Active Directory Engineer
Role details
Job location
Tech stack
Job description
Hyper-V Scripting Hardening Operations Leadership Automation Mitigation Risk Analysis Prioritization Virtualization Windows Servers Problem Solving Internetworking Active Directory Windows PowerShell Business Valuation Domain Controllers Kerberos (Protocol) Full Stack Development Artificial Intelligence Business Transformation Attack Surface Management Critical Illness Insurance Integrated Windows Authentication Lightweight Directory Access Protocols, Active Directory Engineer with Powershell
Hybrid 3 Days in 2 Days Remote (Chandler, AZ)
12-18 Month Contract
Job Description- Analyze CVEs, MSRC advisories, and vendor security guidance to determine required remediation actions
Translate vulnerability intelligence into clear technical actions (patching, GPO updates, registry changes, service/protocol hardening)
Define scope and applicability, including distinctions across:
Domain Controllers vs. Member Servers
Tiered environments
Legacy or exception-based systems
Assess dependencies, constraints, and potential blast radius prior to
deployment
Evaluate exploitability vs. environmental exposure to inform prioritization
Drive prioritization and sequencing of remediation activities across platforms
Design and develop automation solutions (primarily PowerShell) to deploy and
validate fixes
Build repeatable validation mechanisms to ensure remediation effectiveness
Partner with Operations teams to ensure timely, coordinated rollout of
remediations
Produce clear change documentation, including intent, impact, rollback, Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools. Related Jobs Active Directory Engineer TEKsystems Chandler, AZRemote Writing Hyper-V Scripting Hardening Operations Leadership Automation Mitigation Risk Analysis Prioritization Virtualization Windows Servers Problem Solving Internetworking Active Directory Windows PowerShell Business Valuation Domain Controllers Kerberos (Protocol) Full Stack Development Artificial Intelligence Business Transformation Attack Surface Management Critical Illness Insurance Integrated Windows Authentication Lightweight Directory Access Protocols +0 Active Directory Engineer TEKsystems Chandler, AZRemote Unix Linux NetIQ CyberArk Scripting Operations Management Automation Mitigation Group Policy Communication Consolidation Virtual Teams Microsoft Access Active Directory Operating Systems Disaster Recovery Windows PowerShell Business Valuation Kerberos (Protocol) Single Sign-On (SSO) Microsoft SQL Servers Full Stack Development Artificial Intelligence Business Transformation IT Security Architecture Public Key Infrastructure Critical Illness Insurance Integrated Windows Authentication System Center Operations Management Lightweight Directory Access Protocols
Requirements
Deep understanding of Windows Server and Active Directory security architecture
Proven experience interpreting:
CVE writeups
MSRC security advisories
Vendor mitigation guidance
Expert-level proficiency in PowerShell scripting and automation development
Strong ability to evaluate exploitability vs. real-world exposure
Familiarity with Active Directory attack paths and adversary techniques
Experience with Hyper-V and SCVMM.
Experience with SCCM
Experience performing risk analysis in large, regulated enterprise environments
Strong written communication skills, including the ability to produce:
Change intent documents
Impact and risk assessments
Demonstrated experience creating technical and process documentation
Strong understanding of Active Directory internetworking, including:
Name resolution (DNS)
Kerberos and NTLM authentication flows
Hands-on experience with:
Kerberos, LDAP, DNS, NTLM
System and performance monitoring
Experience in Python
Experience securing and reducing Active Directory attack surface, particularly
Domain Controllers
Experience with Windows Server 2016, 2019, and 2022
Familiarity with Hyper-V and virtualization platforms
Experience developing AD policies, standards, and operational procedures
Strong analytical, design, and problem-solving capabilities
Ability to translate complex technical concepts into clear, actionable
processes
Experience operating in fast-paced environments with shifting priorities Job Type & Location
Benefits & conditions
This is a Contract position based out of Chandler, AZ. Pay and Benefits
The pay range for this position is $60.00 - $89.00/hr.
Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:
- Medical, dental & vision
- Critical Illness, Accident, and Hospital
- 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available
- Life Insurance (Voluntary Life & AD&D for the employee and dependents)
- Short and long-term disability
- Health Spending Account (HSA)
- Transportation benefits
- Employee Assistance Program
- Time Off/Leave (PTO, Vacation or Sick Leave) Workplace Type