IT System Engineer – Microsoft 365 & Identity

AVALON Pharma
الرياض, الرياض دوام كامل
نشر: 1448/1/16 | 2026/07/01 ينتهي: 1448/2/17 | 2026/07/31 ✨ وصف بالذكاء الاصطناعي
تقدم للوظيفة الآن

الوصف الوظيفي

About the Role

We are seeking a highly skilled and motivated IT System Engineer – Microsoft 365 & Identity to join our dynamic IT team. In this pivotal role, you will be responsible for designing, implementing, and maintaining robust identity and access management solutions, as well as administering Microsoft 365 services to ensure seamless collaboration, security, and compliance across the enterprise. Your expertise in Microsoft technologies will be instrumental in optimizing our digital workplace, enhancing productivity, and safeguarding our organization’s most critical assets. If you are passionate about modern identity solutions, cloud security, and enterprise collaboration platforms, this is an exceptional opportunity to advance your career in a forward-thinking IT environment.

Key Responsibilities

The IT System Engineer – Microsoft 365 & Identity will play a central role in managing and securing our hybrid and cloud-based identity infrastructure. Your responsibilities will encompass a wide range of technical domains, including Active Directory, hybrid identity synchronization, cloud identity governance, and Microsoft 365 administration. Below are the core areas of focus for this position:

Active Directory & On-Premises Identity

  • Administer and optimize Active Directory Domain Services (AD DS), including domain controllers, replication, Group Policy Objects (GPOs), DNS, and DHCP to ensure high availability and performance.
  • Monitor AD health using tools such as dcdiag, repadmin, and advanced monitoring solutions to proactively identify and resolve issues.
  • Implement and enforce AD security best practices, including tiered administration, Protected Users group, audit policies, and functional-level management to mitigate risks and enhance security posture.

Hybrid Identity — Azure AD Connect & Microsoft Entra ID

  • Install, configure, and maintain Microsoft Entra Connect (formerly Azure AD Connect) to synchronize on-premises directories with Azure Active Directory, ensuring seamless identity management across hybrid environments.
  • Manage synchronization methods, including Password Hash Synchronization (PHS), Pass-Through Authentication (PTA), and federation, while troubleshooting sync issues and resolving object conflicts.
  • Configure hybrid scenarios such as device registration, hybrid Azure AD join, and seamless Single Sign-On (SSO) to enable secure and efficient user access.
  • Administer Microsoft Entra ID (formerly Azure AD) by managing users, groups, dynamic groups, and administrative units, while implementing Conditional Access policies, Multi-Factor Authentication (MFA), and passwordless authentication methods.
  • Leverage Privileged Identity Management (PIM) for just-in-time privileged access and configure Identity Governance features, including access reviews, entitlement management, and lifecycle workflows to ensure compliance and reduce risk.
  • Manage Enterprise Applications, App Registrations, and SSO integrations using SAML, OAuth, and OpenID Connect (OIDC), while monitoring identity risks through Entra ID Protection.

Microsoft 365 Administration & Collaboration

  • Administer the full Microsoft 365 tenant, including Exchange Online, Microsoft Teams, SharePoint Online, OneDrive for Business, and the Viva suite, to support collaboration, communication, and employee engagement.
  • Manage user lifecycle, licensing, and governance policies, including naming conventions, account expiry, guest access controls, and data classification to maintain a secure and organized digital workspace.
  • Monitor service health, adoption, and usage trends using Microsoft 365 Usage Reports and Viva Insights, and drive continuous improvement in user experience and productivity.
  • Administer Teams policies and governance to ensure secure and efficient collaboration, while managing SharePoint site architecture, sharing controls, and external access to protect sensitive information.
  • Oversee OneDrive policies, sync deployment, and Known Folder Migration to facilitate seamless file access and collaboration across devices.

Security, Compliance & Endpoint Management

  • Administer Microsoft Intune for Mobile Device Management (MDM) and Mobile Application Management (MAM) to enforce device compliance policies across Windows, iOS, and Android platforms.
  • Configure Microsoft Purview for Data Loss Prevention (DLP), sensitivity labels, retention policies, and eDiscovery to ensure regulatory compliance and protect sensitive data in accordance with standards such as ISO 27001 and NCA ECC.
  • Monitor Microsoft Secure Score to identify security gaps and implement remediation strategies to enhance our overall security posture.

Automation & Reporting

  • Develop and maintain PowerShell scripts using the Microsoft Graph API to automate repetitive tasks in Active Directory and Microsoft 365, improving efficiency and reducing manual intervention.
  • Govern Power Platform environments (Power Apps, Power Automate, Power BI) to enable low-code solutions while ensuring security and compliance.
  • Produce regular reports on identity management, licensing, and security posture to support data-driven decision-making and compliance audits.

Qualifications & Skills

To excel in this role, you will need a strong technical foundation in Microsoft technologies, hands-on experience in enterprise environments, and a commitment to continuous learning. The ideal candidate will possess the following qualifications and skills:

  • A Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent professional experience).
  • Minimum of 4 years of hands-on experience in administering Active Directory and Microsoft 365 in an enterprise environment.
  • In-depth expertise in Active Directory Domain Services, including design, administration, GPO management, DNS/DHCP configuration, and replication.
  • Proven experience with Azure AD Connect (Microsoft Entra Connect), including sync rule management, troubleshooting, and hybrid identity scenarios.
  • Strong knowledge of Microsoft Entra ID (Azure AD), Conditional Access, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and Identity Protection.
  • Solid experience in administering Exchange Online, Microsoft Teams, and SharePoint Online, with a focus on security and collaboration.
  • Proficiency in PowerShell scripting for Active Directory and Microsoft 365 automation, along with a strong understanding of email security protocols such as SPF, DKIM, and DMARC.

يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.

المصدر: لينكد إن ↗ • 12 مشاهدة

وظائف مشابهة

تقدم للوظيفة الآن