
Identity Platform Engineer
Ford Motor Company
full-time
Posted on:
Location Type: Office
Location: Chennai • India
Visit company websiteExplore more
About the role
- Implement and manage emerging Microsoft Entra ID security controls, also including Conditional Access, Identity Protection, Privileged Identity Management (PIM), Identity Governance, and adaptive MFA policies across enterprise workloads.
- Leverage emerging Entra technologies such as Entra Agent ID, Entra Workload ID, Identity Governance lifecycle workflows, and Zero-Trust deployments—to strengthen identity protection, automate governance, and modernize access strategies.
- Continuously evaluate new features in Microsoft Entra ID and GCP IAM, providing architectural recommendations and integrating relevant capabilities into enterprise DevSecOps workflows.
- Design and integrate security tooling into CI/CD pipelines using GitHub Actions and GCP Cloud Build to ensure automated code scanning, dependency security, secrets scanning, and policy enforcement.
- Develop secure, automated pipelines on the GCP platform, enabling continuous compliance validation, vulnerability scanning, and policy-as-code deployment for cloud workloads and containerized environments.
- Automate identity and security configuration using scripting and IaC tools such as Terraform, Ansible and ARM templates, with multi-cloud pipeline support for Azure and GCP.
- Build and maintain custom security agents and automation workflows to enhance identity telemetry, enforce real-time access policies, and standardize cloud security controls across environments.
- Conduct regular reviews of roles, permissions, service principals, workload identities, and application registration security, ensuring least-privilege access and Zero Trust alignment.
- Collaborate with engineering teams to perform secure code reviews, threat modeling, vulnerability assessments, and provide remediation guidance during development and deployment cycles.
- Develop dashboards, reports, and automation for identity compliance, audit readiness, and IAM security posture using tools like Azure Monitor, GCP Looker, Sentinel, and BigQuery.
Requirements
- 3–6+ years of experience in DevOps, SecOps, or Cloud Security Engineering roles.
- Strong hands-on experience with Microsoft Entra ID (AuthN Protocols, Conditional Access, PIM, Identity Protection, Graph API and automation).
- Lead GCP cloud deployments and build scalable, secure automation pipelines, leveraging Cloud Build, Cloud Deploy, Artifact Registry, and GCP-native IaC to support continuous delivery, compliance automation, and multi-cloud DevSecOps workflows.
- Experience with IaC: Terraform, Bicep, or ARM templates.
- Knowledge of container security, Kubernetes, and cloud-native security patterns.
- Solid understanding of Zero Trust principles, IAM, and identity lifecycle management.
- Familiarity with vulnerability management tools and SAST/DAST integrations (42Crunch, CheckmarX and FOSSA)
- Microsoft Azure certifications (e.g., AZ-500, SC-300, AZ-104, AZ-305) are a strong plus.
Benefits
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Microsoft Entra IDConditional AccessIdentity ProtectionPrivileged Identity ManagementIdentity GovernanceTerraformAnsibleGCP IAMCI/CDKubernetes
Soft Skills
collaborationleadershipcommunicationproblem-solvinganalytical thinking
Certifications
AZ-500SC-300AZ-104AZ-305