Microsoft Security Active Directory Senior Consultant

Deloitte T.T.L.
Nashville, TN, United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Active Directory Domain Controllers Authentication Protocols Cyber Security Dynamic Host Configuration Protocol Domain Name System (DNS) Identity and Access Management Intrusion Detection and Prevention Lightweight Directory Access Protocols (LDAP) Microsoft Security Essentials Role-Based Access Control Azure Active Directory
+1 more
Information Technology

Job description

Experteer Overview In this role you will lead Active Directory and identity infrastructure engagements to strengthen client resilience and modernize identity environments. You’ll work on assessments, design, migration, and stabilization, shaping secure AD architectures and hybrid identity solutions. You’ll collaborate with cross-functional teams to deliver secure, scalable identity systems that support client digital ecosystems. This is a hands-on, leadership-focused position with meaningful client impact and opportunities to influence identity security practices. Compensation / Benefits * Lead Active Directory and identity infrastructure engagements across all project phases (assessment, design, migration, implementation, stabilization, post-implementation) * Perform and oversee AD assessments covering architecture, DNS/DHCP, replication, group policy, trusts, service accounts, authentication protocols, and administrative processes * Design and implement AD security/hardening improvements (tiering, RBAC, GPOs, service accounts, identity threat detection/recovery) * Architect and support enterprise AD environments, including hybrid identity with Microsoft Entra ID, federation, synchronization, and application dependencies * Lead or support domain/forest migrations, separations, consolidations (discovery, dependency analysis, cutover planning, validation, rollback, post-migration stabilization) Tasks * Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Engineering, IT, or related field * 4+ years of technical consulting, enterprise infrastructure, identity security, or AD engineering experience * 4+ years hands-on experience designing, securing, assessing, migrating, or operating Microsoft AD environments * Experience with AD services (domain/forest architecture, domain controllers, DNS, DHCP, Sites and Services, Group Policy, trusts, LDAP, recovery) * Experience leading or supporting AD migrations, separations, or consolidations * Experience with migration tooling (Quest On Demand Migration or Semperis) * Experience with identity threat detection, identity resilience, cyber recovery, or recovery validation tooling (Semperis, Rubrik, Microsoft Defender for Identity) * Ability to travel up to 50% * Limited immigration sponsorship may be available Key requirements * Discretionary annual incentive program * Reasonable accommodations * Travel flexibility (as part of client engagements)

Requirements

and (tiering, RBAC, GPOs, service accounts, identity threat detection/recovery) * Architect and support enterprise AD environments, including hybrid identity with Microsoft Entra ID, federation, synchronization, and application dependencies * Lead or support domain/forest migrations, separations, consolidations (discovery, dependency analysis, cutover planning, validation, rollback, post-migration stabilization) Tasks * Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Engineering, IT, or related field * 4+ years of technical consulting, enterprise infrastructure, identity security, or AD engineering experience * 4+ years hands-on experience designing, securing, assessing, migrating, or operating Microsoft AD environments * Experience with AD services (domain/forest architecture, domain controllers, DNS, DHCP, Sites and Services, Group Policy, trusts, LDAP, recovery) * Experience leading or supporting AD migrations, separations, or consolidations * Experience with a aaaaaaG_ tooling (Quest On Demand Migration or Semperis) * Experience with identity threat detection, identity resilience, cyber recovery, or recovery validation tooling (Semperis, Rubrik, Microsoft Defender for Identity) * Ability to travel up to 50% * Limited immigration sponsorship may be available Key requirements * Discretionary annual incentive program * Reasonable accommodations * Travel flexibility (as part of client engagements)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen Ā· LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman Ā· WWC 2022

2:14 min

Custom domain controllers and vehicle communication networks

Denis Grahovac Ā· WWC 2021

1:45 min

Evolution from manual setups to automated monolith deployments

Axel Barbier Ā· WWC 2023

2:48 min

Daily responsibilities and alignment practices for technical engineering leadership

Edoardo Dusi Ā· LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger Ā· LIVE

Videos

See all

Related articles

See all