Covetus ยท 2 days ago
Active Directory L3 Architect
Covetus is seeking an Active Directory L3 Architect responsible for designing, implementing, and managing on-premises Active Directory and Azure Active Directory environments. The role involves advanced troubleshooting, architectural design for hybrid environments, and ensuring compliance with IAM policies.
Responsibilities
Define and manage technical standards for Active Directory and Azure AD
Design and implement secure, scalable identity solutions for hybrid environments
Develop IAM policies, standards, and procedures aligned with compliance requirements
Handle Level 3 (L3) activities: critical incident resolution, change management, and complex troubleshooting
Maintain and optimize AD infrastructure (DNS, GPOs, replication, FSMO roles)
Monitor Azure AD Connect Health portal for sync alerts and performance analytics
Configure and troubleshoot Azure AD Connect, synchronization policies, and staging servers
Implement SSO integrations using OAuth, OIDC, and SAML
Develop advanced PowerShell scripts and Graph API integrations for automation
Implement MFA, Conditional Access, and Privileged Identity Management (PIM)
Ensure compliance through periodic audits and reporting
Manage disaster recovery planning for AADC and ADFS environments
Act as a trusted advisor for stakeholders and lead technical governance meetings
Provide knowledge transfer and mentoring to junior engineers
Participate in service reviews and strategic planning for IAM services
Qualification
Required
Deep expertise in identity and access management
Advanced troubleshooting skills
Architectural design for hybrid environments
Define and manage technical standards for Active Directory and Azure AD
Design and implement secure, scalable identity solutions for hybrid environments
Develop IAM policies, standards, and procedures aligned with compliance requirements
Handle Level 3 (L3) activities: critical incident resolution, change management, and complex troubleshooting
Maintain and optimize AD infrastructure (DNS, GPOs, replication, FSMO roles)
Monitor Azure AD Connect Health portal for sync alerts and performance analytics
Configure and troubleshoot Azure AD Connect, synchronization policies, and staging servers
Implement SSO integrations using OAuth, OIDC, and SAML
Develop advanced PowerShell scripts and Graph API integrations for automation
Implement MFA, Conditional Access, and Privileged Identity Management (PIM)
Ensure compliance through periodic audits and reporting
Manage disaster recovery planning for AADC and ADFS environments
Act as a trusted advisor for stakeholders and lead technical governance meetings
Provide knowledge transfer and mentoring to junior engineers
Participate in service reviews and strategic planning for IAM services
Active Directory (On-Prem)
AD replication troubleshooting, schema updates, GPO management
DNS/DHCP provisioning and trust relationships
Azure AD
Enterprise app registration, SSO configuration, certificate updates
Conditional Access, MFA, and identity lifecycle management
ADFS
Federation setup, DR planning, certificate management
PowerShell scripting for AD/AAD tasks
Experience with Microsoft Graph API for automation
Strong analytical and problem-solving skills
Excellent communication and stakeholder management
Ability to work in Agile environments and lead technical initiatives
Strategic thinking and business acumen
Minimum 8-10 years in AD/AAD engineering and architecture
Preferred
Microsoft Certified: Azure Administrator Associate or Azure Solutions Architect Expert
Domain Knowledge: Retail or enterprise IT environments
Company
Covetus
Headquartered in Dallas, Tx, Covetus LLC is a trusted name in the IT services industry.
H1B Sponsorship
Covetus has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (9)
2024 (5)
2023 (4)
2022 (5)
2021 (5)
2020 (4)
Funding
Current Stage
Growth StageRecent News
Company data provided by crunchbase