Quick Overview
Job Description
Necessary skills:
- Configuration, management, and troubleshooting of on-premises Multi-Domain Active Directory environments, including Domain Controllers, Group Policy Objects (GPOs), and Patch management.
- Strong Knowledge Active Direcotry replication, site topology design, and conflict resolution.
- Proficient knowledge of Kerberos authentication, NTLM, and secure credential handling.
- Configuring and managing Azure AD Connect for secure synchronization between on-premises Active Directory and Azure AD in hybrid identity environments.
- Install, configure, and maintain Windows Server operating systems, virtual machines, and Active Directory infrastructure to ensure high availability and security.
- Knowledge of Managing Virtual machines in Azure VMs, EC2 instances and VMware.
- Manage Azure AD Connect for seamless synchronization between on-prem AD and Azure AD, with a strong focus on maintaining integrity and performance of the on-prem identity source.
- Administer and monitor Microsoft Defender for Identity (MDI) sensors across domain controllers to detect and respond to identity-based threats.
- Design and implement authentication and authorization frameworks primarily for on-premises identity systems, with supplementary support for cloud identity platforms (Azure AD, AWS, Google Cloud Platform) as needed.
- Collaborate with internal teams and vendors to gather requirements and deliver robust Active Directory-based identity solutions, ensuring compatibility with enterprise applications and services.
- Develop and maintain architectural diagrams and documentation for on-prem identity infrastructure, including GPO structures, OU design, and trust relationships.
- Evaluate, design, and implement Active Directory and Single Sign-On (SSO) solutions, focusing on secure, scalable, and cost-effective identity management within the on-prem environment.
- Drive continuous improvement in IAM security architecture, enhancements to on-prem identity systems and introducing best practices for GPO management and AD hardening.
- Work closely with teams across information security, infrastructure, and architecture to ensure alignment of identity services with organizational goals and compliance requirements.
Good to have skills:
- Knowledge of Quest Active Roles Server, Recovery manager and Semperis
- Microsoft Certifications.
- Powershell Scripting
Similar jobs
- PI
Systems Administrator III (Windows Infrastructure Engineer/Architect) - Washington, DC, USA, 20580 ( Hybrid -2 days/week flexible)
NewProtos IT
Washington, DC🇺🇸HybridYesterdayFiberAWSOAuth+14Technology - NO
Systems Administrator - Multiple Levels
NewNoblis
San Diego, CA🇺🇸$71.8k - $135.6k/yrOn-siteYesterdayAgileComplianceHelp DeskTechnology - BT
Junior System Administrator
NewBoston Technology Corporation
Boston, MA🇺🇸HybridYesterdayActive DirectoryTechnology - PI
Software Systems Admin (Senior OpenShift/Kubernetes GitOps and CI/CD Engineer)
NewProtos IT
United States🇺🇸RemoteYesterdayDockerAzureDatadog+6Technology - AS
System Engineer
Apex Systems
Jersey City, NJ🇺🇸Hybrid5 days agoJiraPowerShellVMwareTechnology - BS
Associate Systems Administrator
NewBayside Solutions
Fort Mill, SC🇺🇸$33 - $36/hrOn-siteYesterdayActive DirectoryInventory ManagementMicrosoft Office+1Technology