Senior Information Security Engineer - Entra; Remote OR MA
Massachusetts, USA
Listed on 2026-01-14
-
IT/Tech
Cybersecurity, Systems Engineer
Senior Information Security Engineer - Entra (REMOTE OR MA BASED)
Join The Hanover Insurance Group as a Senior Information Security Engineer. The role is located in Worcester, MA or can be performed remotely.
POSITION OVERVIEWThe Senior Information Security Engineer will lead the design, implementation, and management of identity and access solutions using Microsoft Entra (Entra /Azure AD, Entra External /B2C, and related components). The position ensures secure, scalable, and user-friendly identity experiences across internal and external platforms. This is a full‑time, exempt role.
IN THIS ROLE, YOU WILL:Identity Architecture & Engineering
- Design and implement scalable identity solutions with Entra B2C.
- Integrate cloud and on‑prem systems for SSO, MFA, and Just‑In‑Time provisioning.
- Deploy secure authentication flows (OAuth2, OpenID Connect, SAML, Conditional Access).
- Build and maintain custom policies using Identity Experience Framework (IEF).
- Manage Trust Framework Policy XML files, REST API integrations, claims transformations, and multi‑step authentication.
- Customize user journeys (sign‑up, sign‑in, password reset, profile editing).
- Troubleshoot and optimize policies using Application Insights and B2C logs.
- Manage lifecycle processes (provisioning, de‑provisioning, access reviews).
- Administer Privileged Identity Management (PIM), Access Packages, and Conditional Access.
- Ensure compliance with frameworks such as NIST and ISO 27001.
- Stay current with Microsoft Entra roadmap and IAM technologies.
- Partner with application teams and stakeholders to deliver secure identity solutions.
- Integrate Entra third‑party and on‑prem systems.
- Provide technical leadership and mentor junior engineers.
- 5+ years in identity engineering, SDLC‑based solution development, and Active Directory support.
- Bachelor’s degree in computer science, information technology, or related field, or equivalent combination of education, training and experience.
- Deep knowledge of Microsoft Entra B2C, including custom policy development.
- Strong understanding of IAM frameworks, governance, and modern authentication protocols.
- Experience with hybrid identity, Active Directory, and troubleshooting multi‑tenant environments.
- Proficiency in Power Shell, Kusto, Azure CLI, automation, and secure API solutions.
- Familiarity with audit, log analytics, Dev Ops, monitoring, and reporting in Azure/Entra.
- Background in architecture, IAM roadmaps, and exposure to AI/ML for technology enhancements.
- Strong problem‑solving, communication, and documentation skills.
- Ability to lead, mentor, and collaborate across teams.
- Skilled in presentations, training, and customer‑focused troubleshooting.
- Must be eligible to work in the US without requiring sponsorship now or in the future (i.e., lawful permanent residence or US citizen).
- Microsoft certifications (SC‑300, SC‑100, AZ‑500).
- Knowledge of CI/CD pipelines, Dev Sec Ops , hybrid identity, and ADFS.
We support you with on‑the‑job experiences, personalized coaching, and robust learning and development programs.
BENEFITS- Medical, dental, vision, life, and disability insurance
- 401(k) with company match
- Tuition reimbursement
- PTO
- Company paid holidays
- Flexible work arrangements
- Cultural Awareness Day in support of IDE
- On‑site medical/wellness center (Worcester only)
The Hanover values diversity in the workplace and among our customers. The company provides equal opportunity for employment and promotion to all qualified employees and applicants on the basis of experience, training, education, and ability to do the available work without regard to race, religion, color, age, sex/gender, sexual orientation, national origin, gender identity, disability, marital status, veteran status, genetic information, ancestry or any other status protected by law.
The Hanover Insurance Group is committed to a workplace that is free of discrimination and harassment based on national origin, race, color, religion, gender, ancestry, age, sexual orientation, gender identity, disability, marital status, veteran status, genetic information or any other status protected by law.
Target hiring range may vary based on geographic location and other factors such as merit, performance, skills, education, travel requirements, and experience. Additional compensation may include annual bonuses, long‑term incentive, or spot recognition awards.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).