Job Description & Requirements
We are seeking a skilled Systems Engineer with a specialization in Active Directory to join our dynamic IT team. The ideal candidate will have a strong background in designing, implementing, and managing complex Active Directory environments. This role will focus on ensuring the reliability, security, and efficiency of our organization's Active Directory infrastructure.
Responsibilities:
1. Design, implement, and maintain Active Directory forests, domains, and domain controllers.
2. Configure and manage Active Directory sites and replication to ensure high availability and fault tolerance.
3. Develop and implement Group Policy Objects (GPOs) to enforce security policies and standards across the network.
4. Monitor and optimize Active Directory performance, including directory service performance, replication latency, and authentication.
5. Implement and manage Active Directory Federation Services (AD FS) for single sign-on (SSO) and identity federation.
6. Collaborate with other IT teams to integrate Active Directory with various systems and applications, including Azure AD, Office 365, and Exchange Server.
7. Troubleshoot and resolve complex Active Directory issues, including authentication failures, DNS misconfigurations, and replication problems.
8. Conduct regular security assessments and audits of Active Directory infrastructure to identify and mitigate security risks.
9. Develop and maintain documentation, including architecture diagrams, standard operating procedures, and technical guides.
10. Stay up-to-date with emerging technologies and best practices related to Active Directory and identity management.
Requirements:
1. Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience).
2. Minimum of 3 years of experience in designing, implementing, and managing Active Directory in enterprise environments.
3. In-depth knowledge of Active Directory architecture, including domains, forests, trusts, and replication.
4. Proficiency in PowerShell scripting for automation and administration tasks.
5. Strong understanding of identity and access management principles, including LDAP, Kerberos, and SAML.
6. Experience with Windows Server operating systems, including Windows Server 2012/2016/2019.
7. Familiarity with Active Directory Certificate Services (AD CS) and Public Key Infrastructure (PKI) is a plus.
8. Excellent problem-solving skills and the ability to troubleshoot complex Active Directory issues.
9. Strong communication and collaboration skills, with the ability to work effectively in a team environment.
10. Relevant certifications such as Microsoft Certified: Azure Administrator Associate or Microsoft Certified: Azure Solutions Architect Expert are highly desirable.
EA Licence No: 11C5502 | EAP Registration No: R21100522