Active Directory Operations Engineer
Aptiv · Troy, MI · 3 days ago
EngineeringFull-time
Responsibilities
- Own and operate a large-scale global Active Directory and hybrid Entra ID environment across multiple regions.
- Provide day-to-day engineering and operational support for identity services ensuring high availability and performance.
- Lead incident response, problem management, and root cause analysis for critical AD-related outages.
- Operate and maintain identity synchronization (AD Connect / Entra Connect) including troubleshooting and optimization.
- Execute and improve IAM operational processes including Joiner-Mover-Leaver (JML) workflows using Active Roles.
- Implement and manage Group Policy Objects (GPOs) at scale with strong governance and change control.
- Support enterprise authentication services including SSO, SAML, OAuth, and OIDC from an operational standpoint.
- Operate Entra Conditional Access policies and Privileged Identity Management (PIM) to ensure secure access controls.
- Maintain and support PKI infrastructure including certificate authorities, templates, and lifecycle management.
- Drive AD and Entra ID security hardening, monitoring, and remediation activities.
- Develop automation using PowerShell to streamline operations and reduce manual effort.
- Collaborate with global teams across time zones to support a 24x7 enterprise environment.
Qualifications
- 5-7 years managing and operating large-scale global Active Directory environments.
- Strong hands-on experience with AD DS, Entra ID, GPO, DNS, DHCP, and Intune.
- Proven experience supporting thousands of users and devices in multinational environments.
- Experience in hybrid identity operations and synchronization technologies.
- Strong PowerShell scripting and automation skills.
- Experience working in 24x7 global enterprise operations environments.