Lead, Identity Engineer- EntraID

Posted:
3/1/2026, 1:45:11 PM

Location(s):
Tamil Nadu, India ⋅ Chennai, Tamil Nadu, India

Experience Level(s):
Senior

Field(s):
Customer Success & Support

Workplace Type:
Hybrid

Company Overview

KLA is a global leader in diversified electronics for the semiconductor manufacturing ecosystem. Virtually every electronic device in the world is produced using our technologies. No laptop, smartphone, wearable device, voice-controlled gadget, flexible screen, VR device or smart car would have made it into your hands without us. KLA invents systems and solutions for the manufacturing of wafers and reticles, integrated circuits, packaging, printed circuit boards and flat panel displays. The innovative ideas and devices that are advancing humanity all begin with inspiration, research and development. KLA focuses more than average on innovation and we invest 15% of sales back into R&D. Our expert teams of physicists, engineers, data scientists and problem-solvers work together with the world’s leading technology providers to accelerate the delivery of tomorrow’s electronic devices. Life here is exciting and our teams thrive on tackling really hard problems. There is never a dull moment with us.

Group/Division

The Information Technology (IT) group at KLA is involved in every aspect of the global business. IT’s mission is to enable business growth and productivity by connecting people, process, and technology. It focuses not only on enhancing the technology that enables our business to thrive but also on how employees use and are empowered by technology. This integrated approach to customer service, creativity and technological excellence enables employee productivity, business analytics, and process excellence.

Job Description/Preferred Qualifications

Key Responsibilities

  • Manage, maintain, and optimize Microsoft Entra ID including groups, access policies, SSO integrations, applications, and conditional access.
  • Support and improve Multi‑Factor Authentication (MFA) and Conditional Access policies.
  • Troubleshoot synchronization and identity flow issues across hybrid identities using Entra Connect / Cloud Sync.
  • Administer and support Active Directory (users, groups, GPOs, OU structure, domain controllers).
  • Implement and maintain identity lifecycle automation including provisioning, deprovisioning, and role-based access control (RBAC).
  • Configure and manage SSO / federation services (SAML, OAuth, OpenID Connect, SCIM).
  • Enforce identity governance best practices and assist in access certification and audit activities.
  • Support Zero‑Trust initiatives focused on identity hardening and secure authentication.
  • Monitor and respond to identity-related incidents, alerts, and vulnerabilities.
  • Create and enhance automation with PowerShell, Graph API, and Entra automation tools.
  • Assist in integrating SaaS and on‑prem applications with Entra ID for SSO and automated provisioning.
  • Work closely with security, cloud, and infrastructure teams to implement identity solutions.
  • Participate in IAM roadmap planning, solution design, and documentation.
  • Support migration efforts to modern identity platforms and cloud‑first authentication models.

Minimum Qualifications

  • 3–6 years of experience in Identity & Access Management or equivalent technical roles.
  • Strong expertise with Microsoft Entra ID (Azure Active Directory) including:
    • Conditional Access
    • Identity protection
    • App registrations & enterprise apps
    • OAuth/OIDC/SAML integrations
  • Good experience with on‑prem Active Directory:
    • Domain administrationCe
    • Group Policy
    • Site topology & replication
  • Hands-on experience managing Entra Connect or Cloud Sync.
  • Proficiency with PowerShell for IAM automation.
  • Solid understanding of authentication/authorization protocols (SAML, OAuth 2.0, OIDC, Kerberos).
  • Experience supporting MFA, RBAC, privileged access, and identity governance processes.
  • Certifications in Microsoft Azure or security is a huge plus.

We offer a competitive, family friendly total rewards package. We design our programs to reflect our commitment to an inclusive environment, while ensuring we provide benefits that meet the diverse needs of our employees.

KLA is proud to be an equal opportunity employer

Be aware of potentially fraudulent job postings or suspicious recruiting activity by persons that are currently posing as KLA employees.  KLA never asks for any financial compensation to be considered for an interview, to become an employee, or for equipment. Further, KLA does not work with any recruiters or third parties who charge such fees either directly or on behalf of KLA. Please ensure that you have searched KLA’s Careers website for legitimate job postings.  KLA follows a recruiting process that involves multiple interviews in person or on video conferencing with our hiring managers.  If you are concerned that a communication, an interview, an offer of employment, or that an employee is not legitimate, please send an email to [email protected] to confirm the person you are communicating with is an employee. We take your privacy very seriously and confidentially handle your information.