Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Enterprise Engineer role.
Rezi rewrites your resume against PhysicsX's job description. Free.

Tailor your resume to this Enterprise Engineer role.
Rezi rewrites your resume against PhysicsX's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Enterprise Engineer posting at PhysicsX — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Enterprise Engineer posting at PhysicsX — free, in seconds.
About the Role
We are seeking an experienced individual to own and evolve our Microsoft Entra ID environment, manage enterprise infrastructure as code, design and implement zero trust network access, and lead access reviews and least-privilege enforcement.
Responsibilities
- Own and evolve our Microsoft Entra ID environment: identity architecture, conditional access policies, MFA, PIM, SSO/SCIM integrations, and hybrid identity where relevant.
- Manage enterprise infrastructure as code in Terraform (identity, networking, and security tooling), so that configuration is versioned, reviewable, and repeatable.
- Design and implement zero trust network access, replacing legacy VPN patterns with modern SASE-based access control.
- Own MDM strategy and operations across the device fleet (macOS/Windows/Linux/Mobile): enrolment, compliance baselines, patch management, and endpoint security posture.
- Partner with the platform/DevOps team to keep enterprise IT and cloud (AWS, GCP, Azure) security postures are aligned and consistent.
- Lead access reviews, least-privilege enforcement, and identity governance work to support audits and compliance requirements (e.g., SOC 2, ISO 27001).
Requirements
- Designed and owned enterprise identity (Entra ID/Azure AD) at a company of meaningful size, not just administered an existing tenant.
- Treats zero trust as an architecture to build, not a buzzword to reference. Conditional access, device trust and posture validation, and least privilege as defaults.
- Comfortable owning MDM (Intune, Jamf, or similar) end-to-end: enrollment, compliance policy, patching, and lifecycle, across a mixed-OS fleet.
- Collaborative operator who partners well with security, platform engineering, and the wider business.
- Hands-on experience deploying and operating a SASE platform (e.g., Cloudflare One, Zscaler) in production, including policy design, not just administration of an existing setup.
- 5 - 10 years of experience in enterprise IT, security engineering, or identity/infrastructure roles, with deep, hands-on ownership of Microsoft Entra ID/Azure AD in production.
- Deep Conditional Access policy design experience, not just enabling MFA, but building risk based, device aware access rules.
- Experience with Entra ID Governance: Access Reviews, Identity Protection, Privileged Identity Management (PIM) at scale.
- SSO/SAML/OIDC federation and SCIM provisioning across a meaningful number of enterprise apps.
- Endpoint security tooling experience: EDR platforms (CrowdStrike, Defender for Endpoint, or similar)
- Scripting and automation ability (PowerShell, Python, or Microsoft Graph API) to automate identity and device workflows.
- Experience with hybrid identity (Entra Connect or on prem AD sync).
- Familiarity with compliance frameworks such as SOC 2, ISO 27001, and FedRAMP, able to translate control requirements into actual technical implementation (access reviews, logging, encryption, change management), not just pass an audit checklist.
Skills
- Microsoft Entra ID
- Azure AD
- Zero Trust Architecture
- Conditional Access
- Device Trust
- Posture Validation
- Least Privilege
- MDM
- Intune
- Jamf
- SASE
- Cloudflare One
- Zscaler
- Terraform
- AWS IAM
- Google Workforce Identity Federation
- EDR
- CrowdStrike
- Defender for Endpoint
- PowerShell
- Python
- Microsoft Graph API
- Entra Connect
- SOC 2
- ISO 27001
- FedRAMP
- Cloud IAM
- SIEM
- XDR
- GDPR
Location
- New York
Work Type
- Hybrid
Experience Level
- 5 - 10 years
Education Level
- Microsoft Certified: SC-300
- Microsoft Certified: SC-100
- Microsoft Certified: MD-102
- CompTIA Security+
- CCNA
Benefits
- Equity options
- 5% contribution to 401(k)
- Free team lunch 1x/week
- Private health insurance
- Enhanced parental leave (3 months full pay paternity, 6 months full pay maternity)
- 20 days of Annual Leave (+ Public Holidays)
- Personal development support
- Gympass / Wellhub (subsidized)
- Flexible Spending Account (FSA)
About the Company
- PhysicsX is a deep-tech company with roots in numerical physics and Formula One, dedicated to accelerating hardware innovation at the speed of software.
- We are building an AI-driven simulation software stack for engineering and manufacturing across advanced industries.
- By enabling high-fidelity, multi-physics simulation through AI inference across the entire engineering lifecycle, PhysicsX unlocks new levels of optimization and automation in design, manufacturing, and operations — empowering engineers to push the boundaries of possibility.
- Our customers include leading innovators in Aerospace & Defense, Materials, Energy, Semiconductors, and Automotive.
Equal Opportunity
- We value diversity and are committed to equal employment opportunity regardless of sex, race, religion, ethnicity, nationality, disability, age, sexual orientation or gender identity.
- We strongly encourage individuals from groups traditionally underrepresented in tech to apply.
- To help make a change, we sponsor bright women from disadvantaged backgrounds through their university degrees in science and mathematics.
- We collect diversity and inclusion data solely for the purpose of monitoring the effectiveness of our equal opportunities policies and ensuring compliance with UK employment and equality legislation.
- This information is confidential, used only in aggregate form, and will not influence the outcome of your application.