Responsibilities
Kforce has a client that is seeking Senior Active Directory Engineer in Houston, TX. Summary: As a Senior Active Directory Engineer, you will play a critical role in ensuring the stability, security, and efficiency of our organization's Active Directory infrastructure. Your expertise will be instrumental in addressing security gaps, implementing best practices, and optimizing our directory services. You will collaborate closely with cross-functional teams, including IT security, network operations, and application development. Responsibilities: Active Directory Management and Troubleshooting:
- Provide expert troubleshooting for multi-forest Active Directory service issues (DFS, DNS, WINS, LDAP, etc.)
- Analyze and resolve complex Active Directory-related problems promptly
- Understand and optimize Azure Active Directory integration
Group Policy And Legacy GPOs
- Demonstrate a strong understanding of AD attributes, LDAP queries, and PowerShell scripting to modify AD attributes
- Perform group policy analysis, configure GPOs, and utilize item-level targeting
- Assess and remediate legacy Group Policy Objects (GPOs)
Privileged Access Solutions
- Implement and manage privileged access solutions, including just-in-time access and privileged identity management
- Ensure secure delegation of administrative privileges within Active Directory
- Collaborate with IT security teams to define and enforce security policies
- Conduct regular security assessments, vulnerability scans, and access reviews
- Remediate security vulnerabilities and non-compliance issues promptly
- Plan, support, and design directory synchronization systems for Microsoft Active Directory and Windows-based systems
- Analyze the current Active Directory environment to identify technical and operational challenges
- Propose and implement solutions for improvement
Requirements
- Bachelor's or Master's degree in Computer Science, Information Technology, or related fields
- Relevant certifications such as MCSE, PKI, AD, NTDS, FSMO, MCSA, ADFS, ITIL, CCNA, or CISSP
- Senior-level experience in Windows Server and Active Directory administration
- Proficiency in automation and Infrastructure as Code (IaC)
- Strong communication skills (both verbal and written)
- Advanced troubleshooting skills across technology stacks (network, storage, server, applications)
Desired Skills And Experience
- DNS, DFS, DHCP, WINS, ADFS, and administering Active Directory and GPOs
- Familiarity with server virtualization technologies and PowerShell scripting
- Previous work on large-scale Active Directory and Identity Management projects
- Ability to analyze and improve Active Directory security
- Mentoring and leading junior team members
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.