Active Directory Engineer

Tech Inc
Houston, TX, United States
about 2 months ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$104,000.0 - $145,600.0
Working hours
Shift work
Job source

Tech stack

Active Directory Domain Controllers Authentication Protocols Microsoft Azure Kerberos (Protocol) Windows Servers NT LAN Manager Windows PowerShell Azure Active Directory Zero Trust Network Access

Job description

We’re looking for an experienced Active Directory Engineer to help clean up, secure, and modernize a complex enterprise AD environment. This is a hands-on contract role where you’ll make a real impact by improving identity hygiene, strengthening security, and stabilizing replication across both on-prem and hybrid environments.

If you enjoy untangling messy environments, tightening security, and bringing structure to AD, this is a great short-term project with meaningful outcomes.

What You’ll Be Doing

  • Clean up and optimize Active Directory (stale objects, legacy configurations, unused OUs, etc.)
  • Improve AD structure, naming standards, and overall organization
  • Identify and fix issues like duplicate SPNs, conflicting accounts, and misconfigured services
  • Strengthen security across AD with modern best practices (CIS/NIST/Microsoft baselines)
  • Support authentication hardening (Kerberos, reducing NTLM, etc.)
  • Monitor and troubleshoot AD replication and domain controller health
  • Clean up and standardize Group Policy (GPOs)
  • Support Azure AD / Entra ID integration and resolve sync issues
  • Contribute to documentation, governance, and long-term improvements

Requirements

  • 5+ years of hands-on experience with Active Directory and Windows Server
  • Strong experience with:
  • AD cleanup and restructuring
  • Replication troubleshooting
  • AD security hardening
  • Solid PowerShell skills for automation and bulk changes
  • Experience with Azure AD / Entra ID and hybrid identity
  • Good understanding of authentication protocols (Kerberos, NTLM, etc.)

Nice to Have

  • Experience with Zero Trust or tiered admin models
  • Familiarity with identity security risks and mitigation
  • Microsoft certifications (like SC-300 or Azure Admin)

Benefits & conditions

$50 - $70 an hour - Contract, Pulled from the full job description

  • Flexible schedule

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · WWC 2024

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · WWC 2022

4:07 min

Building and running Windows containers locally on Windows servers

Don Schenck Don Schenck · WWC 2024

2:48 min

Daily responsibilities and alignment practices for technical engineering leadership

Edoardo Dusi · LIVE

5:01 min

Container hosting options available on Microsoft Azure

Federico Fregosi · WWC 2022

2:37 min

Consolidating local servers into a single terminal window

Stacy Cashmore · WWC 2022

Videos

See all

Related articles

See all