IT
Senior Identity Architect & Engineer (f/m/d) @ A1 Competence Delivery Center
Strength. Care. Growth
A1 Competence Delivery Center is a vital component of A1’s telecommunications business. Acting as an expertise hub, CDC is dedicated to delivering a full range of high-quality IT, network, financial and other services to support A1’s operations across all OpCos, independent of location.
Using the power of being OneGroup and leveraging synergies, CDC enables transparency of resources, key skills and knowledge expansion and personal career growth opportunities’ enhancement, paired with job stability.
You will know we are the right place for you, if you are driven by:
- Opportunities to learn and build your career.
- Meaningful work in a stable and fast-paced company.
- Diversity of people, projects, and platforms.
- A supportive, fun, and inspiring place to work.
Role Overview:
We are looking for an experienced Identity Engineer/Architect to design, operate, and secure enterprise identity services across on-premises and cloud environments.
The role spans ADDS, ADCS, ADFS, Tier 0 infrastructure, and Microsoft Entra ID, including ownership of critical security components.
Role Insights
- Design, implement, and operate Active Directory (multi-domain / multi-forest), Public Key Infrastructure (ADCS), federation services (ADFS), and hybrid identity with Microsoft Entra ID.
- Own and enforce Tier 0 security architecture.
- Lead incident resolution for critical identity outages.
- Define and improve hardening standards, monitoring and alerting concepts, and patch/lifecycle processes.
- Analyze and remediate security risks such as misconfigurations and legacy setups.
- Drive standardization across multiple environments and domains.
- Support audits (e.g., SOX controls) and compliance requirements.
- Mentor junior engineers and support knowledge transfer.
- Participate in on-call rotation for critical services.
What Makes You Unique:
- Strong hands-on experience with Active Directory (design, troubleshooting, operations).
- Deep knowledge of Group Policies, DNS, and authentication flows.
- Solid expertise in ADCS (PKI design, certificate lifecycle, and security).
- Experience with ADFS or other federation technologies.
- Knowledge of Microsoft Entra ID (hybrid identity, synchronization, access control).
- Good understanding of Windows Server internals.
- Strong networking knowledge (including firewalls and segmentation).
- Solid understanding of security concepts (Tiering, least privilege, privileged access).
- Advanced PowerShell skills for automation and scripting.
- Experience working in complex enterprise environments (multi-domain, multi-country setups).
Nice to Have:
- Experience with identity providers (e.g., Ping, ADFS alternatives).
- Familiarity with monitoring tools such as Splunk or SCOM.
- Experience with cloud and hybrid environments (e.g., Azure).
- Experience in incident management for critical systems.
- Familiarity with audit and compliance frameworks (e.g., SOX).
Our gratitude for the job done will be eternal, but we’ll also offer you:
- Valuable experience in one of the fastest-growing and most innovative industries.
- Challenging assignments with strong opportunities for personal and professional growth in a multinational environment.
- Hybrid working model supporting a healthy work-life balance.
- Thousands of online and in-person Learning opportunities for you to grow.
- Modern, open, and friendly work environment that fosters continuous learning and the development of both technical and soft skills.
- Special employee tariffs and a wide range of attractive employee benefits.
If you have any questions, please do not hesitate to contact Mariya Ivanova