! That is why we explicitly encourage people of all identities, lifestyles, and backgrounds to apply.
B. Braun SE | Maren Siebert | +495661717685