This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Software Resources has an immediate job opportunity for a Senior Active Directory Engineer with a major corporation in Burbank, CA. 4 days on-site, Friday remote. Duration: 9 month(s).
Job Responsibility:
AD modernization and standardization initiative, migrating on-premises Active Directory lifecycle management to a cloud-first identity model (Microsoft Entra ID/Azure AD)
Maintain and manage local AD on-prem devices and domain controllers, including operational support, incident response, and running reports (e.g., Power BI)
Collaborate with architects and senior engineers
contribute to process and system configuration, but not lead design efforts
Identify and implement automation opportunities to reduce manual tasks and ticket volume, proactively improving lifecycle management and user experience
Lead the assessment and analysis of the Domain controllers in the AD forest
Document and guide the operations team with the decommissioning, upgrade and migration of domain controllers
Analyze the existing use of PKI certificates in legacy directories and help migrate them into Microsoft's PKI service
Evaluate capabilities of services/products and design solutions to deliver future service offerings through detailed technical analysis
Define engineered designs, including full documentation
Follow structured methodologies for technical analysis of products and solutions
No on-call responsibilities
operational support team handles after-hours issues
Domain Controller Consolidation: Assess existing domain controllers, identify consolidation opportunities, and develop a migration strategy
Migrate certificates to a modern PKI infrastructure with minimal disruption
Revoke, renew, and replace legacy or non-compliant certificates
Ensure compliance with security policies and best practices
Active Directory Administration & Cleanup: Identify and remove stale objects, orphaned accounts, and unused policies
Optimize AD replication, site topology, and group policy objects (GPOs)
Implement best practices for AD security, auditing, and hardening
Troubleshooting & Support: Diagnose and resolve AD, DNS, and PKI-related issues
Work with security and infrastructure teams to remediate vulnerabilities
Document configurations, policies, and procedures for future reference
Requirements:
Minimum of 5 years of related work experience
Demonstrated experience designing, implementing, and integrating enterprise-level highly connected hybrid LDAP solutions with at least 40,000 users, including: Active Directory, Azure Active Directory, Microsoft Identity Manager, Active Directory Federation Services / AADC
Integrations between key services and various LDAP providers
Experience in engineering, designing, and integrating both infrastructure components (domain controllers, sites and services, connectivity, etc.) and logical aspects (GPO management, directory structure, and management toolsets)
Experience in project management of large IT initiatives
Experience working with and directing suppliers in an outsourced environment infrastructure