Posted on: 02/07/2026
Role Summary :
We are seeking an experienced Active Directory (AD) Engineer to design, build, and operate core Microsoft Active Directory infrastructure, with a strong focus on isolated forests, segregated domains, and security-driven directory architectures. This role is critical to enabling secure authentication, legacy containment, privilege isolation, and enterprise identity resilience.
Key Responsibilities :
- Active Directory Architecture : Design, build, and maintain AD forests, trees, and domains, including isolated forests for security/regulatory purposes.
- Trust Management : Implement and manage inter-forest and intra-forest trusts (one-way, two-way, selective authentication).
- Core AD Administration : Deploy, patch, and maintain Domain Controllers; manage FSMO roles, DNS integration, SYSVOL, and GPOs.
- Security & Hardening : Enforce AD security best practices, build privilege isolation domains, govern service accounts, and reduce AD attack surface.
- Migration & Transformation : Lead domain/forest builds, decompositions, and legacy containment projects.
- Monitoring & Troubleshooting : Diagnose replication failures, authentication/trust issues, DNS/Kerberos problems, and maintain AD health.
Required Qualifications :
- Experience : 9+ years of hands-on AD engineering and administration.
- Proven expertise in Active Directory cleanup, security assessment/remediation, and legacy system migration.
- Strong knowledge of AD DS, DNS, Kerberos, LDAP, NTLM, and authentication boundaries.
- Experience building new forests/domains, including isolated or segmented environments.
Did you find something suspicious?