×
Register Here to Apply for Jobs or Post Jobs. X

Windows Active Directory Engineer

Job in New York, New York County, New York, 10261, USA
Listing for: PRI Technology
Full Time position
Listed on 2026-07-10
Job specializations:
  • IT/Tech
    Windows Server, Cybersecurity, Systems Administrator
Salary/Wage Range or Industry Benchmark: 120000 - 180000 USD Yearly USD 120000.00 180000.00 YEAR
Job Description & How to Apply Below
Location: New York

Windows / Active Directory Infrastructure Architect

Location:
New York, NY

We are seeking an experienced Windows / Active Directory Infrastructure Engineer to support and modernize a large-scale, mission‑critical Microsoft infrastructure environment. This role is part of a managed systems engineering team responsible for maintaining highly available compute infrastructure that supports global business operations 24/7.

We believe the ideal candidate will have deep hands‑on experience with Active Directory architecture, security, administration, automation, and infrastructure hardening in a large enterprise environment. This position will play a key role in strengthening identity services, improving reliability, enhancing security posture, and supporting the continued evolution of Windows services across a complex distributed environment.

Key Responsibilities
  • Design, administer, secure, and support large-scale Active Directory environments, including forests, domains, trusts, replication strategies, and privileged access models.
  • Manage and enhance core Microsoft infrastructure services including Active Directory, Group Policy, DNS, DHCP, and Windows Server platforms.
  • Support modernization efforts for enterprise identity and authentication services across development and production environments.
  • Implement and maintain Active Directory security controls, hardening initiatives, and vulnerability remediation efforts.
  • Deploy and manage Windows Local Administrator Password Solution and other privileged access security tools.
  • Support MFA implementation for critical systems and privileged access workflows.
  • Deploy and manage Windows security features such as Credential Guard and other credential theft mitigation technologies.
  • Assess Active Directory environments for security risks, misconfigurations, and privilege escalation paths.
  • Apply least‑privilege principles, administrative tiering models, privileged access management practices, and secure workstation strategies.
  • Automate administrative tasks, reporting, and operational processes using Power Shell.
  • Partner with security, compliance, and infrastructure teams to support auditing, governance, and regulatory requirements.
  • Create and maintain clear technical documentation, operational procedures, and infrastructure standards.
Required Qualifications
  • 7+ years of experience architecting, administering, and securing Active Directory in large enterprise environments.
  • Strong expertise in Active Directory, Group Policy, DNS, DHCP, and Windows Server administration.
  • Experience in Cyber Ark PAM.
  • Hands‑on experience implementing Active Directory security controls and hardening initiatives.
  • Experience deploying and managing Windows Local Administrator Password Solution.
  • Experience implementing and supporting MFA for key systems.
  • Experience with Windows security technologies such as Credential Guard and other credential theft mitigation solutions.
  • Strong understanding of identity lifecycle management, authentication protocols including Kerberos and NTLM, and access control models.
  • Proven experience designing and implementing AD forests, domains, trusts, replication, and privileged access models.
  • Knowledge of Active Directory tiering, privileged access management, administrative workstation strategies, and least-privilege practices.
  • Experience identifying and remediating Active Directory vulnerabilities and misconfigurations.
  • Strong Power Shell scripting and automation skills.
  • Experience working in regulated environments with a focus on compliance, auditing, and security governance.
  • Bachelor’s degree in Computer Science, Engineering, Mathematics, a related field, or equivalent professional experience.
Preferred Qualifications
  • Familiarity with Active Directory security assessment tools, attack path analysis, and privilege escalation remediation.
  • Experience integrating Active Directory with Linux systems, SaaS applications, or other enterprise platforms.
  • Strong understanding of EDR, endpoint security, and security monitoring solutions within Windows environments.
  • Strong documentation, communication, and cross‑functional collaboration skills.
  • Proactive problem‑solving mindset with a focus on continuous improvement.
  • Microsoft certifications such as Identity and Access Administrator Associate, Security Operations Analyst Associate, Azure Solutions Architect, or similar credentials.
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary