Senior Active Directory Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Optomi · 2 days ago

Senior Active Directory Engineer

Optomi, in partnership with a media and entertainment conglomerate, is seeking an experienced Senior Active Directory (AD) Engineer to join their team. This role will support the company’s Active Directory modernization and standardization initiative, focusing on migrating on-premises AD lifecycle management to a cloud-first identity model using Microsoft Entra ID (Azure AD).

Information TechnologyRecruiting
check
H1B Sponsor Likelynote
Hiring Manager
Evie O'Donnell
linkedin

Responsibilities

Support the assessment, analysis, and modernization of the AD environment
Maintain and manage local AD on-prem devices and domain controllers, including operational support, incident response, and running reports (e.g., Power BI)
Assess existing domain controllers, identify consolidation opportunities, and develop migration strategies
Perform domain controller upgrades, decommissioning, and ensure replication integrity and domain health during consolidation
Analyze existing PKI infrastructure and certificates, migrate certificates to a modern PKI infrastructure with minimal disruption, and revoke/renew/replace legacy or non-compliant certificates
Identify and remove stale objects, orphaned accounts, and unused policies; optimize AD replication, site topology, and GPOs
Implement best practices for AD security, auditing, and hardening
Diagnose and resolve AD, DNS, and PKI-related issues, collaborating with security and infrastructure teams to remediate vulnerabilities
Document configurations, policies, and procedures for operational and future reference
Contribute to process and system configuration improvements; identify and implement automation opportunities to reduce manual tasks and ticket volume
Evaluate capabilities of services/products, define engineered designs with full documentation, and follow structured methodologies for technical analysis
Collaborate with architects and senior engineers, providing guidance and operational insights, without leading design efforts

Qualification

Active DirectoryAzure Active DirectoryDomain Controller ManagementMicrosoft Identity ManagerADFS / Azure AD ConnectLDAP IntegrationsPKI InfrastructureGPO ManagementProject Management

Required

Minimum of 5 years of related work experience in Active Directory engineering and administration
Hands-on experience in large, multi-domain AD environments (100+ domain controllers, 500,000+ user accounts)
Demonstrated experience designing, implementing, and integrating enterprise-level hybrid identity solutions with at least 40,000 users, including: Active Directory (AD), Azure Active Directory (AAD / Microsoft Entra ID), Microsoft Identity Manager, Active Directory Federation Services (ADFS) / Azure AD Connect (AADC), Integrations between key services and various LDAP providers
Experience engineering, designing, and integrating both infrastructure components (domain controllers, sites/services, connectivity) and logical aspects (GPO management, directory structure, management toolsets)
Experience in project management of large IT initiatives
Experience working with and directing suppliers in outsourced environments

Preferred

Certifications and degrees preferred but not required

Company

OPTOMI is an IT staffing firm that serves its consultants, clients, and employees through its consultant-focused approach.

H1B Sponsorship

Optomi has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (7)
2024 (6)
2023 (2)
2022 (5)
2021 (8)
2020 (7)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Todd Black
COO & Co-Founder
linkedin
leader-logo
Amber Castleberry
Vice President of Talent
linkedin
Company data provided by crunchbase