Microsoft Entra ID (Azure Active Directory)Privileged Identity Management (PIM)Microsoft Active DirectoryActive Directory Federation ServicesGroup Policy Objects (GPOs)Microsoft Defender for Identity
Microsoft Entra ID (Azure Active Directory)Privileged Identity Management (PIM)Microsoft Active DirectoryActive Directory Federation ServicesGroup Policy Objects (GPOs)Microsoft Defender for Identity
Full Job Posting
Required Skills
Identity Security
Deep understanding of enterprise identity and access management (IAM) architecture, governance, and security operations
Experience integrating identity signals into security operations, including identity protection, threat detection, and centralized logging
Ability to monitor identity health, detect suspicious activity, and investigate identity-based threats using security analytics and operational playbooks
Hands-on experience with Microsoft Entra ID (Azure Active Directory), Privileged Identity Management (PIM), and just-in-time access controls
Experience enforcing least privilege, role-based access control (RBAC), and automating access provisioning and deprovisioning workflows
Familiarity with Zero Trust identity principles — verify explicitly, enforce least privilege, and assume breach — and the ability to assess and mature an organization's identity posture against those principles
Experience securing workload identities, service principals, and high-risk administrative accounts
Ability to decommission legacy federation infrastructure and migrate applications to modern, standards-based authentication
Windows Server
Strong experience administering and hardening Windows Server environments in an enterprise setting
Proficiency with Microsoft Active Directory, Active Directory Federation Services, and Group Policy Objects (GPOs) from a security engineering perspective
Ability to monitor and analyze Windows-based architecture, communication, policies, and protocols from a cybersecurity lens
Experience performing system monitoring, reviewing logs, and taking corrective action to maintain server integrity and availability
Ability to create and maintain thorough system documentation covering installation, configuration, and troubleshooting procedures
Experience supporting security continuous monitoring efforts including risk assessments and system patching within Windows server environments
Security Engineering & Collaboration
Ability to identify gaps in current identity and server security capabilities and recommend both technical and process-level improvements
Experience developing and contributing to technical security standards, monitoring standards, and security architecture documentation
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
Comfortable working across teams including cybersecurity, networking, systems administration, and technology support partners
Ability to communicate findings and risks clearly to both technical peers and senior leadership
A minimum of 5+ years of progressive experience in identity security and Windows server administration is required, with demonstrated experience operating at an engineering level rather than a purely operational or support capacity. Candidates with hands-on Zero Trust identity implementation experience will be strongly preferred.
Desired Skills
Experience with Microsoft Defender for Identity and integration with SIEM platforms such as Splunk
Scripting and automation experience in PowerShell, Bash, or Python to support identity operations and reporting
Familiarity with hybrid identity environments and cloud identity platforms such as Microsoft Azure or AWS IAM
Experience with Single Sign-On (SSO), SAML, OAuth 2.0, and OpenID Connect protocols
Knowledge of Kerberos delegation risks, lateral movement detection, and privilege escalation monitoring
Microsoft License Management experience
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field preferred
Relevant certifications such as Microsoft Identity and Access Administrator (SC-300), Microsoft Cybersecurity Architect (SC-100), CISSP, or equivalent are strongly preferred
ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.
Everforth ECS is the federal segment of Everforth , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies. Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow. We value:
Attracting and developing top talent and high-performing teams
Fostering a culture that is engaging, accountable, and mission-driven
Meet the challenge. Make a difference with Everforth ECS!
About ECS FEDERAL LLC
Verified company details for this employer are not available yet.