Job Description
The Role
Moderna is seeking a senior IAM Identity Engineer with deep expertise in Microsoft Entra ID to help design, build, and operate our workforce identity platform. This role combines technical leadership with hands-on engineering, focused on authentication, access management, and identity governance across the enterprise.
You’ll partner closely with another Senior IAM Engineer to deliver secure, scalable identity solutions, supporting both day-to-day operations and ongoing improvements in a fast-paced, highly regulated environment.
Here's What You’ll Do
Serve as a senior technical leader and hands-on engineer for Microsoft Entra ID, contributing to both platform strategy and daily operations
Partner closely with the Senior IAM Engineer to plan, prioritize, and execute identity platform initiatives and improvements
Lead and actively contribute to the design, implementation, and continuous improvement of Entra ID capabilities including SSO, MFA, Conditional Access, Identity Protection, and lifecycle automation
Drive and support the migration of applications and authentication patterns from Okta to Entra ID, including coexistence and phased transition strategies
Configure and maintain Enterprise Applications, App Registrations, API permissions, and authentication integrations (SAML, OIDC, OAuth)
Troubleshoot complex authentication and access issues, including SSO failures, Conditional Access conflicts, provisioning errors, and certificate-related issues
Design and implement Conditional Access policies aligned to Zero Trust principles, including device-based, risk-based, and location-based controls
Implement and manage phishing-resistant authentication methods such as FIDO2, Windows Hello for Business, and certificate-based authentication
Support identity lifecycle processes including provisioning, deprovisioning, group-based access, SCIM integrations, and role-based access controls
Lead and support Privileged Identity Management (PIM), including role design, least privilege enforcement, and access reviews
Partner with application owners, developers, and vendors to onboard and secure new applications and integrations
Evaluate the current identity environment, identify gaps, and drive improvements in security, scalability, and user experience
Support day-to-day IAM operations, including incident response, request fulfillment, and collaboration with Service Desk and engineering teams
Maintain documentation, runbooks, and implementation standards to ensure consistency and audit readiness
Collaborate with cybersecurity, infrastructure, endpoint, and compliance teams to align identity controls with enterprise security requirements
Here’s What You’ll Need (Basic Qualifications)
Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience)
8+ years of experience in IT, cybersecurity, or identity engineering
5+ years of hands-on experience with Microsoft Entra ID / Azure AD in an enterprise environment
Strong experience with SSO integrations (SAML, OAuth, OIDC), MFA, Conditional Access, and identity lifecycle management
Experience configuring and supporting Enterprise Applications, App Registrations, and API permissions
Hands-on experience with provisioning and automation, including SCIM and group-based access
Experience troubleshooting authentication and access issues across identity platforms and applications
Experience working in hybrid identity environments (Active Directory, Entra Connect, etc.)
Strong understanding of Zero Trust, least privilege, and identity security best practices
Experience working in fast-paced environments with the ability to manage multiple priorities
Here’s What You’ll Bring to the Table (Preferred Qualifications):
Experience with Okta Workforce Identity Cloud, including SSO, MFA, lifecycle management, and migrations to Entra ID
Experience leading or supporting identity platform migrations
Strong experience with Conditional Access design, authentication strengths, and Identity Protection
Experience implementing Privileged Identity Management (PIM) and access governance practices
Familiarity with B2B collaboration, External Identities, and enterprise application onboarding at scale
Experience with PowerShell, Microsoft Graph API, or other automation tools
Experience implementing passwordless authentication and phishing-resistant MFA
Experience working in regulated environments (GxP, SOX, etc.)
Relevant certifications such as Microsoft SC-300, MS-102, or similar
Pay & Benefits
At Moderna, we believe that when you feel your best, you can do your best work. That’s why our US benefits and global well-being resources are designed to support you—at work, at home, and everywhere in between.
Best-in-class healthcare coverage, plus voluntary benefit programs to support your unique needs
A holistic approach to well-being, with access to fitness, mindfulness, and mental health support
Family planning benefits, including fertility, adoption, and surrogacy support
Generous paid time off, including vacation, volunteer days, sabbatical, global recharge days, and a discretionary year-end shutdown
Savings and investment opportunities to help you plan for the future
Location-specific perks and extras
The salary range for this role is $145,900.00 - $234,200.00. This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An individual’s position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, performance, and business or organizational needs.

The successful candidate may be eligible for an annual discretionary bonus, other incentive compensation, or equity award, subject to company plan eligibility criteria and individual performance.
About Moderna
Since our founding in 2010, we have aspired to build the leading mRNA technology platform, the infrastructure to reimagine how medicines are created and delivered, and a world-class team. We believe in giving our people a platform to change medicine and an opportunity to change the world.
By living our mission, values, and mindsets every day, our people are the driving force behind our scientific progress and our culture. Together, we are creating a culture of belonging and building an organization that cares deeply for our patients, our employees, the environment, and our communities.
We are proud to have been recognized as a Science Magazine Top Biopharma Employer, a Fast Company Best Workplace for Innovators, and a Great Place to Work in the U.S.
If you want to make a difference and join a team that is changing the future of medicine, we invite you to visit modernatx.com/careers to learn more about our current opportunities.
Our Working Model
As we build our company, we have always believed an in-person culture is critical to our success. Moderna champions the significant benefits of in-office collaboration by embracing a 70/30 work model. This 70% in-office structure helps to foster a culture rich in innovation, teamwork, and direct mentorship. Join us in shaping a world where every interaction is an opportunity to learn, contribute, and make a meaningful impact.
Moderna is a smoke-free, alcohol-free, and drug-free work environment.
Equal Opportunities
Moderna is committed to equal employment opportunity and non-discrimination for all employees and qualified applicants without regard to a person's race, color, sex, gender identity or expression, age, religion, national origin, ancestry or citizenship, ethnicity, disability, military or protected veteran status, genetic information, sexual orientation, marital or familial status, or any other personal characteristic protected under applicable law. Moderna is a place where everyone can grow. If you meet the Basic Qualifications for the role and you would be excited to contribute to our mission every day, please apply!
Moderna is an E-Verify Employer in the United States. We consider qualified applicants regardless of criminal histories, consistent with legal requirements.
Accommodations
We’re focused on attracting, retaining, developing, and advancing our employees. By cultivating a workplace that values diverse experiences, backgrounds, and ideas, we create an environment where every employee can contribute their best.
Moderna is committed to offering reasonable accommodations to qualified job applicants with disabilities. Any applicant requiring an accommodation in connection with the hiring process and/or to perform the essential functions of the position for which the applicant has applied should contact the Accommodations team at leavesandaccommodations@modernatx.com.
Export Control Notice
This position may involve access to technology or data that is subject to U.S. export control laws, including the Export Administration Regulations (EAR). As such, employment is contingent upon the applicant’s ability to access export-controlled information in accordance with U.S. law. Due to the nature of the work and regulatory requirements, only individuals who qualify as U.S. persons (citizens, permanent residents, asylees, or refugees) are eligible for this position. For this role Moderna is unable to sponsor non-U.S. persons to apply for an export control license.
#LI-CK1
-