Demo

Active Directory & Identity Engineer

COGENT Infotech
Plano, TX Full Time
POSTED ON 6/2/2026
AVAILABLE BEFORE 10/19/2026

About Cogent Infotech

At Cogent Infotech, we believe in creating opportunities that empower individuals and transform organizations. With over 21 years of excellence in consulting and talent solutions, we pride ourselves on building inclusive workplaces and driving innovation in everything we do. Our diverse teams bring unique perspectives to help deliver cutting-edge solutions to global clients across both public and private sectors.


Job Title: Active Directory & Identity Engineer/ Architect

Location: Plano, TX


Full time role


Onsite Role

Summary:

The Active Directory & Identity Engineer will serve as the bridge between IT operations and cybersecurity, moving beyond simple account creation to architect a secure, automated, and compliant identity ecosystem. This position will be responsible for implementing next-generation Identity Governance (IGA) and lead our transition to a continuous compliance model, leveraging automation, machine learning, and automated UI interactions to secure every application, even those without standard APIs. The IAM Governance Engineer will be the subject matter expert responsible for ensuring that the right individuals have access to the right resources at the right time and validating that access through rigorous governance.


Responsibilities:

  • Serve as the primary owner of our Identity Governance and Administration (IGA) platform.
  • Ensure the system provides 100% visibility into user access across the enterprise, ingesting data accurately from HRIS, Active Directory, and ERPs.
  • Utilize machine learning (ML) and peer-group analysis to ensure dynamic group management. Design policies that adapt to business changes and reduce "role explosion."
  • Orchestrate monthly and quarterly access certification campaigns. Reduce "reviewer fatigue" by implementing intelligent risk scoring, allowing managers to focus only on high-risk or anomalous access.
  • Configure automated workflows to ensure that when access is revoked during a review, the change is immediately executed in the target application or ITSM tool without manual intervention.
  • Develop strategies to ingest identity data from "unmanageable" or legacy applications that lack native APIs and bring these isolated systems into the central governance framework using automated UI interactions.
  • Establish monitoring to detect unauthorized permission changes ("access drift”) made directly in applications outside of formal approval processes—and trigger automated remediation.
  • Lead the technical design for enterprise IAM solutions, ensuring all authentication methods adhere to modern standards (SAML 2.0, OIDC, OAuth).
  • Enforce a strict "Identity First" policy for new software. Ensure all SaaS and on-premises applications are integrated into the SSO and IGA platforms before go-live.
  • Map and govern granular permissions within cloud infrastructure (AWS/Azure/GCP) to ensure resources are not over-privileged.
  • Manage the enterprise Multi-Factor Authentication (MFA) platform to enforce zerotrust access. Serve as the owner of the Public Key Infrastructure (PKI), managing internal Certificate Authorities (CAs) and the lifecycle of digital certificates.
  • Manage and support the health of Active Directory (on-prem) and Microsoft Entra ID (Azure AD), ensuring high availability and secure replication.
  • Ensure the "Joiner, Mover, Leaver" (JML) processes are optimized and automated to allow immediate access for new hires (Onboarding) and real-time revocation for terminations (Offboarding).
  • Utilize PowerShell and API integrations to automate bulk tasks, reporting, and complex attribute syncing between systems.
  • Work closely with the Security Operations Center to integrate IAM logs with the SIEM. Proactively tune alerts for identity-based threats such as impossible travel or credential theft.
  • Oversee the PAM solution to secure and rotate credentials for high-value administrative accounts.
  • Design and enforce strict policies for non-employee identities (contractors, vendors).
  • Ensure external access is time-bound, sponsored by an internal manager, and subject to frequent review cycles.


Qualifications:

Minimum:

  • Bachelor’s degree or an equivalent amount of experience.
  • 5-7 years of hands-on experience in Identity and Access Management or Systems Engineering.
  • Integration Expertise: Experience connecting "disconnected" or legacy applications to identity platforms using JSON, CSV parsing, or automated UI interaction techniques.
  • Deep expertise in Active Directory (Group Policy, DNS, Forest/Domain architecture) and Microsoft Entra ID/Azure AD.
  • Strong proficiency in PowerShell or Python for automation and data manipulation.
  • Experience managing PKI (Public Key Infrastructure) and Certificate Authorities.
  • Experience working directly with auditors to prove compliance and explain "who has access to what and why."
  • Ability to mentor junior administrators and ServiceDesk staff, raising the technical proficiency of the team.
  • Strong analytical and problem-solving skills with the ability to make sound decisions under pressure.
  • Strong ability to explain complex security risks to non-technical business stakeholders.


Preferred:

  • Bachelor’s degree in computer science, Information Systems, or equivalent experience.
  • Experience with Cloud Infrastructure Entitlement Management (CIEM) concepts.
  • Certifications: Microsoft Identity and Access Administrator Associate (SC-300).


Cogent Infotech is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment where everyone feels welcome and valued. We encourage applications from individuals of all backgrounds, identities, abilities, and experiences. If you’re excited about this role but don’t meet every requirement, we still encourage you to apply

Join Us

At Cogent Infotech, your ideas matter. Join a purpose-driven organization that celebrates diversity, encourages collaboration, and invests in your future.

Salary.com Estimation for Active Directory & Identity Engineer in Plano, TX
$74,982 to $99,735
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Active Directory & Identity Engineer?

Sign up to receive alerts about other jobs on the Active Directory & Identity Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$27,838 - $39,876
Income Estimation: 
$44,199 - $55,861
Income Estimation: 
$94,625 - $127,578
Income Estimation: 
$132,795 - $178,786
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at COGENT Infotech

  • COGENT Infotech Washington, DC
  • Job Title : Technical Service Support - Tier 2 Location: Washington, DC Duration: 1 year renewable with possibility of FTE over time Fully Onsite Role Pref... more
  • 1 Day Ago

  • COGENT Infotech Clark, NJ
  • Job Title - Chemist I (Formulations and Haircare) Location - Clark, NJ, 07066 Duration - 3 Months (Possible extension) About Us: At Cogent Infotech, we bel... more
  • 1 Day Ago

  • COGENT Infotech Billerica, MA
  • PRODUCTION/PLANNING SUPERVISOR Billerica, MA Permanent/ Direct Hire Job Summary Seeking a Production Supervisor reporting to the Operations Manager, tasked... more
  • 1 Day Ago

  • COGENT Infotech Woburn, MA
  • Senior Product Development Engineer - Manufacturing Woburn, MA Permanent In this highly visible role within the Engineering department, the selected candid... more
  • 1 Day Ago


Not the job you're looking for? Here are some other Active Directory & Identity Engineer jobs in the Plano, TX area that may be a better fit.

  • Jobs via Dice Plano, TX
  • Dice is the leading career destination for tech experts at every stage of their careers. Our client, Cogent Infotech Corp, is seeking the following. Apply ... more
  • 18 Days Ago

  • North Texas Tollway Authority Plano, TX
  • Summary: The Active Directory & Identity Engineer will serve as the bridge between IT operations and cybersecurity, moving beyond simple account creation t... more
  • 19 Days Ago

AI Assistant is available now!

Feel free to start your new journey!