Active Directory Operations Engineer

Discipline: Security / Cyber
Job type: Contract
Salary: Competitive
Contact name: Jordan

Contact email: jordan@exalto-consulting.com
Job ref: 957185
Published: about 1 month ago
Startdate: ASAP
Active Directory Operations Engineer

Contract

Rate: DOE (Dependant on Experience)
Location: Remote / Hybrid (occasional travel may be required)
Duration: 6 months initially

About the Role
Exalto Consulting are working with a client on a large-scale enterprise infrastructure and identity transformation programme and are looking to bring in an experienced Active Directory Operations Engineer.
This is a hands-on operational role focused on supporting and maintaining a complex Active Directory and hybrid identity environment. You will play a key role in ensuring the stability, security, and performance of core identity services across the organisation.
Working within a matrix organisation, you’ll collaborate with infrastructure, security, and support teams to manage daily Active Directory operations, troubleshoot authentication issues, and support ongoing operational improvements.
  
Key Responsibilities
  • Manage daily operations of the Active Directory environment
  • Administer users, groups, computers, and organisational units
  • Support and maintain Group Policy Objects (GPOs)
  • Monitor and troubleshoot domain controllers, replication, and authentication issues
  • Support related services such as DNS and Windows Server
  • Resolve login failures, account lockouts, and access-related issues
  • Perform routine health checks, maintenance, and operational monitoring
  • Maintain security policies, password settings, and access controls
  • Document procedures, operational changes, and support activities
  • Work effectively in a matrix organisation with cross-functional teams
  • Handle a high volume of incidents using ITSM tools
  • Support incident, problem, change, and capacity management processes
  
What You’ll Bring
  • Strong experience in Active Directory administration and AD DS
  • Experience with Azure AD / Microsoft Entra ID and hybrid identity environments
  • Knowledge of AD FS, federation, Kerberos, LDAP, SAML, OAuth 2.0, and OpenID Connect
  • Experience with Group Policy, DNS, DHCP, domain trusts, and replication
  • Strong PowerShell scripting and automation skills
  • Familiarity with MFA, Conditional Access, and access governance
  • Experience working within ITIL-based support environments and ITSM tools
  • Strong troubleshooting, communication, and stakeholder management skills
  • Ability to work effectively within a matrix organisation
  
If this sounds relevant, we’d be happy to share more context and discuss whether it could be a good fit.