Technical Lead – Identity & Secure Access (Microsoft Entra)

  • Externa annonser
  • Remote Stockholm
  • 2027-03-28

Hemsida Cyber Instincts AB

Are you the person other engineers come to when a Zero Trust access problem needs solving, not just documenting? We’re looking for a Technical Lead to help build out a secure, scalable remote access platform on Microsoft Entra — starting with Entra Private Access — for a large enterprise environment.The role in shortYou’ll take technical ownership of a growing Global Secure Access platform, working closely with a Product Owner and cross-functional teams spanning Identity, Network, Endpoint, Security, SOC, Service Desk, and application teams. This isn’t a purely architectural role — you’ll be hands-on with configuration, troubleshooting, and platform evolution, while also setting the technical direction others follow.Location: Södertälje, hybridApplicants must currently reside in SwedenThe assignment is projectbased at our client and will continue till 2027-10-08 with possibilities for extension. What you’ll be doingOwn the technical design and ongoing development of the Microsoft Entra Global Secure Access platformDesign and maintain a scalable Entra Private Access setup — connectors, connector groups, high availability, failover, capacity planning, application segmentation, and regional resilienceConfigure and govern application access through Entra ID, security groups, Conditional Access, device compliance, MFA, and Zero Trust principlesLead the migration of internal applications from VPN-based access to Private AccessAnalyze application connectivity requirements — DNS, TCP/IP, ports, routing, authentication, TLSSet technical standards, configuration baselines, deployment patterns, and rollback proceduresMonitor platform health: connector availability, capacity, traffic flows, authentication, policy syncLead complex incident resolution and root-cause analysisMaintain operational documentation, runbooks, and troubleshooting guidesSupport security assessments, risk reviews, and audit activitiesCoordinate with Microsoft Support and internal platform teamsContribute to future expansion, including Entra Internet Access where relevantMentor other engineers and help establish consistent technical practicesWork within proper change-management and release processesWhat we’re looking forMicrosoft Entra & IdentityStrong, hands-on Entra ID experience in a large enterprise settingPractical experience with identity-based access control, security groups, application assignments, entitlement modelsSolid understanding of Conditional Access (user, device, location, risk, session-based controls)Experience implementing or running MFA and Zero Trust access controlsGood understanding of device identity/compliance, ideally with Intune and DefenderGlobal Secure Access & Private AccessHands-on experience with Microsoft Entra Global Secure Access, Entra Private Access, or a comparable ZTNA solutionPractical understanding of Private Network Connectors, connector groups, registration, certificates, outbound connectivityExperience designing for high availability, failover, resilience, capacity managementAbility to troubleshoot traffic forwarding, policy sync, and application connectivity issuesNetworking & Application ConnectivityStrong knowledge of DNS, TCP/IP, routing, firewalls, ports, TLS, HTTP/HTTPSExperience troubleshooting connectivity to internal apps, servers, databases, infrastructure servicesUnderstanding of network segmentation and access control across application/user groupsAbility to analyze connectivity needs for file services, RDP, engineering tools, databases, enterprise platformsOperations & Service ManagementExperience running business-critical services in productionStrong monitoring, logging, incident management, and root-cause analysis skillsExperience with change/release management, technical documentation, operational handoverAbility to define support models, runbooks, escalation pathsExperience working alongside Security Operations/SOC teams during investigationsTechnical Leadership & CollaborationTrack record as a Technical Lead, Platform Lead, or Senior EngineerSound technical decision-making and clear communication to technical and non-technical audiencesExperience coordinating across Identity, Network, Endpoint, Security, Infrastructure, and application teamsStrong ownership mentality, comfortable working independently in an evolving product areaAbility to mentor and set consistent technical standardsNice to haveExperience with PAM, PIM, JIT access, and access governanceExperience with ServiceNow, Jira, or similar ITSM/workflow platformsKnowledge of ISO 27001, NIST Zero Trust, DORA, GDPR, or similar frameworksExperience with risk assessments (BIA, TVA, IRAM, or comparable)Experience supporting both macOS and Windows access scenariosWho you areStructured, analytical, and pragmatic — equally comfortable in strategic architecture discussions and hands-on troubleshooting. You proactively spot risks and dependencies, take ownership without waiting to be told, and communicate clearly across technical and non-technical stakeholders. You know how to balance security, user experience, resilience, and delivery speed.

För att söka det här jobbet vänligen besök arbetsformedlingen.se.

Sök distansjobb på autopilot 🤖

Aktivera autopiloten →

Betalningsmetoder som stöds:

Ta steget

Se gratis webinar - 5 tips hur du landar ett distansjobb

En tredjedel av ditt liv arbetar du. Varför inte jobba för att leva istället för att leva för jobbet?

GRATIS WEBINAR