Microsoft Security Active Directory Senior Consultant

Deloitte T.T.L.
Jacksonville, FL, United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Active Directory Domain Controllers Authentication Protocols Cyber Security Dynamic Host Configuration Protocol Domain Name System (DNS) Identity and Access Management Intrusion Detection and Prevention Lightweight Directory Access Protocols (LDAP) Microsoft Security Essentials Role-Based Access Control Azure Active Directory
+1 more
Information Technology

Job description

Experteer Overview In this role, you guide enterprise Active Directory and identity programs within Deloitte Cyber, shaping secure, scalable identity platforms. You will drive assessment, design, migration, and stabilization activities across complex AD environments, including hybrid setups with Entra ID. You’ll partner with cross-functional teams to harden identity security and enable reliable access governance. This position offers impact through large-scale migrations and security improvements that protect client data and operations. Compensation / Benefits * Lead Active Directory and identity infrastructure engagements across assessment, design, migration, implementation, stabilization, and post-implementation phases * Conduct and oversee Active Directory assessments covering domain/forest architecture, DNS/DHCP, replication, GPOs, trusts, service accounts, authentication protocols, and administrative processes * Design and implement Active Directory security hardening and governance controls (RBAC, service account management, GPO controls, identity threat detection and recovery) * Architect and support enterprise AD environments, including hybrid identity with Microsoft Entra ID, federation, synchronization, and application dependencies * Lead or support domain/forest migrations, separations, consolidations, including discovery, planning, validation, rollback, and post-migration stabilization Tasks * Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Engineering, Information Technology, or another technical field * 4+ years of experience in technical consulting, enterprise infrastructure, identity security, or Active Directory engineering * 4+ years hands-on experience designing, securing, assessing, migrating, or operating Microsoft Active Directory environments * Experience with enterprise AD services: domain/forest architecture, domain controllers and replication, DNS, DHCP, Sites and Services, Group Policy, trusts, service accounts, LDAP, and domain/forest recovery * Experience leading or supporting AD domain/forest migrations, separations, or consolidations * Experience with migration tooling such as Quest On Demand Migration (ODM) or Semperis migration capabilities * Experience with identity threat detection, identity resilience, cyber recovery, or recovery validation tooling (Semperis, Rubrik, Microsoft Defender for Identity) * Ability to travel up to 50% * Limited immigration sponsorship may be available Key requirements *

Requirements

controls (RBAC, service account management, GPO controls, identity threat detection and recovery) * Architect and support enterprise AD environments, including hybrid identity with Microsoft Entra ID, federation, synchronization, and application dependencies * Lead or support domain/forest migrations, separations, consolidations, including discovery, planning, validation, rollback, and post-migration stabilization Tasks * Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Engineering, Information Technology, or another technical field * 4+ years of experience in technical consulting, enterprise infrastructure, identity security, or Active Directory engineering * 4+ years hands-on experience designing, securing, assessing, migrating, or operating Microsoft Active Directory environments * Experience with enterprise AD services: domain/forest architecture, domain controllers and replication, DNS, DHCP, Sites and Services, Group Policy, trusts, service accounts, LDAP, and domain/forest recovery * Experience leading or supporting AD domain/forest migrations, separations, or consolidations * Experience with migration tooling such as Quest On Demand Migration (ODM) or Semperis migration capabilities * Experience with identity threat detection, identity resilience, cyber recovery, or recovery validation tooling (Semperis, Rubrik, Microsoft Defender for Identity) * Ability to travel up to 50% * Limited immigration sponsorship may be available Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen Ā· LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman Ā· WWC 2022

2:14 min

Custom domain controllers and vehicle communication networks

Denis Grahovac Ā· WWC 2021

1:45 min

Evolution from manual setups to automated monolith deployments

Axel Barbier Ā· WWC 2023

2:48 min

Daily responsibilities and alignment practices for technical engineering leadership

Edoardo Dusi Ā· LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger Ā· LIVE

Videos

See all

Related articles

See all