Identity & Security Engineer

Apetan Consulting
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Remote

Tech stack

Microsoft Active Directory
Active Directory Federation Services
Domain Controllers
Agile Methodologies
Amazon Web Services (AWS)
Azure
Data Security
Hardware Security Module
Identity and Access Management
Kerberos (Protocol)
Key Management
Public Key Infrastructure
Powershell
Systems Integration
Data Classification
Terraform

Job description

We are seeking a highly skilled Identity & Security Engineer to support and manage enterprise identity infrastructure within a secure, large-scale environment. This role is critical to maintaining and enhancing authentication, authorization, and data protection systems across the organization., * Administer and maintain Active Directory (AD), including domain controllers, replication, and security hardening

  • Manage Active Directory Certificate Services (ADCS) and Public Key Infrastructure (PKI)
  • Support and maintain Active Directory Federation Services (ADFS) and integrations with identity providers
  • Implement and manage Azure Information Protection (AIP) for data classification and security
  • Utilize Quest tools (Change Auditor, RMAD, GPOAdmin) for auditing, recovery, and policy management
  • Configure and manage Hardware Security Modules (HSM) for cryptographic operations
  • Deploy and manage AWS infrastructure using Terraform (Infrastructure-as-Code)
  • Ensure secure authentication using Kerberos, including SPNs and keytab management
  • Design, implement, and enforce Group Policy Objects (GPOs)
  • Develop automation using PowerShell scripting
  • Collaborate with security and infrastructure teams to ensure compliance with enterprise standards
  • Participate in on-call rotation for critical identity services
  • Work within an Agile environment, collaborating with cross-functional teams

Requirements

  • Strong experience with Active Directory, including domain controllers, replication, and security hardening
  • Hands-on expertise in ADCS and Public Key Infrastructure (PKI)
  • Proficiency in Kerberos authentication, SPNs, and keytab management
  • Experience managing and troubleshooting Group Policy Objects (GPOs)
  • Advanced PowerShell scripting skills
  • Familiarity with Azure Information Protection (AIP) and identity security
  • Experience with Quest tools (Change Auditor, RMAD, GPOAdmin)
  • Knowledge of HSM configuration and cryptographic key management
  • Experience with AWS and Terraform (Infrastructure-as-Code)
  • Strong understanding of enterprise security principles and best practices

Apply for this position