Identity & Security Engineer
Apetan Consulting
4 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Remote
Tech stack
Microsoft Active Directory
Active Directory Federation Services
Domain Controllers
Agile Methodologies
Amazon Web Services (AWS)
Azure
Data Security
Hardware Security Module
Identity and Access Management
Kerberos (Protocol)
Key Management
Public Key Infrastructure
Powershell
Systems Integration
Data Classification
Terraform
Job description
We are seeking a highly skilled Identity & Security Engineer to support and manage enterprise identity infrastructure within a secure, large-scale environment. This role is critical to maintaining and enhancing authentication, authorization, and data protection systems across the organization., * Administer and maintain Active Directory (AD), including domain controllers, replication, and security hardening
- Manage Active Directory Certificate Services (ADCS) and Public Key Infrastructure (PKI)
- Support and maintain Active Directory Federation Services (ADFS) and integrations with identity providers
- Implement and manage Azure Information Protection (AIP) for data classification and security
- Utilize Quest tools (Change Auditor, RMAD, GPOAdmin) for auditing, recovery, and policy management
- Configure and manage Hardware Security Modules (HSM) for cryptographic operations
- Deploy and manage AWS infrastructure using Terraform (Infrastructure-as-Code)
- Ensure secure authentication using Kerberos, including SPNs and keytab management
- Design, implement, and enforce Group Policy Objects (GPOs)
- Develop automation using PowerShell scripting
- Collaborate with security and infrastructure teams to ensure compliance with enterprise standards
- Participate in on-call rotation for critical identity services
- Work within an Agile environment, collaborating with cross-functional teams
Requirements
- Strong experience with Active Directory, including domain controllers, replication, and security hardening
- Hands-on expertise in ADCS and Public Key Infrastructure (PKI)
- Proficiency in Kerberos authentication, SPNs, and keytab management
- Experience managing and troubleshooting Group Policy Objects (GPOs)
- Advanced PowerShell scripting skills
- Familiarity with Azure Information Protection (AIP) and identity security
- Experience with Quest tools (Change Auditor, RMAD, GPOAdmin)
- Knowledge of HSM configuration and cryptographic key management
- Experience with AWS and Terraform (Infrastructure-as-Code)
- Strong understanding of enterprise security principles and best practices