Posted on: 19/08/2026
Department Description :
At Disney, were storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.
The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company.
Team Description :
The Identity & Access Management (IAM) Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across The Walt Disney Company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non-human identities.
What Youll Do :
- Engineer, harden, and operate enterprise and multidomain Active Directory environments supporting critical business workloads.
- Lead Active Directory consolidation and domain rationalization efforts, including enterprise, eCommerce, and business unit directories.
- Support RadiantLogics Virtual Directory System operations and enhancements.
- Establish and enforce multi domain baseline identity security standards across environments.
- Implement and mature RBAC based access models across Active Directory.
- Integrate AD with Privileged Identity Management (PIM) and Privileged Access Management (PAM) platforms.
- Help with eliminating standing privilege through group based, time bound, and JIT access patterns.
- Implement and support synchronization between Active Directory and Entra ID.
- Support cross tenant identity governance for business segments and federated environments.
- Enable automated human and non human identity governance, including monitoring, remediation, and compliance reporting.
- Reduce directory and tool sprawl while maintaining service reliability and business continuity.
- Mentor and uplift junior engineers; contribute to repeatable engineering patterns and documentation.
Required Qualifications & Skills :
- 8+ years of hands on experience engineering and operating large scale Active Directory environments.
- Deep expertise in : Active Directory architecture, trusts, replication, DNS, PKI; Multi domain / multi forest designs; AD security hardening and recovery; Radiant Logics Virtual Directory Services.
- Proven experience implementing or supporting : RBAC, PIM, and PAM; Privileged account separation and Tier 0 controls.
- Strong troubleshooting skills in complex, highly regulated environments.
- Experience working in enterprise scale IAM or directory services teams.
Preferred Qualifications :
- Experience integrating AD with Entra ID / Azure AD in hybrid or cloud first environments.
- Familiarity with identity governance automation, non human identity management, and continuous compliance.
- Experience supporting cross tenant or multi business unit identity models.
- Background in directory consolidation, legacy system sunset, or M&A identity integration.
- Comfort operating in environments with high security, resilience, and audit expectations.
Required Education :
- Bachelors degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1664329