Active Directory Administrator

Lawrence Livermore National Laboratory
Livermore, United States of America
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Compensation
$ 186K

Job location

Livermore, United States of America

Tech stack

Microsoft Active Directory
Authentication Protocols
Azure
Cloud Computing Security
Configuration Management
Computer Engineering
Relational Databases
Fault Tolerance
Monitoring of Systems
Identity and Access Management
System Center Operations Management
Microsoft SQL Server
Windows Server
OAuth
OpenID
Powershell
Security Assertion Markup Language (SAML)
Software Vulnerability Management
Information Technology
Splunk

Job description

We have an opening for an experienced Active Directory Administrator to help design, automate, secure, and support enterprise-wide Active Directory services in a highly regulated environment. This role is ideal for someone who enjoys combining hands-on operations, platform engineering, and security compliance to support mission-critical computing services. This position is in the Information Technology Solutions (ITSD) Division within the Computing Directorate.

This position requires full-time on-site presence due to the nature of the work.

This position will be filled at either level based on knowledge and related experience as assessed by the hiring team. Additional job responsibilities (outlined below) will be assigned if hired at the higher level.

You will

  • Perform day-to-day operational support functions, including complex problem isolation and remediation, while exercising sound judgment and a moderate degree of independence.
  • Contribute to the development, implementation, testing, and validation of security benchmarks (DISA STIG), including implementing monthly patching and vulnerability remediation.
  • Troubleshoot, configure, and maintain Group policies in support of secure enterprise Active Directory operations.
  • Integrate applications and services with Entra ID.
  • Develop scripting and automation for solutions to common problems and reduce operational overhead.
  • Develop and maintain clear technical documentation to support system administration, integration, operations and knowledge sharing.
  • Collaborate with engineers, security teams, and other stakeholders.
  • Support critical systems off-hours as needed and part of a regular 24/7 on-call rotation.
  • Perform other duties as assigned.

Additional job responsibilities, at the 393.2 level

  • Manage multiple complex parallel tasks and priorities of customers and stakeholders, ensuring deadlines are met, while leveraging team member skills.
  • Leverage tools and develop procedures to improve windows configuration management services and automate various complex tasks.

Requirements

  • Ability to secure and maintain a U.S. DOE Q-level security clearance which requires U.S. citizenship.
  • Bachelor's degree in computer science, Computer Engineering or related field, or the equivalent combination of education and related experience.
  • Broad experience operating and supporting Microsoft Active Directory in an enterprise setting including the use of PowerShell
  • Broad experience administering Windows server environments including deployment, patching, monitoring, backup or repairing.
  • Ability to work in a dynamic, technical team environment with competing priorities, tight deadlines and high pressure associated with operating a critical, complex system.
  • Broad experience with Azure, Entra ID and cloud security
  • Proficient written and verbal communication and strong interpersonal skills, ability to interact with all levels of management and staff as well as outside vendors, contractors, service providers and consultants.
  • Ability to work off-hours and On-Call and to respond to service alerts from various monitoring systems (intermittently, either as-needed or as part of a rotation)., * Highly advanced experience architecting and administering highly redundant and fault tolerant enterprise Windows server environments including deployment, patching, monitoring, backup and repairing.
  • Substantial experience with Entra ID operations including identity management and authentication integrations
  • Expert knowledge and experience with standard authentication protocols such as SAML, OAuth, or OIDC.

Qualifications We Desire

  • Broad experience with monitoring platforms such as SCOM or Splunk.
  • Broad experience with MS SQL or other relational databases.
  • Experience with applying DISA STIG requirements.

Benefits & conditions

$125,310 - $185,640 annually

$125,310 - $153,444 annually for 393.1

$151,620 - $185,640 annually for 393.2, * Included in 2026 Best Places to Work by Glassdoor!

  • Flexible Benefits Package
  • 401(k)
  • Relocation Assistance
  • Education Reimbursement Program
  • Flexible schedules (*depending on project needs)
  • Our values - visit https://www.llnl.gov/inclusion/our-values

About the company

Join us and make YOUR mark on the World! Lawrence Livermore National Laboratory (LLNL) has turned bold ideas into world-changing impact advancing science and technology to strengthen U.S. security and promote global stability. Our mission spans four critical national security areas nuclear deterrence, threat preparedness, energy security, and multi-domain defense empowering teams to take on the toughest challenges of today and tomorrow. With a culture built on innovation and operational excellence, LLNL is a place where your expertise can make a real impact.

Apply for this position