Job Summary IAM / Active Directory (AD) Specialist
- Design implement and administer on-premises Active Directory Azure AD and Azure AD Domain Services (AD DS).
- Perform daily administration and troubleshooting of AD objects Windows Server (2016/2019) DNS authentication and Domain Controllers.
- Lead and execute inter-forest AD migrations (users/resources) using tools such as Quest or ADMT; manage AD Connect deployments and upgrades.
- Manage Group Policy Objects (GPOs) organizational unit (OU) structures DNS zones AD migrations and backup/restore tasks.
- Migrate legacy applications dependent on LDAP/LDAPS NTLM and Kerberos protocols in collaboration with application teams.
- Install configure and troubleshoot AD DNS Group Policies and implement AD security measures.
- Administer FSMO roles AD functional levels domain sites and replication processes.
- Maintain thorough documentation of AD environments operational processes policies and runbooks.
- Configure and manage Azure AD identity solutions including SSO (SAML OAuth OIDC) permission models Azure AD Connect synchronization identity governance MFA conditional access and identity protection.
- Set up and manage Azure B2B/B2C policies and hybrid domain join configurations.
- Automate routine AD and Azure AD operations using PowerShell scripting.
- Integrate applications with modern authentication protocols (SAML OAuth OIDC).
- Manage certificate services including PKI ADFS and certificate infrastructures.
- Collaborate across technical and application teams to support secure efficient identity solutions in hybrid (on-prem & cloud) environments.