IT Security Engineer
Position Type: Hybrid
Hybrid Schedule: Onsite as needed
Contract Length: 8 months + extensions
Position Overview:
Active Directory Engineer responsible for designing, implementing, and supporting enterprise-scale Active Directory and identity management solutions to ensure secure, reliable, and efficient directory services. Serves as a technical lead on complex initiatives, driving security, automation, and operational improvements across Windows-based environments.
Duties:
Design, implement, and support Active Directory and identity management solutions, including directory synchronization systems.
Configure and manage AD attributes, LDAP queries, and PowerShell scripts to modify and automate directory services.
Analyze, configure, and troubleshoot Group Policy Objects (GPOs), including item-level targeting and browser/workstation settings.
Manage and secure Active Directory server roles such as Certificate Services, DNS, IIS, and File/Print services.
Lead large-scale Active Directory projects, including migrations and integrations, serving as the primary coordination point.
Analyze existing AD environments to identify technical and operational gaps and implement improvement strategies.
Design and implement Active Directory security, including permissions, delegation models, and capacity planning.
Maintain the integrity, security, and reliability of the corporate forest and AD schema.
Support regulatory and audit requests by providing required Active Directory data.
Evaluate project requirements and assess infrastructure impacts related to capacity, redundancy, and resiliency.
Collaborate with system administrators, service managers, and operational teams to design and deploy security and automation solutions.
Develop documentation, repeatable processes, training manuals, and presentation materials to support operations and knowledge transfer.
Build and support domain controllers and member servers to meet enterprise solution requirements.
Troubleshoot and resolve issues across production messaging and identity-related environments.
10 years of hands-on experience administering and supporting Microsoft Active Directory in enterprise environments.
Experience developing complex automation scripts using VBScript and/or PowerShell.
Experience integrating applications with Active Directory using LDAP and Kerberos for authentication and authorization.
Bachelor’s degree in Computer Science, Information Technology, or a related field.
MCSE certification.
ITIL v4 certification.