Systems Engineer/Senior Systems Engineer
Listed on 2026-06-15
-
IT/Tech
Cybersecurity, IT Support, Systems Engineer, Systems Administrator
Overview
The Office of Information Technology at Auburn University is seeking an IAM Systems Engineer to support day‑to‑day identity and directory services for the university, supporting Active Directory–based identity services and their integration with Microsoft Entra (aka: Azure
AD), including modern authentication and Single Sign‑On (SSO) capabilities.
The primary focus of this role is on‑premises Active Directory and its relationship to Entra within an increasingly automated IAM ecosystem. The role also plays a critical part in leading Auburn University toward an Entra –based authentication and Single Sign‑On (SSO) model, helping reduce reliance on legacy on‑premises SSO systems and campus dependencies.
The position reports to the Manager of Identity and Access Management and works closely with the IT Service Desk, distributed IT units, and other central OIT infrastructure teams.
Responsibilities Identity & Directory Services Operations- Operate, secure, and support Auburn University’s on premises Active Directory environment, including users, groups, permissions, and password policies.
- Ensure accurate user provisioning and deprovisioning outcomes across all phases of the identity lifecycle in coordination with the IAM platform.
- Perform daily monitoring and troubleshooting of Active Directory services and related identity infrastructure.
- Troubleshoot account lockouts, authentication failures, and authorization issues.
- Perform configuration of and object recovery using Veeam backups.
- Serve as administrator for Azure/Entra Connect, including monitoring, upgrades, and troubleshooting synchronization issues.
- Troubleshoot synchronization problems involving users, groups, and passwords between on premises AD and Entra .
- Modify and extend synchronization scope and attributes as business needs evolve.
- Build and maintain dynamic Entra groups for security, distribution lists and Microsoft 365 licensing.
- Support IAM driven automation for account provisioning, deprovisioning, and group membership management.
- Troubleshoot and resolve identity issues originating from IAM workflows or distributed IT activity.
- Maintain and reduce technical debt related to legacy or unused Active Directory groups.
- Support a custom group maintenance web application used by campus IT and non technical administrators.
- Perform ad hoc bulk modifications to directory objects using Power Shell or other approved tools.
- Policy, Logging, and Operational Support
- Maintain Group Policy Administrative Templates (ADMX/ADML) and provide limited Group Policy support.
- Use Splunk and other logging tools to investigate login issues, sync failures, and security events.
- Participate in incident response and change management using Service Now.
- Communicate effectively with a student staffed Service Desk and professional IT staff across colleges and campuses.
- The successful candidate will contribute to Auburn University’s identity modernization strategy, with emphasis on reducing institutional risk and simplifying authentication architecture.
- Serve as a technical contributor to the transition from legacy, on premises SSO systems (CAS / SAML) to Entra –based authentication and SSO, potentially in coordination with the IAM platform.
- Support, and at senior levels help lead, planning and execution of SSO modernization initiatives.
- Troubleshoot authentication flows spanning IAM → Active Directory → Entra → SSO.
- Increase operational redundancy by reducing single points of failure in identity and authentication systems.
- At senior levels, mentor peers and contribute to identity architecture discussions and standards.
- Bachelor’s degree + 3 years of experience OR
- Associate’s degree + 7 years of experience OR
- High school diploma or equivalent + 11 years of experience
- Bachelor’s degree + 6 years of experience
Scope of
Experience:
Relevant IT experience in the administration of distributed computer systems, preferably in a university setting.
- Multiple years of Microsoft Active Directory domain…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).