Assignment description
We are looking for an experienced Technical Lead – Microsoft Entra / Global Secure Access to support the design, implementation, operation and continued development of Microsoft Entra Global Secure Access, with an initial focus on Entra Private Access.
The role combines technical leadership, platform engineering, application onboarding, operational responsibility and advanced troubleshooting in a large enterprise environment. You will take a leading role in developing a scalable, secure and resilient Global Secure Access platform and work closely with the Product Owner, IAM team and stakeholders across Network, Endpoint, Security, SOC, Service Desk, Infrastructure and application teams.
You will own the technical design and continued development of the platform, including Entra Private Access architecture, Private Network Connectors, connector groups, high availability, failover, capacity planning, application segmentation and regional resilience. The role also includes configuring and governing application access through Microsoft Entra ID, Conditional Access, device compliance, multifactor authentication and Zero Trust principles.
A key part of the assignment is leading the onboarding and migration of internal applications from VPN and similar solutions to Private Access. You will analyse connectivity and authentication requirements, including DNS, TCP/IP, ports, routing and TLS, and establish technical standards, configuration baselines, deployment patterns and rollback procedures.
You will also be responsible for monitoring platform health, connector availability, capacity, traffic flows and policy synchronisation, as well as leading complex incident resolution, root-cause analysis and problem management. The role includes maintaining operational documentation, runbooks and troubleshooting guides and supporting security assessments, risk management, audits and service-readiness activities.
In addition, you will coordinate technical activities with Microsoft Support and internal platform teams, contribute to the future development of the service, including Entra Internet Access where relevant, and mentor other engineers to promote knowledge sharing and consistent technical ways of working.
Qualifications:
Microsoft Entra & Identity
- You have strong hands-on experience with Microsoft Entra ID in large enterprise environments.
- You have practical experience with identity-based access control, security groups, application assignments and entitlement models.
- You have a strong understanding of Conditional Access, including user, device, location, risk and session-based controls.
- You have experience implementing or operating multifactor authentication and Zero Trust access controls.
- You have a good understanding of device identity and compliance, preferably involving Microsoft Intune and Microsoft Defender.
Global Secure Access & Private Access
- You have hands-on experience with Microsoft Entra Global Secure Access, Entra Private Access or a similar Zero Trust Network Access solution.
- You have practical knowledge of Private Network Connectors, connector groups, connector registration, certificates and outbound connectivity.
- You have experience designing solutions for high availability, failover, resilience and capacity management.
- You are comfortable troubleshooting traffic forwarding, policy synchronisation and application connectivity issues.
Networking & Application Connectivity
- You have strong knowledge of DNS, TCP/IP, routing, firewalls, ports, TLS and HTTP/HTTPS.
- You have experience troubleshooting connectivity to internal applications, servers, databases and infrastructure services.
- You understand network segmentation and access control for different application and user groups.
- You can analyse technical requirements for services such as file services, RDP, engineering tools, databases and enterprise platforms.
Operations & Service Management
- You have experience operating business-critical services in production.
- You have strong skills in monitoring, logging, incident management and root-cause analysis.
- You have experience with change management, release management, technical documentation and operational handover.
- You can define support models, runbooks, escalation paths and service-management processes.
- You have experience collaborating with Security Operations or SOC teams during investigations and incidents.
Technical Leadership & Collaboration
- You have experience working as a Technical Lead, Platform Lead or Senior Engineer.
- You can make sound technical decisions and communicate them clearly to both technical and non-technical stakeholders.
- You have experience coordinating work across Identity, Network, Endpoint, Security, Infrastructure and application teams.
- You take strong ownership and are comfortable working independently in a developing product area.
- You have experience mentoring engineers and establishing consistent technical ways of working.
Meriting Experience
- It is meriting if you have experience with privileged access management, PIM, JIT access and access governance.
- A plus is experience with ServiceNow, Jira or similar IT service-management and workflow platforms.
- It is meriting if you have knowledge of ISO 27001, NIST Zero Trust, DORA, GDPR or similar security and compliance frameworks.
- Experience with risk assessments, BIA, TVA, IRAM or comparable information-security processes is considered an advantage.
- It is also meriting if you have experience supporting macOS and Windows access scenarios.
You are a structured, analytical and pragmatic technical professional who is comfortable working across both strategic architecture and detailed technical troubleshooting. You proactively identify risks, dependencies and operational weaknesses and are confident taking ownership and making technical decisions in an evolving environment.
You communicate clearly with both technical and non-technical stakeholders and collaborate effectively across multiple teams and technical domains. You have a service-oriented mindset and understand how to balance security, user experience, resilience and delivery speed.
As a Technical Lead, you are also comfortable mentoring other engineers, sharing knowledge and contributing to consistent technical standards and ways of working.
Ansök
”*” anger obligatoriska fält
Detaljer
Geografisk placering: SE, Södertälje
Distansarbete:Konsult behöver arbeta 100% på plats
Omfattning:100%
Startdatum:ASAP
Slutdatum:1 year
Publiceringsdatum:2026-09-24
Konsultförmedlare



