Job Overview
We are seeking an experienced Active Directory Engineer to join our global infrastructure and identity team.
The ideal candidate will have strong fundamentals in Active Directory replication, GPO management, DNS, and security hardening, along with excellent communication skills to work effectively during overlapping US hours.
Key Responsibilities
- Manage and support Active Directory Domain Controllers and AD-integrated DNS.
- Troubleshoot replication, authentication, and group policy issues.
- Implement security hardening and privileged access controls (JIT, RBAC).
- Monitor and validate AD health, replication, and event logs.
- Work with senior AD / Entra engineers to execute forest design and resiliency improvements.
- Participate in incident response, patching, and DR validation activities.
- Document configurations, processes, and scripts consistently.
Required Skills & Experience
3–5 years of hands-on experience managing Microsoft Active Directory and DNS in enterprise environments.Proficient in PowerShell scripting for automation and reporting.Strong understanding of AD Sites and Services, FSMO roles, SYSVOL, and Group Policy lifecycle.Familiarity with Azure AD / Entra ID, Defender for Identity, and Sentinel is an advantage.Knowledge of CIS Level 1 & 2 hardening guidelines.Ability to work independently and communicate clearly during overlapping US hours.Preferred Qualifications
Exposure to Disaster Recovery testing and backup / restore procedures for DCs.Experience with monitoring dashboards (Datadog / Power BI) for AD health.Familiarity with cloud-hosted (IaaS) DCs in Azure or AWS.