Senior Active Directory Engineer/Remote
Philadelphia, Pennsylvania
100% Remote
Full Time
$130k - $140k
Are you looking for a remote role for an Active Directory Engineer?
As an Active Directory Engineer, you will play a key role in the design, implementation, and management of enterprise-level directory services. You will collaborate with cross-functional teams to ensure secure access, authentication, and policy enforcement, while also driving efficiency through automation and process optimization.
This is a contract role until mid summer with possible extension.
Responsibilities:
- Design, deploy, and maintain Active Directory (AD) environments, including domain controllers, forests, trusts, and group policies.
- Implement and manage security best practices, such as privileged access management, multifactor authentication (MFA), and account lifecycle management.
- Support hybrid identity solutions, including integration with Azure Active Directory (Azure AD) and Single Sign-On (SSO) configurations.
- Develop and enforce Group Policy Objects (GPOs) to streamline desktop, server, and user configurations.
- Troubleshoot and resolve AD-related issues, ensuring high availability and performance.
- Perform migrations and upgrades of AD domains, forests, and schema extensions.
- Manage and monitor replication, DNS, and time synchronization within the AD environment.
- Collaborate with cybersecurity teams to implement controls for compliance with organizational and regulatory requirements.
- Create automation scripts using PowerShell or other scripting languages to enhance administrative efficiency.
- Document configurations, processes, and procedures for use by the IT team and stakeholders.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience).
- 3-5+ years of hands-on experience with Active Directory in an enterprise environment.
- Proficiency with Azure AD, hybrid identity management, and SSO technologies.
- Strong understanding of GPOs, DNS, DHCP, LDAP, Kerberos, and NTLM.
- Experience with AD migrations, restructuring, and schema management.
- Proficient in PowerShell scripting for automation and reporting.
- Familiarity with security protocols and tools, such as MFA, conditional access policies, and privileged identity management.
- Knowledge of compliance frameworks (e.g., NIST, ISO 27001, GDPR) is a plus.
- Excellent problem-solving, communication, and teamwork skills.
Preferred Certifications:
- Microsoft Certified: Azure Solutions Architect Expert
- Microsoft Certified: Identity and Access Administrator Associate
- CompTIA Security+ or CISSP (preferred but not required)