Systems Engineer/Senior Systems Engineer
Role details
Job location
Tech stack
Job description
Identity & Directory Services Operations
- Operate, secure, and support Auburn University's on premises Active Directory environment, including users, groups, permissions, and password policies.
- Ensure accurate user provisioning and deprovisioning outcomes across all phases of the identity lifecycle in coordination with the IAM platform.
- Perform daily monitoring and troubleshooting of Active Directory services and related identity infrastructure.
- Troubleshoot account lockouts, authentication failures, and authorization issues.
- Perform configuration of and object recovery using Veeam backups.
Hybrid Identity & Entra Integration
- Serve as administrator for Azure/Entra Connect, including monitoring, upgrades, and troubleshooting synchronization issues.
- Troubleshoot synchronization problems involving users, groups, and passwords between on premises AD and Entra ID.
- Modify and extend synchronization scope and attributes as business needs evolve.
- Build and maintain dynamic Entra groups for security, distribution lists and Microsoft 365 licensing.
IAM & Group Management
-
Support IAM driven automation for account provisioning, deprovisioning, and group membership management.
-
Troubleshoot and resolve identity issues originating from IAM workflows or distributed IT activity.
-
Maintain and reduce technical debt related to legacy or unused Active Directory groups.
-
Support a custom group maintenance web application used by campus IT and non technical administrators.
-
Perform ad hoc bulk modifications to directory objects using PowerShell or other approved tools. Policy, Logging, and Operational Support
-
Maintain Group Policy Administrative Templates (ADMX/ADML) and provide limited Group Policy support.
-
Use Splunk and other logging tools to investigate login issues, sync failures, and security events.
-
Participate in incident response and change management using ServiceNow.
-
Communicate effectively with a student staffed Service Desk and professional IT staff across colleges and campuses.
Strategic & Future State Responsibilities
- The successful candidate will contribute to Auburn University's identity modernization strategy, with emphasis on reducing institutional risk and simplifying authentication architecture.
- Serve as a technical contributor to the transition from legacy, on premises SSO systems (CAS / SAML) to Entra ID-based authentication and SSO, potentially in coordination with the IAM platform.
- Support, and at senior levels help lead, planning and execution of SSO modernization initiatives. Troubleshoot authentication flows spanning IAM Active Directory Entra ID
- SSO.
- Increase operational redundancy by reducing single points of failure in identity and authentication systems.
- At senior levels, mentor peers and contribute to identity architecture discussions and standards.
Requirements
Do you have experience in Security testing methodologies?, Do you have a High school diploma or GED?, Systems Engineer (MA46)
- Bachelor's degree + 3 years of experience OR
- Associate's degree + 7 years of experience OR
- High school diploma or equivalent + 11 years of experience
Sr. Systems Engineer (MA47)
- Bachelor's degree + 6 years of experience
Scope of Experience: Relevant IT experience in the administration of distributed computer systems, preferably in a university setting. Desired Qualifications:
- Multiple years of Microsoft Active Directory domain administration
- Experience with IAM platforms, such as Fischer Identity, particularly provisioning and deprovisioning user workflows
- Experience with Microsoft 365 licensing through dynamic Entra ID groups
- Experience supporting Group Policy Objects (GPOs)
- Experience administering or supporting Azure / Entra ID
- Familiarity with Splunk log analysis for authentication and directory issues
- Experience with LDAP
- Experience with SQL
- Familiarity with GitHub or source control for scripts and tooling
- Exposure to SAML-based authentication concepts; experience with CAS or other SSO platforms a plus
Minimum Knowledge, Skills, and Abilities:
- Advanced understanding of server infrastructure and operating systems.
- Ability to test and troubleshoot vulnerabilities in software and hardware.
- Ability to implement software and upgrade firmware.
- Ability to recognize, analyze, and solve a variety of problems.
- Ability to effectively communicate technical concepts to a non-technical audience.
- Strong technical aptitude and computer skills.