Active Directory Engineer

Nexus CorporationTokyo, TokyoOn-siteContractListed 4 hours ago

Apply now

About this role

Seeking a skilled Active Directory / Microsoft 365 Engineer with expertise in Azure AD, PowerShell, AD migration, ADFS, IAM, and hybrid environments. Hands-on experience with Quest/ADMT is mandatory.

Key Responsibilities:

- Support the Active Directory environment on-premises and in the Cloud (Microsoft 365).
- Manage problem resolution to satisfactory completion by keeping abreast of assigned tickets and following the proper escalation processes via the ticketing system.
- Familiar with application monitoring tools, reviewing log files, and be available on occasion for off-hours emergency support for critical applications.
- Support Single Sign-On using Active Directory Federation Services with Multi-Factor Authentication.
- Ensure that performance meets or exceeds defined Service Level Agreements.
- Perform migrations and deployments related to the building, upgrade, and maintenance of MS Exchange.
- Monthly audits on the Active Directory environment to reconcile users.
- Consult with Integrated Product Teams (IPT) and product owners to establish better process flow to mitigate incidents/tasks.
- Troubleshoot active sync issues with mobile devices.
- Troubleshoot issues with Microsoft 365 Teams.
- Create security and distribution groups in Active Directory.
- Update, contribute, and maintain local SharePoint team sites as procedures/documentation change.
- Follow user guides and instructional documents for end-users.
- In charge of onboarding/offboarding users.
- Assigned group- and file-level permissions in Active Directory.
- Train local support team members, Relationship Managers, and Data Analysts on incident origination processes and modifications implemented within the ticketing system.
- Designing, Configuring, and maintaining Active Directory services on Windows Server 2003, 2008, 2012, 2016, 2019 DC.
- Remediation of domains, Domain controllers build, Functional level upgrades.
- Strong experience in infrastructure assessment, solution design, architecture, planning, and execution for Active Directory domain migrations.
- Assessment of all domains and Forest along with IIS, File, Print, Database servers, etc.
- Implementation of Azure AD Connect, Conditional Access policies, MFA, FIDO Authentication, Windows Hello for Business setup.
- Gather migration requirements interacting with multiple stakeholders and Application Owners.
- Managing Identity and Access Management of Azure subscriptions, Azure AD, Azure AD Application Proxy, Azure AD PTA.
- Design and develop specialized automation tools, scripts, and processes for administration and performance monitoring.
- Experience in syncing objects, users, groups, workstation in Hybrid approach.
- Troubleshooting AD Domain migration related issues and suggesting best practices.
- End-to-end support for migration of all directory objects.

### Requirements
What are we looking for:

- Strong experience with Microsoft Active Directory and Azure AD/Entra ID.
- Experience designing, configuring, and maintaining Active Directory environments.
- Experience with Active Directory domain and forest migrations.
- Quest/ADMT or similar Active Directory migration tool experience is mandatory.
- Experience with on-premises and hybrid Active Directory environments.
- Strong PowerShell scripting and automation skills.
- Experience with Microsoft 365 / Office 365 administration.
- Experience with Azure AD Connect, Conditional Access, MFA, FIDO, and Windows Hello for Business.
- Experience with ADFS and Single Sign-On.
- Strong knowledge of GPO, OU restructuring, AD Sites, replication, trusts, permissions, DNS, and DHCP.
- Experience with Windows Server environments.
- Experience with Exchange / Exchange Online, SharePoint Online, and Microsoft Teams.
- Knowledge of IAM, RBAC, user lifecycle management, and Azure identity services.
- Experience with Active Directory Application Proxy and Azure AD PTA.
- Knowledge of authentication protocols such as SAML, WS-Fed, OAuth, and OpenID.
- Experience with LDAP, APIs, file transfer protocols, and troubleshooting data flows.
- Experience with Public Folder and PST migrations.
- Knowledge of Office 365 Security & Compliance and CASB technology.
- Experience in infrastructure assessment, solution design, architecture, and migration planning.
- Strong troubleshooting, documentation, communication, and stakeholder-management skills.
- Ability to work effectively with virtual teams and across different client environments.
Additional Requirements:

- Ability to work with virtual teams.
- Ability to work in a variety of client settings and platforms.
- Team player with strong collaboration skills.
- Ability to interact with multiple stakeholders and application owners.
- Ability to support onboarding/offboarding and user lifecycle management.
- Ability to create and maintain technical documentation and user guides.