← Zurück zur Liste
Stelle · Lead

Technical Lead – Identity & Secure Access (Microsoft Entra)

Tech Lead • Lead • Vor Ort • Vollzeit • Schweden Södertälje, Schweden

A Technical Lead is sought to build out a secure, scalable remote access platform on Microsoft Entra, starting with Entra Private Access, in a large enterprise environment. The role combines hands-on configuration and troubleshooting with setting the technical direction. Based in Södertälje, hybrid, as a project-based assignment.

Responsibilities

  • ▹Own the technical design and ongoing development of the Microsoft Entra Global Secure Access platform
  • ▹Design and maintain a scalable Entra Private Access setup: connectors, connector groups, high availability, failover, capacity planning, application segmentation and regional resilience
  • ▹Configure and govern application access through Entra ID, security groups, Conditional Access, device compliance, MFA and Zero Trust principles
  • ▹Lead the migration of internal applications from VPN-based access to Private Access
  • ▹Analyze application connectivity requirements: DNS, TCP/IP, ports, routing, authentication, TLS
  • ▹Set technical standards, configuration baselines, deployment patterns and rollback procedures
  • ▹Monitor platform health: connector availability, capacity, traffic flows, authentication, policy sync
  • ▹Lead complex incident resolution and root-cause analysis
  • ▹Maintain operational documentation, runbooks and troubleshooting guides
  • ▹Support security assessments, risk reviews and audit activities
  • ▹Coordinate with Microsoft Support and internal platform teams
  • ▹Contribute to future expansion, including Entra Internet Access where relevant
  • ▹Mentor other engineers and help establish consistent technical practices
  • ▹Work within proper change-management and release processes

Requirements

  • ▹Strong, hands-on Entra ID experience in a large enterprise setting
  • ▹Practical experience with identity-based access control, security groups, application assignments and entitlement models
  • ▹Solid understanding of Conditional Access (user, device, location, risk and session-based controls)
  • ▹Experience implementing or running MFA and Zero Trust access controls
  • ▹Good understanding of device identity and compliance, ideally with Intune and Defender
  • ▹Hands-on experience with Microsoft Entra Global Secure Access, Entra Private Access, or a comparable ZTNA solution
  • ▹Practical understanding of Private Network Connectors, connector groups, registration, certificates and outbound connectivity
  • ▹Experience designing for high availability, failover, resilience and capacity management
  • ▹Ability to troubleshoot traffic forwarding, policy sync and application connectivity issues
  • ▹Strong knowledge of DNS, TCP/IP, routing, firewalls, ports, TLS, HTTP/HTTPS
  • ▹Experience troubleshooting connectivity to internal apps, servers, databases and infrastructure services
  • ▹Understanding of network segmentation and access control across application and user groups
  • ▹Ability to analyze connectivity needs for file services, RDP, engineering tools, databases and enterprise platforms
  • ▹Experience running business-critical services in production
  • ▹Strong monitoring, logging, incident management and root-cause analysis skills
  • ▹Experience with change and release management, technical documentation and operational handover
  • ▹Ability to define support models, runbooks and escalation paths
  • ▹Experience working alongside Security Operations/SOC teams during investigations
  • ▹Track record as a Technical Lead, Platform Lead or Senior Engineer
  • ▹Sound technical decision-making and clear communication to technical and non-technical audiences
  • ▹Experience coordinating across Identity, Network, Endpoint, Security, Infrastructure and application teams
  • ▹Ability to mentor and set consistent technical standards
  • ▹Applicants must currently reside in Sweden

Nice to have

  • ▹Experience with PAM, PIM, JIT access and access governance
  • ▹Experience with ServiceNow, Jira or similar ITSM/workflow platforms
  • ▹Knowledge of ISO 27001, NIST Zero Trust, DORA, GDPR or similar frameworks
  • ▹Experience with risk assessments (BIA, TVA, IRAM or comparable)
  • ▹Experience supporting both macOS and Windows access scenarios

Soft skills

Structured, analytical and pragmaticProactively spots risks and dependenciesTakes ownership independentlyClear communication with technical and non-technical stakeholdersBalances security, user experience, resilience and delivery speed

Ähnliche Stellen