AD & Entra ID Expert
Take a step forward and let Edenred surprise you.
Every day, we deliver innovative solutions to improve the life of millions of people, connecting employees, companies, and merchants all around the world.
We know there are hundred ways for you to grow. With us, you will expand your skills in a multicultural, challenging, and dynamic environment.
Dare to join Edenred and get ready to thrive in a global company that will offer you endless opportunities.
Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities.
We are committed to preventing all forms of discrimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.
The Edenred Digital Center (EDC) in Bucharest, Romania is Edenred Group's new Digital hub for strategic IT projects.
The Identity expert will be responsible for designing, implementing, operating, securing, and evolving the organization’s hybrid identity infrastructure, spanning
- premises Active Directory (AD DS, AD CS) and Microsoft Entra ID.
This role ensures the availability, security, compliance, and governance of Tier 0 identity assets, supports global IT operations, and contributes to the transition toward
- native identity and Zero Trust models
Your role:
- based access control (RBAC).
-
- day operational tasks:Create, manage, and maintain AD users, groups, organizational units, and Entra ID objects. Operate and secure Tier 0 assets: Domain Controllers, Entra ID tenants, Entra ID Connect, AD CS (PKI), and Privileged Access Workstations. Lead lifecycle tasks: FSMO role management, SYSVOL replication, GPO management, krbtgt password rotation, and Windows Time Service synchronization. Monitor and maintain synchronization health for hybrid identity environments (Entra ID Connect, staging nodes, synchronization rules, outbound trusts). Enforce least privilege and
- based access through Entra ID PIM, RBAC, and Conditional Access policies. Collaborate with SOC and Cyber teams on
- related threat detection and response (MDI, MDE, Identity Protection). Resolve existing findings from Vulnerability management tools such as Ping
Castle
Define and enforce governance for SSO integrations (SAML, OAuth, OIDC) and Entra ID app registrations / enterprise applications. Ensure compliance with frameworks (PCI DSS, ISO 27001, internal policies). Maintain audit logs, operational runbooks, and documentation to support annual reviews and audits. Partner with Digital Workplace, Application, and Infrastructure Teams to resolve incidents, perform root cause analysis, and ensure continuity of service. Participate in Change Advisory Board (CAB) reviews, risk assessments, and operational acceptance for new services.
Your profile:
You will have to demonstrate:
- on experience with Microsoft Entra
ID / Azure AD in a complex enterprise environment. At least 6 Years at managing and maintaining Active Directory Services (AD DS): Domain Controller operations, FSMO roles, SYSVOL replication, GPO management, krbtgt password rotation. Microsoft Entra ID: Tenant administration, Entra ID Connect (Staging/Active nodes), synchronization health, role management, Conditional Access, PIM/RBAC. Single Sign-On & Applications: Governance of Entra ID App Registrations, Enterprise Apps, OAuth/SAML configurations, API permissions, and application security reviews. AD CS (PKI): Certificate authority operations, key management, certificate lifecycle management.
ID).
ID Connect), MFA, and conditional access policies.
Shell for reporting, auditing, provisioning, and automation of hybrid identity operations.
Core Competencies
- aligned solutions.
- technical stakeholders (e. g. , managers, compliance teams).
- native and Zero Trust approaches.
Joining us means:
Because:
-
- job training &
- learning platforms.
And we do not stop here!
- Informații detaliate despre oferta de muncă
Firma: Edenred Localiția: Bucureşti
Bucureşti Sectorul 4, București, RomaniaAdăugat: 30. 9. 2025
Postul de muncă activ
Fii primul, care se va înregistra la oferta de muncă respectivă!