Active Directory Support Engineer
Posted on:
21 days ago
Vacancies:
1 Vacancy
Job Summary
Job Summary
We are seeking an experienced Active Directory Support Engineer to support and maintain enterprise-level AD infrastructure. The ideal candidate will have strong expertise in AD operations security hardening troubleshooting and automation along with the ability to work in a fast-paced production environment.
Key Responsibilities
- Security Hardening:Implement and enforce Active Directory security best practices including securing LDAP channels disabling legacy protocols (e.g. NTLM) and managing privileged accounts.
- Migration & Upgrades:Lead and support AD migrations functional level upgrades domain consolidations and Windows Server upgrades.
- AD Health Monitoring:Monitor domain controllers replication processes and DNS integration to ensure high availability and prevent outages.
- Production Changes:Execute patches promote domain controllers and manage configuration updates under strict change control processes (often during nights/weekends).
- Troubleshooting:Diagnose and resolve replication delays authentication failures and Group Policy issues using tools such as Repadmin and DCDiag.
- IAM & Team Support:Provide runbooks documentation and hands-on support to IAM and other support teams for AD-related issues.
- Compliance & Auditing:Ensure AD operations align with internal policies regulatory standards and audit requirements.
- Automation:Develop scripts (primarily using PowerShell) to automate routine operational tasks monitoring and reporting.
- Cross-Functional Collaboration:Work closely with cybersecurity networking and other technical teams to support business requirements.
- Documentation:Maintain technical documentation and share knowledge with internal teams (including IPEM).
- On-Call Support:Participate in on-call rotations including nights and weekends for critical incidents.
Required Experience
- 5 years of hands-on experience in Active Directory operations(Replication Domain Controller Management Group Policy Infrastructure)
- Strong experience with AD monitoring and troubleshooting tools
- Proficiency in scripting (PowerShell preferred)
- Experience with:
- Privileged Access Management (PAM)
- Zero Trust security principles
- CIS benchmarks
- Privileged Access Management (PAM)
Skills & Competencies
- Adaptability: Ability to manage shifting priorities in a dynamic environment
- Attention to Detail: High accuracy in configurations compliance and procedures
- Collaboration: Strong communication and teamwork skills across departments
- Proactiveness: Ability to identify risks propose solutions and meet tight deadlines
Work Environment
- Hybrid model (4 days onsite in Toronto)
- Flexible to work during off-hours for planned changes and incident management
Required Skills:
Sailpoint