Active Directory & Entra ID Architect

Context

We are looking for a senior Active Directory & Entra ID Architect to strengthen a global IT organization and drive innovation in identity and access management. The role is central to the design, governance, and resilience of a multinational hybrid identity infrastructure. Acting as both a technical leader and strategic advisor, the architect will enable secure access, ensure compliance, and align IAM strategies with business and security objectives.

Responsibilities

  • Lead the architectural design and lifecycle management of Active Directory and Microsoft Entra ID in global environments.

  • Define and implement hybrid identity strategies integrating on-premises AD with cloud-based Entra ID.

  • Establish Zero Trust frameworks, including Conditional Access, MFA, and Identity Protection.

  • Drive migrations from legacy platforms to modern cloud-native solutions.

  • Collaborate with cybersecurity, compliance, and infrastructure teams to align IAM with regulations.

  • Design and manage RBAC, Privileged Identity Management (PIM), and identity governance models.

  • Automate identity operations with PowerShell and other tools.

  • Mentor IAM engineers and provide technical oversight across regions.

  • Define OU structures, forest/domain designs, trusts, and Group Policy strategies.

  • Integrate Entra ID with SaaS, MDM, and security tools for lifecycle management.

  • Implement high-availability, disaster recovery, and monitoring strategies.

  • Conduct audits and assessments to ensure compliance.

  • Deploy identity protection features like risk-based sign-in detection and JIT access.

  • Partner with security, application, and cloud teams for secure integrations.

  • Act as subject matter expert for identity initiatives and transformations.

Technical skills

Must have

  • Enterprise-level experience with Active Directory and Entra ID architecture/administration.

  • Hands-on expertise with Entra Connect, Conditional Access, MFA, SSO, and federation (SAML, OIDC, OAuth).

  • Strong knowledge of LDAP, Kerberos, Group Policy, DNS, and hybrid identity configurations.

  • Proficiency in Microsoft 365 security, Intune, Defender for Identity, and MFA/SSO implementations.

  • Advanced PowerShell scripting for automation and policy enforcement.

  • Solid understanding of compliance frameworks (ISO 27001, GDPR, NIS2).

  • Excellent communication skills with both technical and non-technical stakeholders.

Should have

  • Experience with Privileged Access Management tools (e.g., CyberArk, Microsoft PIM).

  • Familiarity with Zero Trust frameworks and security hardening.

Nice to have

  • Relevant certifications (e.g., Microsoft Certified: Identity and Access Administrator Associate, Cybersecurity Architect Expert, Azure Solutions Architect Expert).

Who we are

Community Consulting goes beyond traditional consulting; it’s all about fostering connections in an atmosphere of trust and confidence.

Transparency & Honesty : We say things as they are. Clear communication for seamless collaboration.

#COMMUNITEAM : Work independently, but never alone. Collective intelligence drives us further, faster.

Total Commitment : Always present, always engaged. We find solutions and make sure everyone moves forward together.

Guaranteed Efficiency : No fluff, just results. We act fast, keep our promises, and deliver top quality.

This is our DNA. This is how we make a difference.

Type

Permanent or Freelance

Contract

Full-time

Location

Brussels

Homeworking

3 days per week

Sector

Public Sector

Keywords

You Career Advisor

Julie Huart
Julie Huart
Talent Acquisition Officer
j.huart@communityconsulting.be

Are you interested in this job offer ?