Microsoft Security Active Directory Senior Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Experteer Overview As a Senior Engineering Management Specialist on the Deloitte Cyber team, you lead and shape Active Directory and identity infrastructure engagements, guiding assessments, design, migration, and security hardening to improve client resilience. You collaborate with cross-functional teams to deliver hybrid identity solutions and ensure smooth post-migration stabilization. The role blends hands-on engineering with leadership to tackle complex identity and access challenges at scale. This is an opportunity to influence security posture in diverse client environments and advance enterprise identity architectures. Compensation / Benefits * Lead AD and identity infrastructure engagements across all project phases (assessment, design, migration, implementation, stabilization) * Perform and oversee AD assessments covering architecture components (DNS, DHCP, replication, Group Policy, trusts, service accounts, authentication) * Design and implement AD security hardening (RBAC, administrative tiering, GPO controls, identity threat detection) * Architect and support enterprise AD environments, including hybrid identity with Microsoft Entra ID and federation * Lead or support domain/forest migrations, including discovery, dependency analysis, cutover planning, validation, rollback, and stabilization Tasks * Bachelorās degree in a technical field * 4+ years in technical consulting, enterprise infrastructure, identity security, or AD engineering * 4+ years hands-on experience designing, securing, assessing, migrating, or operating Microsoft AD * Experience with AD services (domain/forest architecture, DNS, DHCP, LDAP, GPO, trusts, replication) and domain/forest recovery * Experience leading or supporting AD migrations, separations, or consolidations * Experience with migration tooling (Quest ODM or Semperis) * Experience with identity threat detection, cyber recovery, or related tooling (Semperis, Rubrik, Microsoft Defender for Identity) * Ability to travel up to ~50% * Limited immigration sponsorship may be available Key requirements *
Requirements
administrative tiering, GPO controls, identity threat detection) * Architect and support enterprise AD environments, including hybrid identity with Microsoft Entra ID and federation * Lead or support domain/forest migrations, including discovery, dependency analysis, cutover planning, validation, rollback, and stabilization Tasks * Bachelorās degree in a technical field * 4+ years in technical consulting, enterprise infrastructure, identity security, or AD engineering * 4+ years hands-on experience designing, securing, assessing, migrating, or operating Microsoft AD * Experience with AD services (domain/forest architecture, DNS, DHCP, LDAP, GPO, trusts, replication) and domain/forest recovery * Experience leading or supporting AD migrations, separations, or consolidations * Experience with migration tooling (Quest ODM or Semperis) * Experience with identity threat detection, cyber recovery, or related tooling (Semperis, Rubrik, Microsoft Defender for Identity) * Ability to travel up to aa
-
- Limited immigration sponsorship may be available Key requirements *
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on us.experteer.comGood distractions
Talks and stories from around this role ā technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The Most Popular IT Jobs on the Market
Dev Digest 191: Malware interviews, EU ā¤ļø Open Source and Skilled Agents
Whatās the Difference between a Junior, Mid, and Senior Developer?
The Best Job Search Websites of 2025