← Tillbaka till jobb

Technical Lead

  • På plats
  • Sverige
  • Engelska
  • Publicerad 06.10.26 13:15

We are looking for an experienced Technical Lead - Microsoft Entra / Global Secure Access to support the design, implementation, operation, and continued development of Microsoft Entra Global Secure Access, with an initial focus on Entra Private Access. Key ResponsibilitiesOwn the technical design and continued development of the Microsoft Entra Global Secure Access platform.Design and maintain scalable Entra Private Access architecture, including:Private Network ConnectorsConnector groupsHigh availability and failoverCapacity planningApplication segmentationRegional and data-centre resilienceConfigure and govern application access using:Microsoft Entra IDSecurity groupsApplication assignmentsConditional AccessDevice complianceMultifactor authenticationZero Trust principlesLead onboarding and migration of internal applications from VPN and similar solutions to Private Access.Analyze application connectivity requirements, including DNS, TCP/IP, ports, routing, authentication, and TLS.Establish technical standards, configuration baselines, deployment patterns, and rollback procedures.Monitor platform health, connector availability, capacity, traffic flows, authentication, and policy synchronization.Lead complex incident resolution, root-cause analysis, and problem management.Develop and maintain operational documentation, runbooks, troubleshooting guides, and support procedures.Support security assessments, risk management, audit activities, and service readiness reviews.Coordinate technical activities with Microsoft Support and internal platform teams.Contribute to future expansion of the service, including Entra Internet Access where relevant.Mentor other engineers and promote knowledge sharing.Ensure changes are implemented through appropriate change-management and release processes. Must-Have Skills & ExperienceMicrosoft Entra & IdentityStrong hands-on experience with Microsoft Entra ID in a large enterprise environment.Practical experience with identity-based access control, security groups, application assignments, and entitlement models.Strong understanding of Conditional Access, including user, device, location, risk, and session-based controls.Experience implementing or operating multifactor authentication and Zero Trust access controls.Good understanding of device identity and compliance, preferably involving Microsoft Intune and Microsoft Defender. Global Secure Access & Private AccessHands-on experience with Microsoft Entra Global Secure Access, Entra Private Access, or a similar Zero Trust Network Access (ZTNA) solution.Practical understanding of Private Network Connectors, connector groups, connector registration, certificates, and outbound connectivity.Experience designing for high availability, failover, resilience, and capacity management.Ability to troubleshoot traffic forwarding, policy synchronization, and application connectivity issues. Networking & Application ConnectivityStrong knowledge of:DNSTCP/IPRoutingFirewallsPortsTLSHTTP/HTTPSExperience troubleshooting connectivity to internal applications, servers, databases, or infrastructure services.Understanding of network segmentation and access control for different application and user groups.Ability to analyze technical requirements for applications such as file services, RDP, engineering tools, databases, and enterprise platforms. Operations & Service ManagementExperience operating business-critical services in production.Strong skills in monitoring, logging, incident management, and root-cause analysis.Experience with change management, release management, technical documentation, and operational handover.Ability to define support models, runbooks, escalation paths, and service-management processes.Experience working with Security Operations or SOC teams during investigations and incidents. Technical Leadership & CollaborationDemonstrated experience as a Technical Lead, Platform Lead, or Senior Engineer.Ability to make sound technical decisions and communicate them clearly to technical and non-technical stakeholders.Experience coordinating work across Identity, Network, Endpoint, Security, Infrastructure, and Application teams.Strong ownership mentality and ability to work independently in a developing product area.Ability to mentor engineers and establish consistent technical ways of working. Preferred ExperienceExperience with privileged access management, PIM, JIT access, and access governance.Experience with ServiceNow, Jira, or similar IT service-management and workflow platforms.Knowledge of ISO 27001, NIST Zero Trust, DORA, GDPR, or similar security and compliance frameworks.Experience with risk assessments, BIA, TVA, IRAM, or comparable information-security processes.Experience supporting macOS and Windows access scenarios. Assignment DetailsLocation: Södertälje, SwedenWorking model: HybridOn-site requirement: Minimum 3 days per week on-siteStart: As soon as possibleDuration: Estimated 1-year assignmentScope: 100% / Full-timeLanguage: Fluent English required