Job Summary (IAM AD Specialist):
- Design implement and administer Active Directory (AD) Azure AD and Azure AD-DS
- Perform daily administration of Windows AD objects including maintenance troubleshooting and repair (Active Directory Windows Server 2016/2019 Domain Controllers DNS user authentication)
- Manage AD user/resource inter-forest migrations using Quest/ADMT tools including AD Connect deployments and AD upgrade projects
- Handle GPO management DNS management backup/restore operations OU structure and AD migration activities
- Coordinate legacy application migrations (LDAP LDAPs NTLM Kerberos) with application teams
- Install configure and troubleshoot AD and DNS including Group Policy and AD security solutions
- Manage and configure Active Directory FSMO roles functional levels domain sites and replication
- Create and maintain documentation for AD environment management
- Configure Azure AD identity management SSO (SAML OAUTH OIDC) permissions and object management
- Deploy/administer Azure AD Connect tool configure synchronization rules troubleshoot sync issues and manage identity governance MFA and conditional access policies
- Configure B2B and B2C policies Hybrid Domain Join and related Azure AD features
- Automate AD operational tasks using PowerShell scripts
- Provide technical expertise in AD architecture Azure HCI Empower ID and forest implementation
- Integrate modern authentication protocols and manage Azure AD App Proxy MFA DNS DHCP SMTP
- Manage Microsoft PKI technologies ADFS implementations and certificate management
Required Experience and Skills:
- Hands-on experience in AD and Azure AD administration and architecture
- Experience with AD Connect GPO AD replication and migrations
- Strong knowledge of Azure AD architecture maintenance and modern authentication protocols
- Familiarity with DNS DHCP SMTP PKI and certificate management
- Experience with Microsoft Windows Server administration (2016/2019)
- Knowledge of Empower ID Azure HCI and ADFS management