Windows Active Directory Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+21 more
Job description
We are seeking a dynamic and highly skilled Windows Active Directory Engineer to join our innovative IT team. The Windows Active Directory Engineer is responsible for stabilizing, securing, and modernizing the enterprise Active Directory environment with a strong focus on directory cleanup, identity hygiene, replication health, and security hardening. This role ensures AD remains healthy, compliant, resilient, and aligned with Zero Trust identity principles across on-prem and hybrid cloud environments., * Design, deploy, and manage Windows Active Directory environments to support organizational needs, including domain controllers, Group Policy Objects (GPOs), and replication topology.
- Collaborate with cross-functional teams to integrate AD with other IT infrastructure components such as DNS, DHCP, VPNs, firewalls, and load balancers to ensure secure and efficient network operations.
- Implement security best practices for AD environments, including identity management, access controls, multi-factor authentication, and information security protocols.
- Support and optimize Azure AD Connect sync, attribute flows, and identity lifecycle.
- Remediate sync errors, duplicate identities, and hybrid identity conflicts.
- Monitor and maintain AD replication topology, site links, and inter-site connectivity.
- Perform comprehensive AD cleanup including stale objects, unused OUs, orphaned SIDs, legacy GPOs, and deprecated configurations.
- Perform system administration tasks such as user account provisioning/de-provisioning, password resets, and permissions management while adhering to the SDLC (Software Development Life Cycle) standards.
- Monitor AD health using various tools; troubleshoot issues related to replication failures or authentication errors promptly.
- Support solution architecture initiatives by designing scalable and resilient AD solutions aligned with service-oriented architecture principles.
- Automate routine tasks using scripting languages like PowerShell or Bash (Unix shell), enhancing operational efficiency across systems.
Requirements
Do you have experience in Windows?, * Maintain comprehensive documentation of system configurations, updates, and incident reports to ensure compliance and audit readiness.Skills
- 5-10+ years of hands-on experience with Active Directory, DNS, DHCP, GPO, and Windows Server.
- Deep expertise in AD cleanup, replication troubleshooting, and security hardening.
- Strong PowerShell skills for automation and bulk remediation.
- Experience with Azure AD / Entra ID, hybrid identity, and AAD Connect.
- Familiarity with SIEM, identity threat detection, and AD attack paths.
- Understanding of Kerberos, NTLM, LDAP, SAML, OAuth, and modern auth.
Pay: $55.00 per hour
Application Question(s):
- Do you have Microsoft Identify & Access Administrator Certification?
- Do you have any Azure Certification?
- Do you have 7+ years experience with Active Directory, DNS, DHCP, GPO and Windows Server?
- Are you a US Citizen or Green Card Holder?
Benefits & conditions
$55 an hour - Contract
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The Best Job Search Websites of 2025
Fully Remote Software Engineer Jobs
Best Paying Jobs in Technology
Find a Developer Job: 12 Best Job Sites For Developers