Technical Lead – Microsoft Entra / Global Secure Access
We are looking for a hands-on Technical Lead to design, implement and operate Microsoft Entra Global Secure Access, with an initial focus on Entra Private Access. Your primary responsibility will be to build a secure, resilient platform and lead the onboarding of internal applications, supporting migration from VPN-based access to identity-based application access. This role combines technical architecture, platform configuration, production operations and advanced troubleshooting. It suits an experienced Entra and infrastructure specialist who understands how identity, endpoints and networking interact—and can take technical ownership across these areas. Your responsibilities Working closely with the Product Owner and IAM team, you will: Own the technical design, configuration and continued development of the Global Secure Access platform. Design Private Network Connector deployments and connector groups for high availability, failover, capacity and regional resilience. Configure application access using Entra ID, security groups, application assignments, Conditional Access, MFA and device-compliance controls. Lead application discovery, onboarding and migration to Private Access, assessing dependencies such as DNS, ports, routing, authentication and TLS. Establish configuration standards, deployment patterns, validation steps and rollback procedures. Monitor platform health, connectors, traffic flows and policy synchronisation, and lead complex troubleshooting and root-cause analysis. Create runbooks, support procedures and escalation paths to prepare the service for ongoing operations. Coordinate delivery and incident resolution across Network, Endpoint, Security, SOC, Service Desk, Infrastructure and application teams, including Microsoft Support. Support security reviews, controlled releases and knowledge transfer to other engineers. You will also contribute to other Microsoft Entra capabilities and, where relevant, future expansion into Entra Internet Access. Required experience Microsoft Entra and identity security Strong hands-on experience with Microsoft Entra ID in a large enterprise environment. Practical experience with identity-based access, security groups, application assignments and entitlement models. Strong understanding of Conditional Access, MFA, device identity and compliance, and Zero Trust access controls. Private Access and ZTNA Hands-on implementation or operational experience with Microsoft Entra Global Secure Access, Entra Private Access or a comparable ZTNA platform. Practical understanding of Private Network Connectors, connector groups, registration, certificates and outbound connectivity. Experience designing resilient services and troubleshooting traffic forwarding, policy synchronisation and application connectivity. Candidates with experience from another ZTNA platform should clearly describe that experience and their knowledge of the Entra Private Access connector model. Networking and application connectivity Strong knowledge of DNS, TCP/IP, routing, firewalls, ports, TLS and HTTP/HTTPS. Experience troubleshooting access to internal applications and infrastructure services. Understanding of application segmentation and connectivity requirements for services such as file shares, RDP, databases and engineering applications. Production operations and technical leadership Experience operating business-critical services, including monitoring, logging, incident management and root-cause analysis. Experience with change and release management, operational documentation and support handover. Experience collaborating with SOC or security operations teams. Proven ability to lead technical work, coordinate across teams, make architectural decisions and mentor engineers. Ability to communicate clearly in English and work independently while taking responsibility for delivery and service quality. Meriting experience Microsoft Intune and Microsoft Defender. Entra Internet Access. Privileged access management, PIM, JIT access and access governance. Windows and macOS access scenarios. ServiceNow, Jira or similar service-management platforms. Security and compliance frameworks such as ISO 27001, NIST Zero Trust, DORA or GDPR. Structured risk assessments and business-impact analysis. Who you are You combine architectural thinking with practical troubleshooting skills. You can trace an access issue across identity policies, endpoint configuration, connectors and network dependencies, and work with the relevant teams to resolve it. You bring structure to an evolving platform, make clear technical decisions and balance security, user experience and operational reliability. Start date: 2026-10-19 End date: 2028-09-30 Position: Fulltime Location: Södertälje 3 days on site minimum Language: English (mandatory) and Swedish Important* Please submit the CV through the template attached in English.
Findigo hittar jobben och fyller i ansökan. Du klickar Skicka.
Visa jobbet och ansökUrsprunglig annons: app.verama.com