Job Search and Career Advice Platform

Enable job alerts via email!

Active Directory SME - SC Cleared

CBSbutler Holdings Limited trading as CBSbutler

Remote

GBP 150,000 - 200,000

Full time

15 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A technology consulting firm is seeking an Active Directory SME for a fully remote position in the UK. This role entails ownership of AD services design, ensuring security, scalability, and compliance. With a focus on both hands-on engineering and strategic leadership, the ideal candidate will possess over 5 years of AD experience, including security best practices, migrations, and automation via PowerShell. Active SC clearance is mandatory for this position. Competitive compensation of £575 - £625 per day is on offer.

Qualifications

  • 5+ years of hands-on experience in a similar AD-focused role.
  • It is essential for this role that you hold active SC clearance.

Responsibilities

  • Develop and maintain AD architecture for scalability, security, and high performance.
  • Manage domain controllers, replication, DNS, and DHCP integration.
  • Implement enterprise AD security best practices.
  • Lead AD migrations, domain/forest consolidations, and Windows Server upgrades.

Skills

Active Directory Architecture & Replication
PowerShell scripting for automation and reporting
GPO Design, Deployment & Troubleshooting
DNS/DHCP integration with AD
ADFS configuration and federation support
Azure AD – hybrid identity & sync (AAD Connect)
Kerberos and NTLM authentication
LDAP / LDAPS
Active Directory Certificate Services (AD CS)
Job description
Active Directory SME

Duration: 6+ months. Fully remote. SC cleared role. Compensation: £575 - £625 a day Inside IR35.

As the Active Directory SME, you will take ownership of the design, architecture, and operational excellence of Microsoft Active Directory services. You will act as the technical authority for AD-related activities, ensuring the environment remains secure, scalable, compliant, and aligned to organisational strategy. This role includes both hands‑on engineering and strategic project leadership.

Key Responsibilities
  • Design & Architecture
    • Develop and maintain AD architecture for scalability, security, and high performance.
    • Plan and implement domain and forest designs, trust relationships, and OU structures.
  • Administration & Operations
    • Manage domain controllers, replication, DNS, and DHCP integration.
    • Create, maintain, and troubleshoot Group Policy Objects (GPOs).
    • Monitor AD health, diagnose replication issues, and resolve authentication failures.
  • Security & Compliance
    • Implement enterprise AD security best practices (e.g., tiered admin model, secure LDAP).
    • Perform audits of accounts, groups, and permissions.
    • Support SOX, GDPR, and other compliance requirements through logging and access control.
  • Identity & Access Management
    • Manage full user lifecycle: provisioning, deprovisioning, and RBAC.
    • Integrate AD with IAM and cloud platforms (Azure AD, Okta, etc.).
    • Support SSO and federation (ADFS, SAML, OAuth).
  • Migrations & Upgrades
    • Lead AD migrations, domain/forest consolidations, and Windows Server upgrades.
    • Plan schema extensions and ensure application compatibility.
  • Disaster Recovery & Continuity
    • Develop, document, and test AD backup and recovery processes.
    • Maintain high availability and fail‑over strategies for critical AD components.
  • Automation & Scripting
    • Use PowerShell to automate tasks, generate reports, and streamline operations.
    • Build scripts for bulk user management, GPO deployment, and auditing.
  • Collaboration & Support
    • Partner with infrastructure, security, and application teams to deliver integrated services.
    • Provide SME‑level support for escalated incidents and complex service requests.
Experience & Skills Required
  • 5+ years of hands‑on experience in a similar AD‑focused role.
  • Active Directory Architecture & Replication.
  • GPO Design, Deployment & Troubleshooting.
  • DNS/DHCP integration with AD.
  • PowerShell scripting for automation and reporting.
  • ADFS configuration and federation support.
  • Azure AD – hybrid identity & sync (AAD Connect).
  • Kerberos and NTLM authentication.
  • LDAP / LDAPS.
  • Active Directory Certificate Services (AD CS).

It is essential for this role that you hold active SC clearance.

If you'd like to discuss this Active Directory SME role in more detail, please send your updated CV and I will get in touch.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.