IdM Architect
15701 E 1st Ave Aurora, CO 80011 US
Job Description
Summary: Kavaliro is seeking an Identity Management (IdM) Engineer to architect, implement, and manage a comprehensive Identity and Access Management (IAM) environment supporting a large, diverse user base. This critical role ensures that all users across the organization have secure, seamless, and role-appropriate access to systems, data, and digital tools. The IdM Engineer will oversee the full identity lifecycle, including automated provisioning, access role management, and deprovisioning. The position plays a key role in strengthening security posture, streamlining access, and maintaining operational continuity across the education environment.
Essential Duties and Responsibilities: Design, automate, and manage the end-to-end identity lifecycle for all user types. Serve as the primary technical owner integrating authoritative systems (HR, ERP, SIS, etc.) with downstream applications. Administer and maintain Microsoft Active Directory, Azure AD (Entra ID), and Google Workspace. Implement and maintain SSO solutions using SAML, OIDC, and SCIM for secure and seamless authentication across approved applications. Develop and enforce Role-Based Access Control (RBAC) policies; manage MFA and Conditional Access to protect sensitive data. Act as the final escalation point for identity-related incidents, troubleshooting complex provisioning and access issues. Ensure IAM processes comply with industry regulations and internal standards; support audits through documentation and reporting. Maintain accurate documentation of IdM architecture, workflows, and policies. Provide technical guidance, training, and support for IAM systems and policies. Perform additional functions as assigned related to IAM security and operations.
Education and Experience: Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience). 3+ years of hands-on IT experience with at least 2 years focused on Identity and Access Management.
Skills and Knowledge: Proficiency in PowerShell scripting for automation and data manipulation. Strong expertise in Active Directory, Azure AD (Entra ID), and hybrid identity environments. Hands-on experience managing Google Workspace identities and groups. Deep understanding of SAML, OIDC, OAuth 2.0, and SCIM protocols. Proven ability to troubleshoot complex issues across interconnected systems. Excellent communication skills, able to translate technical details for non-technical stakeholders.
Certifications (Preferred): Microsoft Certified: Identity and Access Administrator Associate, CompTIA Security+, or equivalent security certification.
Kavaliro provides Equal Employment Opportunities to all employees and applicants. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. Kavaliro is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Kavaliro will take the steps to assure that people with disabilities are provided reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please respond to this posting to connect with a company representative.
Job Requirements
Share This Job:
Related Jobs:
Login to save this search and get notified of similar positions.About Aurora, CO
What to expect when working with Kavaliro
Just like with our clients, we build our process to meet each individual candidate s needs. Our recruiters take the time to listen to your career goals and ambitions, then work one-on-one with you to help place you in a company that provides the best professional fit.
01
Call us with a detailed overview of your experience, skills, background, and goals. If you are local and prefer, we will set up a face-to-face interview.
02
You will be asked to complete an online assessment form to assess your skill level. At the same time, your references will be checked.
03
Your Kavaliro recruiter will discuss and review potential job opportunities.
04
When you and your recruiter agree on a potential match, you ll be briefed with helpful insight into the client s needs.
05
When you begin your employment tenure with the client, Kavaliro will continue to be there to support you in your career.
More From Kavaliro
About Us
We ve been in the staffing business for over 10 years because we receive great satisfaction helping both companies and job candidates find their perfect match.
Meet our teamLife at Kavaliro
We take culture seriously and believe true strength comes from a collaborative and open-minded environment where everyone is supported and empowered to succeed.
Learn moreCareers at Kavaliro
If you want to always have your finger on the pulse of the latest and newest trends in staffing and recruiting, join the Kavaliro team!
See internal opportunitiesCareer Advice
We offer guidance on resume revisions, clarifying your career objectives, and other advice to help you land your dream job.
Visit our blog