Active Directory/Quest Engineer
Job in
Houston, Harris County, Texas, 77233, USA
Listed on 2026-10-08
Listing for:
TEKsystems
Full Time
position Listed on 2026-10-08
Job specializations:
-
IT/Tech
Systems Administrator, Systems Engineer, Windows Server, Cybersecurity
Job Description & How to Apply Below
This engineer will serve as the primary subject-matter expert for Quest migration tools and oversee ongoing migrations involving more than 35,000 workstations, along with servers, applications, users, and other directory objects. The position requires extensive experience with on-premises Active Directory, domain consolidation, hybrid identity, Microsoft Entra , Power Shell automation, and Active Directory security.
Key Responsibilities Plan, execute, and optimize on-premises Active Directory operations.
Design, deploy, administer, and support domain controllers, domains, forests, trusts, Sites and Services, and Group Policy Objects.
Serve as the primary subject-matter expert for Quest migration tools.
Oversee ongoing domain migrations involving more than 35,000 workstations, as well as server and application transitions.
Migrate legacy domains into a consolidated, modern Active Directory structure.
Address stalled migration initiatives through automation, process improvements, and Active Directory best practices.
Manage hybrid Active Directory configurations and synchronization between on-premises AD and Microsoft Entra Azure AD Connect.
Support identity federation, Conditional Access policies, Pass-through Authentication, single sign-on, and cloud identity management.
Support cloud integration for an environment in which approximately 20% of workloads are cloud-native.
Troubleshoot complex Active Directory issues, including replication failures, DFS-R/SYSVOL, DNS integration, schema extensions, Certificate Services, and performance problems.
Identify and remediate Active Directory security vulnerabilities, including issues involving Kerberos and LDAP hardening.
Support the integration of legacy domains associated with merger and acquisition activity.
Develop and maintain Power Shell scripts for Active Directory administration, querying, reporting, and bulk operations.
Develop automation for AD health monitoring, backup and recovery, compliance, and migration operations.
Use ADDS, Data Dog, or other third-party tools to support monitoring and operational visibility.
Collaborate with security, application, networking, and infrastructure teams to assess migration dependencies.
Identify and mitigate technical risks while minimizing downtime during critical migration activities.
Implement Active Directory security best practices, including least privilege, auditing, compliance, and Privileged Access Management.
Evaluate tools and technologies that support Active Directory and hybrid identity environments.
Create technical roadmaps for domain consolidation and hybrid expansion.
Provide regular project and migration updates to leadership.
Guide technical teams, mentor peers, and influence engineering decisions without direct managerial authority.
Required Qualifications Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent professional experience.
At least 7 years of hands-on experience with on-premises Active Directory.
At least 3 years of experience in engineering.
At least 2 years of experience supporting hybrid Active Directory and Microsoft Entra .Deep expertise in Active Directory architecture, including:
Multi-domain and multi-forest environments
Domain and forest trusts
Domain controllers
Active Directory Sites and Services Schema modifications
Organizational Unit design
Replication topology
Strong understanding of Quest migration tools and the ability to serve as the primary Quest migration expert.
Proven experience completing large-scale Active Directory migrations using tools such as:
Quest Migration Manager Active Directory Migration Tool Power Shell Experience migrating users and Active Directory objects erience with domain consolidation and SID History preservation.
Experience overseeing workstation, server, and application transitions between legacy and target domains.
Extensive experience troubleshooting:
Active Directory replicationDFS-R and SYSVOLDNS integration AD Certificate Services and PKIGroup Policy processing
Authentication and performance issues
Strong Group Policy experience, including inheritance, filtering, deployment, and troubleshooting in complex environments.
Strong knowledge of hybrid identity and cloud identity management, including:
Microsoft Entra IDAzure AD Connect Pass-through…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×