Senior Active Directory Engineer
Staffing Spot, Inc. · Charlotte, NC · 1 mo ago
HybridContract
Locations: Charlotte, NC or Chandler, AZ (3 days onsite weekly). Local candidates only.
About the role
12-month contract with high likelihood of extension based on project need and performance. We are seeking a highly technical engineer who can perform hands-on engineering work as well as high-level problem solving. This is not a system administration role. The ideal candidate will architect, design, and implement complex technical solutions across Active Directory and Entra ID environments.
Responsibilities
- Deploy and manage Active Directory infrastructure, including domain controllers, group policies, and organizational units
- Deploy and manage 14 applications supporting Active Directory
- Update software and configurations to address vulnerabilities
- Lead troubleshooting and resolution of complex AD issues, including authentication, replication, and access control
- Develop, update, and enforce security standards for AD, including privileged access management and audit logging
- Collaborate with IT, cybersecurity, and application teams to integrate AD with enterprise systems and cloud platforms
- Maintain documentation and provide technical guidance for AD operations and best practices
- Participate in compliance reviews and risk assessments related to identity and access management
- Manage workload in Jira using Agile principles
Requirements
- 5+ years of extensive hands-on Active Directory Engineering experience with Microsoft Entra ID (Azure AD) in an enterprise environment
- Experience with Domain Controller Virtualization
- Experience with Domain Controller Management/Administration and building domain controllers
- Experience working in an Agile environment and hands-on experience using Jira
- 5+ years of strong scripting and automation capability (PowerShell and/or Python strongly preferred), with demonstrated ability to productionize scripts (logging, error handling, modularity, testing approach)
- 4+ years of Identity & Access Management experience including IAM frameworks, privileged access management, and compliance requirements
- Experience implementing identity security capabilities such as Conditional Access, privileged access workflows (e.g., PIM), and tenant/directory hardening
- Demonstrated ability to lead complex projects across multiple teams/lines of business, including planning, sequencing dependencies, and driving delivery
- Excellent written and verbal communication skills, including the ability to explain tradeoffs and influence outcomes
Preferred Qualifications
- Experience with Microsoft HyperV Management
- Familiarity with identity-related security tooling and control implementations (e.g., identity monitoring/defense and IAM control reviews)
- Experience with Terraform and reusable module development for identity/IAM capabilities
- Experience producing architecture/design artifacts and partnering with architecture or technical authority functions