Job Title : IAM / Active Directory L3 Engineer
Locations : Hyderabad, Bangalore, Chennai, NCR
Experience : 6-10 years (L3 Level)
Work Mode : 5 days / week
Notice Period : Immediate to 15 days preferred
About the Role :
We are urgently seeking a highly skilled IAM / Active Directory L3 Engineer to join our clients IT Infrastructure and Identity & Access Management (IAM) team. This role focuses on managing and optimizing the organizations Active Directory infrastructure and associated identity management processes. The ideal candidate will ensure the security, availability, and operational efficiency of identity services while driving automation and compliance initiatives.
Key Responsibilities :
- Manage and optimize the Active Directory (AD) environment, including user account lifecycle managementcreation, modification, and termination.
- Configure and maintain user objects, Organizational Units (OUs), and Group Policy Objects (GPOs) to enforce security and operational policies.
- Administer and troubleshoot FSMO roles, AD replication, authentication, and trust relationships.
- Implement and support ADFS, Azure AD, and Single Sign-On (SSO) solutions to enhance secure access.
- Develop and maintain automation scripts using PowerShell and Python to streamline identity management and operational workflows.
- Conduct regular security compliance audits and access reviews to ensure adherence to organizational policies and standards.
- Collaborate with cross-functional teams to support identity lifecycle management processes including provisioning, de-provisioning, and access reviews.
- Troubleshoot complex IAM and AD-related issues, providing L3 support and escalation resolution.
- Maintain detailed documentation of processes, configurations, and troubleshooting guides.
Required Skills and Experience :
6 to 10 years of experience in Active Directory and Identity & Access Management at an L3 support level.Strong expertise in Active Directory administration including Group Policy management and FSMO roles.Hands-on experience with ADFS, Azure AD, and Single Sign-On (SSO) implementations.Proven experience with identity lifecycle management processes including provisioning, de-provisioning, and access reviews.Advanced troubleshooting skills related to authentication failures, trust issues, and replication problems.Proficient in PowerShell scripting for automation of AD and IAM tasks; experience with Python scripting is a plus.Thorough knowledge of security compliance standards and auditing within IAM environments.Preferred Qualifications :
Relevant certifications such as MCSE or Microsoft Certified : Identity & Access Administrator.Experience with Privileged Access Management solutions like CyberArk or BeyondTrust.Familiarity with Identity Governance tools such as SailPoint, Okta, or Ping Identity.Exposure to cloud IAM services including Azure AD and AWS IAM.(ref : hirist.tech)