Job Search and Career Advice Platform

Enable job alerts via email!

Active Directory Security Consultant - SC Cleared

SR2 REC LTD

Greater London

On-site

GBP 70,000 - 90,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A security consultancy firm is seeking an experienced Active Directory Security Consultant to lead security assessments for on-premises and Azure identity environments. The role requires advanced knowledge in Active Directory, Group Policy, and secure authentication protocols. Responsibilities include assessing security posture and translating technical risks into actionable advice for diverse audiences. This position is crucial for uplifting access security in line with Microsoft and NCSC best practices.

Qualifications

  • Advanced knowledge of Active Directory, Group Policy, Kerberos, Entra ID, and secure authentication protocols.
  • Strong expertise in Privileged Access Management, PIM / PAM and secure administrative practices.
  • Demonstrable experience applying NCSC and Microsoft Security guidance.

Responsibilities

  • Conduct end-to-end Active Directory security assessments across various components.
  • Lead KRBTGT account analysis and safe password rotation planning.
  • Review Privileged Access structures and delegated admin models.

Skills

Active Directory
Privileged Access Management
Kerberos
Entra ID
Secure authentication protocols
Job description
Overview

Active Directory Security Consultant – SC Cleared - Inside IR35

We are seeking an experienced Active Directory Security Consultant to lead a comprehensive security assessment across on-premises AD and Azure identity environments. This role combines deep technical expertise with advisory capability, helping uplift identity and access security posture in line with Microsoft and NCSC best practice.

Responsibilities
  • Conduct end-to-end Active Directory security assessments, including domain controllers, trusts, privileged behaviours, deprecated accounts, and protocol risks.
  • Lead KRBTGT account analysis and safe password rotation planning.
  • Review Privileged Access structures, group memberships and delegated admin models.
  • Analyse Kerberos authentication hygiene, ticket anomalies and mitigation options.
  • Assess Azure AD / Entra ID and hybrid identity configurations, ensuring alignment to zero-trust principles.
  • Evaluate service accounts, Tier-0 assets, GPOs, and administrative workstation approaches (PAW / Cloud PAW).
Essential Skills & Experience
  • Advanced knowledge of Active Directory, Group Policy, Kerberos, Entra ID, hybrid identity, and secure authentication protocols.
  • Strong expertise in Privileged Access Management, PIM / PAM and secure administrative practices.
  • Demonstrable experience applying NCSC and Microsoft Security guidance.
  • Practical experience hardening authentication mechanisms (Kerberos, NTLMv2, LDAP signing).
  • Ability to translate complex technical risk into clear, actionable advice for both technical and non-technical audiences.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.