Directory Services Engineer/ Identity Security / Hybrid in Fort Worth
Motion Recruitment · Fort Worth, TX · Yesterday
HybridEngineeringContract
About the role
This long-term contract engagement focuses on Directory Services and Identity Security, supporting critical identity infrastructure across hybrid environments. The role is ideal for an experienced engineer who enjoys hands-on execution within complex, security-driven environments, working on high-impact cybersecurity initiatives centered around Tier 0 protection, identity hardening, attack path remediation, and recovery readiness. The team seeks someone who can bridge identity engineering and security operations to strengthen enterprise defenses and improve resiliency.
Responsibilities
- Administer and engineer Active Directory and hybrid identity environments (45% of time).
- Perform identity security hardening and attack path remediation (30% of time).
- Develop PowerShell automation for identity-related tasks (15% of time).
- Support recovery, resiliency, and identity integration initiatives (10% of time).
- Execute infrastructure deployments, configurations, and operational changes.
- Identify and remediate identity-related security risks and misconfigurations.
- Document processes and troubleshoot issues in hybrid environments.
- Collaborate with team members (15% of time) and handle minor management duties (5% of time).
Requirements
- 5+ years of experience administering Active Directory environments.
- Hands-on experience supporting Microsoft Entra ID (Azure AD).
- Experience implementing and managing Entra Connect / Azure AD Connect.
- Strong understanding of domain controllers, forests, trusts, and authentication services.
- Experience working within hybrid identity environments.
- Knowledge of Tier 0 security concepts and privileged access controls.
- Experience identifying and remediating identity-related security risks and misconfigurations.
- PowerShell scripting and automation experience.
- Strong documentation and troubleshooting abilities.
Qualifications
- Experience with Multi-Factor Authentication and Conditional Access.
- Exposure to CyberArk or other Privileged Access Management platforms.
- Experience working with Identity Governance and Administration solutions such as Saviynt.
- Familiarity with HashiCorp, Keyfactor, or similar secrets and certificate management platforms.
- Experience supporting Active Directory backup, recovery, and resiliency initiatives.
- Understanding of attack path analysis and privilege escalation remediation.
- Experience supporting enterprise cybersecurity programs.
- Knowledge of security hardening frameworks and identity protection best practices.
Contract Duration: 12+ Months