Active Directory Security Architect

Osmii

Region Hovedstaden

On-site

DKK 989,000 - 1,408,000

Full time

35 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Osmii seeks an experienced Active Directory and security architect to design, secure, and operate enterprise AD environments. The role balances advisory work with hands-on administration to assess processes, define target-state architectures, and create remediation models.

The candidate will drive security program development, integrate CSF/RMF, ISO 27001, and CIS controls; experience with PowerShell automation and Kerberos is essential in this fast-paced environment.

Qualifications

  • Active Directory knowledge including schema management, GPO design and administration, Kerberos authentication, and service authentication.
  • Experience with PowerShell automation, including generic arguments to commands, loops, conditions, and operations.
  • Understanding of the PowerShell utility and where it applies.
  • Ability to advise on Data Protection and recovery from cyber attacks.
  • Ability to assess and build an ISO 27001 compliant Cybersecurity program.
  • Ability to assess and mitigate risks using the CIS critical security controls (CIC CSC) and Implementation Groups (IG).
  • Ability to define mitigation strategies for secured IT landscape using security frameworks.
  • Ability to drive remediation approaches and resolution confirmation.
  • Ability to implement NIST Cybersecurity Framework (CSF) & Risk Management Framework (RMF) into IT solutions and evaluate maturity.
  • Ability to integrate Cyber Threat Intelligence (CTI) feed into advisory and technology solutions.

Responsibilities

  • Lead architecture and advisory work for enterprise Active Directory environments.
  • Design, secure, and operate AD and security programs across the enterprise.
  • Assess operational processes and define target-state architectures with remediation plans.
  • Drive remediation approaches and confirm resolution in security initiatives.

Skills

Active Directory
GPO design
Kerberos authentication
PowerShell automation
Security assessment
Risk management
NIST CSF
RMF
ISO 27001
CIS controls

Tools

PowerShell

Job description

4 month initial contact (likely extension)

Based in Denmark

Onsite up to 5 days per week

Paying up to 870 Danish Krone per hour depending on experience

Job Description

We are seeking an experienced Active Directory administrator to join our team. The ideal candidate will have a strong understanding of Active Directory concepts, including schema management, GPO design and administration, Kerberos authentication, and service authentication. Additionally, the candidate should have experience with PowerShell automation, security assessment, and risk management.

The role should primarily be considered an Active Directory and Microsoft Security Architect position rather than a pure AD Administrator role. The candidate must have strong architectural and advisory experience in designing, securing, and operating enterprise Active Directory environments. However, practical hands-on administration experience is equally important, as many of the required activities involve assessing existing operational processes, identifying shortcomings, defining target-state architectures, and creating realistic remediation and operating models.

Requirements
  • Active Directory knowledge, including schema management, GPO design and administration, Kerberos authentication, and service authentication.
  • Experience with PowerShell automation, including generic arguments to commands, loops, conditions, and operations.
  • Familiarity with the generic arguments to commands, loops, conditions, and operations.
  • Knowledge of how to generate help information (get-help).
  • Understanding of how to install/update PowerShell or one of its components.
  • Understanding of the PowerShell utility and where it applies.
  • Ability to advise on Data Protection and recovery from cyber attacks.
  • Ability to assess and build an ISO 27001 compliant Cybersecurity program.
  • Ability to assess and mitigate risks using the CIS critical security controls (CIC CSC) and Implementation Groups (IG).
  • Ability to define mitigation strategies for secured IT landscape using security frameworks.
  • Ability to drive remediation approaches and resolution confirmation.
  • Ability to implement NIST Cybersecurity Framework (CSF) & Risk Management Framework (RMF) into information technology solutions and evaluate a customer’s maturity level.
  • Ability to integrate Cyber Threat Intelligence (CTI) feed into advisory and technology solutions.
  • Ability to manage the overall cybersecurity lifecycle, from managing defense to responding to cybersecurity incidents.
  • Ability to perform security governance diagnostic survey and present findings to Customer Executives.
  • Awareness of advanced persistent threats (APTs).
  • Awareness of security information and event correlation, detection, and response.
  • Awareness of cybersecurity trends.
  • Awareness of the Basics of Cybersecurity Framework.
  • Understanding of Cyber threats and how they operate.
  • Understanding of the Basics of CIS controls.
  • Understanding of the Basics of ISO 27001 compliance standards.
  • Understanding of the various Security Domains as per ISC2.
  • Understanding of Common Vulnerability and Exposure (CVE).
  • Understanding of Common Vulnerability Scoring System (CVSS).
  • Understanding of National Vulnerability Database (NVD).
  • Understanding of basic Information System vulnerability.
  • Understanding of the approach to manage cyber risk, selecting and applying controls.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Interim Security Architect
Interim Security Architect

emagine • København

On-site
DKK 185,000 - 332,000
IT Security Analyst
IT Security Analyst

Radiometer Danmark / Danaher • København

On-site
DKK 60,000 - 90,000
Technical Consultant – Security Architecture
Technical Consultant – Security Architecture

SoftwareONE Deutschland GmbH • Gladsaxe Kommune

Hybrid
DKK 900,000 - 1,300,000
Global company culture
Onboarding and mentoring
President’s Club
+2
Technical Consultant – Security Architecture
Technical Consultant – Security Architecture

SoftwareOne • Søborg

On-site
DKK 850,000 - 1,150,000
Global company culture
Structured onboarding and mentoring
President’s Club
+2
Technical Consultant – Security Architecture
Technical Consultant – Security Architecture

SoftwareONE Deutschland GmbH • Denmark

Hybrid
DKK 900,000 - 1,500,000
Global culture
Onboarding & mentoring
President’s Club
+2
Cyber Security Consultant
Cyber Security Consultant

Coalesce Management Consulting • Aarhus kommune

On-site
DKK 700,000 - 900,000
Information Security Analyst
Information Security Analyst

NextSolutions • Horsens

On-site
DKK 600,000 - 800,000
IT Security Analyst
IT Security Analyst

Danaher • Denmark

On-site
DKK 650,000 - 800,000
PAM Specialist – CyberArk - Expert Level
PAM Specialist – CyberArk - Expert Level

DXC Technology • København

Hybrid
DKK 900,000 - 1,200,000
Competitive salary
Pension
Service Owner – Infrastructure Security
Service Owner – Infrastructure Security

McDonald's Danmark ApS • Frederiksberg

Hybrid
DKK 60,000 - 90,000