Simeio Logo

Microsoft Security Engineer (Purview)

Job Description

About the Role:

Microsoft Security Engineer will support a US-based engagement focused on assessing the client’s current Active Directory (AD), Azure/Entra ID deployment, Purview and related identity infrastructure. The role involves evaluating forest, site, domain, security group, organizational unit (OU), authentication, group policy, and deployment architecture, identifying configuration and operational gaps, and providing recommendations to address critical risks. The architect will also review existing AD management processes, gather data using tools such as PowerShell, SailPoint, ADUC, ManageEngine, and StealthAUDIT, and help define the resources, skills, and budget required for remediation.

What You’ll Do:

  • Assess the current state of the client’s Active Directory and Azure/Entra ID deployment, including forest design, site design, domain design, security group topology, deployment architecture, organizational unit (“OU”) design, authentication, and group policy design.
  • Manage the migration of enterprise data governance and compliance frameworks to Microsoft Purview, ensuring secure data management and regulatory compliance.
  • Run PowerShell queries against the client AD to determine relevant statistics of current AD and Azure objects, including users, accounts, groups, organizational units (OUs), computer objects, and related identity objects.
  • Run SailPoint out-of-the-box reports against AD connectivity to provide group and account ownership and membership information.
  • Review AD configurations, processes, and documentation to understand the client’s current deployment and operating model.
  • Identify configuration and operational gaps in the client’s AD domains, infrastructure, architecture, and deployment.
  • Prioritize identified gaps based on criticality and risk.
  • Provide recommendations to address critical gaps and risks across AD and Entra ID environments.
  • Discover and assess current processes for AD group management, AD group policy management, and AD account management.
  • Suggest modifications and refinements to existing processes and create new processes if required.
  • Determine the resources and skills necessary to complete remediation activities and achieve defined milestones.
  • Provide an estimated budget to accomplish remediation as outlined during the assessment phases.
  • Leverage client tools such as ADUC (Active Directory Users & Computers), ManageEngine, StealthAUDIT, or other AD scanning utilities as needed to accomplish data-gathering activities.

What You Bring

  • Strong experience as an Active Directory Architect, including domain consolidation, AD assessment, and enterprise identity infrastructure review.
  • Hands-on knowledge of Active Directory forest, site, domain, OU, security group, authentication, and group policy design.
  • Experience assessing Azure/Entra ID deployments and hybrid identity environments.
  • Ability to run and interpret PowerShell queries against AD domains to gather statistics on users, accounts, groups, OUs, computer objects, and related AD/Azure objects.
  • Experience using SailPoint reports for AD group and account ownership and membership analysis.
  • Ability to identify configuration and operational gaps and prioritize them based on criticality and risk.
  • Experience reviewing AD configurations, processes, and documentation.
  • Working knowledge of tools such as ADUC, ManageEngine, StealthAUDIT, and other AD scanning utilities.
  • Ability to provide practical recommendations, remediation planning inputs, resource estimates, skill requirements, and budget estimates.
  • Strong communication skills to document findings, recommendations, risks, and remediation plans for stakeholders.

Nice to have - Optional

  • Prior experience with large-scale AD domain consolidation projects.
  • Experience supporting remediation roadmap planning for AD, Azure/Entra ID, and identity governance environments.
  • Familiarity with identity governance tools and reporting approaches, especially SailPoint.

About Simeio and What We Do

Simeio has over 650 talented employees across the globe. We have offices in USA (Atlanta HQ and Texas), India, Canada, Costa Rica and UK.

Founded in 2007, and now backed by private equity company ZMC, Simeio is recognized as a top IAM provider by industry analysts.

Alongside Simeio’s identity orchestration tool ‘Simeio IO’ - Simeio also partners with industry leading IAM software vendors to provide access management, identity governance and administration, privileged access management and risk intelligence services across on-premise, cloud, and hybrid technology environments.

Simeio provides services to numerous Fortune 1000 companies across all industries including financial services, technology, healthcare, media, retail, public sector, utilities and education.

Diversity & Inclusion

Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our recruitment team - [email protected].

Thank you

About Your Application

We carefully review every application we receive. If your skills and experience match our needs, we’ll be in touch. If you don’t hear from us within 10 days, please don’t be discouraged—we may retain your application for future opportunities. We also encourage you to check our careers page for other openings.

Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to any of the recruitment team at [email protected] or +1 404-882-3700.

Share this job:
Please let Simeio know you found this job on Remote First Jobs 🙏

Explore more remote jobs

36 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like Simeio

Find your next opportunity with companies that specialize in Cybersecurity, Identity And Access Management, Identity As A Service, and Managed Services. Explore remote-first companies like Simeio that prioritize flexible work and home-office freedom.

Saviynt Logo

Saviynt

1001-5000 www.saviynt.com

An AI-based identity security platform for human, non-human, and AI agent identities across diverse IT environments.

View company profile →
GuidePoint Security Logo

GuidePoint Security

Provides trusted cybersecurity expertise, solutions, and services to minimize risk for organizations.

View company profile →
StrongDM Logo

StrongDM

A Zero Trust Privileged Access Management platform for secure infrastructure access.

View company profile →
Symmetry Systems Logo

Symmetry Systems

A Data+AI Security platform for data protection, threat detection, compliance, and AI risk reduction.

View company profile →
Cloud Security Services Logo

Cloud Security Services

Specialized Identity and Access Management (IAM) consulting to secure enterprise AI, digital identities, and mission-critical systems.

View company profile →
Netskope Logo

Netskope

Provides security and networking solutions with optimized access and real-time security for cloud, AI, SaaS, web, and private applications.

View company profile →

Project: Career Search

Rev. 2026.8

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply