drjobs Authentication Services Engineer

Authentication Services Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Warren, RI - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Title:

Authentication Services Engineer

Company:

Everest Global Services Inc.

Job Category:

Technology

Job Description:

About Everest:
Everest Group Ltd. (Everest) is a leading global reinsurance and insurance provider operating for nearly 50 years through subsidiaries in North America Latin America the UK & Ireland Continental Europe and Asia Pacific regions. Throughout our history Everest has maintained its discipline and focuses on creating long-term value through underwriting excellence and strong risk and capital management. Our strengths include extensive product and distribution capabilities a strong balance sheet and an innovative culture. Our most critical asset is our people. We offer dynamic training & professional development to our employees. We also offer generous tuition/continuing education reimbursement programs mentoring opportunities flexible work arrangements and Colleague Resource Groups.

About the Role:

We are seeking a senior-level Authentication Services Engineer to design architect and build our next-generation authentication and Active Directory (AD) environment. This role is responsible for engineering strategy and execution enabling secure scalable authentication for internal systems external applications and infrastructure control planes.

Key Responsibilities:

  • Architect Active Directory environments including:

  • Strategy and design of separate AD forests for external-facing vs internal-facing applications.

  • Strategy for infrastructure authentication (e.g. server agents controllers) vs end-user authentication (e.g. workstation and employee access).

  • Engineering AD for resilience security and scalability across business units.

  • Design and implement OU strategies organizing AD structures by business area.

  • Engineer Group Policy Objects (GPOs) to enforce security compliance and operational standards across forests and OUs.

  • Design and implement certificate management processes for:

  • Devices (workstations servers)

  • Domain controllers

  • Applications and service principals

  • Collaborate with Privileged Access Management teams to:

  • Streamline privileged access to the control plane (domain controllers management servers).

  • Control and secure authentication agents installed on control plane servers.

  • Integrate with PAM tool to enforce password rotation password vaulting and proxy access to sensitive servers.

  • Lead authentication modernization efforts including planning migrations from on-premises AD to Microsoft Entra ID Directory Services where applicable.

  • Integrate on-prem and cloud identity systems ensuring seamless secure hybrid identity models (Azure AD Connect Cloud Sync).

  • Partner with security and infrastructure teams to align authentication services with compliance frameworks (CIS NIST) and Zero Trust strategies.

  • Automate key processes related to certificate management GPO deployment and identity synchronization using PowerShell and/or other IaC tooling.

Required Skills and Experience:

  • Deep technical expertise in Active Directory architecture engineering forest/domain strategy and schema management.

  • Hands-on experience building separate AD forests for external-facing vs internal-facing applications.

  • Strong knowledge of Group Policy design including policy modeling enforcement security hardening and troubleshooting.

  • Proficiency with hybrid identity architectures including Azure AD Connect and Microsoft Entra ID (formerly Azure AD).

  • Certificate Services (PKI) expertise including CA design template management certificate lifecycle automation.

  • Experience engineering integrations with PAM platforms for password rotation credential vaulting and session proxying.

  • Solid understanding of authentication protocols: Kerberos LDAP NTLM OAuth2 OIDC and SAML.

  • Scripting and automation proficiency especially with PowerShell.

  • Strong design experience in secure authentication for control plane systems (e.g. securing domain controllers management platforms).

Preferred Qualifications:

  • Microsoft certifications (e.g. Microsoft Certified: Identity and Access Administrator Associate Microsoft Certified: Enterprise Administrator Expert).

  • Familiarity with PAM tool integrations API usage and agent deployments.

  • Experience leading Active Directory modernization and cloud migration initiatives at enterprise scale.

  • Knowledge of Zero Trust architecture and how authentication engineering supports Zero Trust frameworks.

  • Familiarity with certificate automation frameworks (e.g. ACME protocol integrations).

What if I dont meet every requirement At Everest we are dedicated to building an inclusive and authentic workplace. So if you are excited about this role but your past experience doesnt align perfectly with every element in the job description we still encourage you to apply. You may be just the right candidate for this or other roles. Please let us know if you need any accommodations throughout the application or interview process.

Our Culture

At Everest our purpose is to provide the world with protection. We help clients and businesses thrive fuel global economies and create sustainable value for our colleagues shareholders and the communities that we serve. We also pride ourselves on having a unique and inclusive culture which is driven by a unified set of values and behaviors. Clickhereto learn more about our culture.

All colleagues are held accountable to upholding and supporting our values and behaviors across the company. This includes day to day interactions with fellow colleagues and the global communities we serve.

#LI-Hybrid

What if I dont meet every requirement At Everest we are dedicated to building an inclusive and authentic workplace. So if you are excited about this role but your past experience doesnt align perfectly with every element in the job description we still encourage you to apply. You may be just the right candidate for this or other roles. Please let us know if you need any accommodations throughout the application or interview process.

Our Culture

At Everest our purpose is to provide the world with protection. We help clients and businesses thrive fuel global economies and create sustainable value for our colleagues shareholders and the communities that we serve. We also pride ourselves on having a unique and inclusive culture which is driven by a unified set of values and behaviors. Clickhereto learn more about our culture.

All colleagues are held accountable to upholding and supporting our values and behaviors across the company. This includes day to day interactions with fellow colleagues and the global communities we serve.

Type:

Regular

Time Type:

Full time

Primary Location:

Warren NJ

Additional Locations:

Everest is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion or creed sex (including pregnancy) sexual orientation gender identity or expression national origin or ancestry citizenship genetics physical or mental disability age marital status civil union status family or parental status veteran status or any other characteristic protected by law. As part of this commitment Everest will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process to perform essential job functions and/or to receive other benefits and privileges of employment please contact Everest Benefits at

Everest U.S. Privacy Notice Everest ()

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.