Job Title: Senior Directory Infrastructure Engineer (Remote) Location: Washington DC Duration:12 Months
Job Description: The clients Security and Engineering Team manages a variety of functions including endpoint management Active Directory VPN firewalls and security incident response. The team is l seeking experienced Directory Infrastructure Engineers with extensive expertise in enterprise identity infrastructure including Active Directory Entra ID (formerly Azure AD) OKTA Universal Directory and LDAP environments. The resource must have a proven track record of designing and managing complex directory services across multiple platforms with particular emphasis on the complete lifecycle management of AD domains. The ideal candidates will bring expertise in modern identity approaches including Just-In-Time access Privileged Identity Management and continuous validation patterns that balance security with user experience.
Key Responsibilities
Design implement and maintain enterprise directory services infrastructure
Manage the complete lifecycle of AD domains including planning deployment maintenance upgrades and decommissioning
Lead domain consolidation migration and forest restructuring projects
Develop domain health monitoring and proactive maintenance procedures
Create and execute disaster recovery plans for directory services
Develop and maintain automation scripts using PowerShell for directory management tasks
Interface with directory services using GraphAPI and REST API for custom integrations
Implement and maintain security best practices for directory services
Design and manage trust relationships between domains and forests
Create and maintain documentation for directory architecture and operational procedures
Provide escalation support for critical directory service incidents
Preferred Qualifications
Relevant certifications (Microsoft 365 Certified: Identity and Access Administrator OKTA Professional etc.)
Experience with Terraform Ansible or similar IaC tools for directory infrastructure
Knowledge of SAML OAuth OIDC and other modern authentication protocols
Experience with Group Policy design and management
Expertise in domain controller sizing placement and performance optimization
Experience with domain functional level upgrades and cross-domain migrations
Familiarity with CI/CD pipelines for infrastructure automation
Experience with implementing Zero Trust architecture
Skills:
Skills
Required / Desired
Amount
of Experience
Experience with enterprise directory services (Active Directory Entra ID OKTA Universal Directory LDAP)
6
Years
Experience with AD domain lifecycle management including domain creation upgrades and decommissioning
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.