Expert Active Directory - Villeneuve d'Ascq H/F
Role details
Job location
Tech stack
Job description
Support for BUILD Entra ID Expert Strong project constraint, * Maintain and optimize the existing Active Directory infrastructure, ensuring security, integrity, and compliance
- Consolidate and standardize systems, manage obsolescence, and protect the environment against security breaches
- Maintain a high level of security and ensure compliance
Requirements
- In-depth expertise in Active Directory (AD): design, configuration, management of multi-domain environments, Group Policy Objects (GPO), federation, trusts, etc.
- Experience with identity and access management (IAM): authentication, authorization, account management, passwords, LDAP, Kerberos, SAML protocols
- PKI (Public Key Infrastructure): management of certificates, Certification Authorities, and related security practices
- AD security and auditing: vulnerability detection, secure configuration, audit tools (e.g., PingCastle, BloodHound, etc.)
- Scripting and automation: PowerShell, scripts for managing, maintaining, and deploying AD components
- Migration and upgrade management: planning migrations, consolidations, and environment updates
- Knowledge of other Microsoft components: DNS, DHCP, Exchange, WSUS, etc.
- Management of Managed Service Accounts (MSA) & Group Managed Service Accounts (GMSA): creation, deployment, management, and best practices for securing and automating service accounts
- Understanding security standards and compliance regulations: GDPR, ISO/IEC 27001, etc.
Methodological tasks:
- Technical project management: planning, implementation, documentation, and change management
- Risk analysis and vulnerability management: ability to identify, analyze, and remediate security weaknesses
- Compliance management: conducting regular audits, reporting, and certification processes
- Advanced troubleshooting and diagnostic skills: resolving complex AD-related incidents
Interpersonal and soft tasks:
- Effective communication: explaining technical concepts to non-technical stakeholders
- Analytical and synthesis skills: quickly understanding technical challenges and proposing solutions
- Proactivity and autonomy: anticipating security and performance issues before they arise
- Teamwork and mentoring: sharing best practices and training colleagues
- Customer-oriented mindset and service awareness: understanding business needs and delivering tailored solutions
Tools & Environment
-
Microsoft Entra ID (Expert level)
-
Active Directory and GPO (Expert level)
-
PowerShell scripting
-
Audit tools such as PingCastle, BloodHound
-
Microsoft components: DNS, DHCP, Exchange, WSUS, * Minimum 5 years of experience in Active Directory administration, preferably in regulated or enterprise environments
-
Hold IT certifications relevant to Active Directory, Windows Server, or security (e.g., Microsoft Certified: Windows Server, Security+)
-
Autonomous, meticulous, with a strong focus on security and compliance
-
Excellent interpersonal and communication skills, capable of working within a team
-
Proven experience in managing complex & secure Active Directory environments and Public Key Infrastructure (PKI)
-
Strong knowledge of security best practices, identity management, obsolescence management, and system standardization
-
Knowledge and practical experience with PingCastle would be a plus
Benefits & conditions
International environment - fluent English required Deliverables: confirmed experience on large-scale Microsoft Entra ID migration programs International / multi-country context Confirmed experience on large-scale Microsoft 365 migration programs International / multi-country context