Skip To Main Content
backBack to Search

CIAM Architect

Hybrid in Canada: Toronto
Security.IAM& 2 others
hot
Looking for something else?

Find a vacancy that works for you. Send us your CV to receive a personalized offer.

Find me a job

We are seeking a skilled CIAM Architect to design, implement, and maintain secure customer identity and access management solutions built on Microsoft Entra External ID and Azure AD B2C. The ideal candidate will work closely with development teams to deliver seamless, secure authentication experiences for customer-facing applications while ensuring robust identity protection and compliance standards.

Req# 1074956258

Responsibilities
  • Design and implement Microsoft Entra External ID / Azure AD B2C solutions for customer-facing applications
  • Configure user sign-up, sign-in, password reset, MFA, and account management workflows
  • Implement authentication using OAuth 2.0, OpenID Connect, and SAML, and integrate external identity providers such as Google, Microsoft, Facebook, and enterprise IdPs
  • Develop and maintain custom authentication policies and user flows
  • Set up application registrations, redirect URIs, scopes, claims, and permissions
  • Connect Entra External ID with web, mobile, and API applications
  • Troubleshoot authentication, authorization, token, and federation issues
  • Apply security controls including MFA, Conditional Access, and identity protection
  • Collaborate with development teams to integrate MSAL and secure APIs
  • Monitor authentication activity and investigate security or login-related issues
  • Support migration efforts from Azure AD B2C to Microsoft Entra External ID
  • Automate identity configurations using Azure CLI, PowerShell, ARM/Bicep, or Terraform, and document architecture, configurations, and operational procedures
Requirements
  • 5+ years of experience in identity and access management architecture and implementation
  • Expertise in Microsoft Entra External ID and Azure AD B2C solution design
  • Proficiency in OAuth 2.0, OpenID Connect, and SAML authentication protocols
  • Experience integrating external identity providers such as Google, Microsoft, and Facebook
  • Skills in configuring application registrations, redirect URIs, and scopes/claims/permissions
  • Familiarity with MSAL integration and secure API development practices
  • Knowledge of Conditional Access, MFA, and identity protection mechanisms
  • Capability to automate identity configurations using Azure CLI, PowerShell, and Terraform/ARM/Bicep
  • Understanding of authentication troubleshooting, including token and federation issue resolution
  • Background in supporting migrations from Azure AD B2C to Microsoft Entra External ID