Infrastructure Engineer -

Experis - ManpowerGroup

Manchester

On-site

GBP 59,000 - 98,000

Full time

12 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Experis - ManpowerGroup is seeking an experienced Senior Identity Infrastructure Engineer to support and maintain core identity infrastructure platforms underpinning IDAM services. You will administer Active Directory, PKI, DNS, GPO, and authentication infrastructure while collaborating with the IDAM team to provide L2/L3 support.

The role requires deep expertise in Microsoft AD and PKI, with a strong understanding of identity technologies and authentication services in a secure environment.

Qualifications

  • Extensive hands-on experience administering enterprise Active Directory environments.
  • Strong knowledge of AD DS, Sites, Domains, DNS, and Group Policy.
  • Experience with PKI, AD CS, certificate lifecycle management, and security hardening.

Responsibilities

  • Administer and maintain enterprise Active Directory forests, domains, and domain controllers.
  • Manage AD DNS, Group Policy architecture, and authentication services across the enterprise.
  • Administer AD CS, certificate authorities, templates, and PKI lifecycle management.
  • Support Entra Connect, LDAP/LDAPS, Kerberos, and identity integrations with MIM/Okta/BeyondTrust.

Skills

Active Directory
PKI
DNS
Group Policy
LDAP/LDAPS
Kerberos
PowerShell
Security hardening

Tools

AD CS
MIM
Okta
BeyondTrust
Entra ID Connect

Job description

Infrastructure Engineer

Rate: up to £530 per day (Umbrella only)

Clearance Required: BPPS

Duration: 6 months

Location: Manchester or Inverness, 5 days onsite

We are seeking an experienced Senior Identity Infrastructure Engineer to support and maintain the core identity infrastructure platforms that underpin the organisation's Identity and Access Management (IDAM) services.
The successful candidate will be responsible for the administration, support, security, and continuous improvement of the Active Directory, PKI, DNS, Group Policy, and authentication infrastructure. They will work closely with the wider IDAM team, supporting critical identity services and providing L2/L3 operational support across the identity estate where required.
This role requires a highly capable infrastructure engineer with deep expertise in Microsoft Active Directory and Public Key Infrastructure (PKI), combined with a strong understanding of enterprise identity technologies and authentication services.
The position is based within secure facilities in either Inverness or Manchester, working closely with security, engineering, and IDAM teams to ensure the availability, resilience, and security of critical identity platforms.

Key Responsibilities
  • Administer and maintain enterprise Active Directory forests, domains, and domain controllers.
  • Manage Active Directory Sites and Services, replication topology, trusts, and directory services infrastructure.
  • Administer AD-integrated DNS and support authentication services across the enterprise.
  • Manage and maintain Group Policy architecture, including policy design, implementation, troubleshooting, and lifecycle management.
  • Support Active Directory backup, recovery, disaster recovery, and business continuity processes.
  • Monitor platform health, performance, security, and replication.
  • Support Active Directory upgrades, migrations, consolidation projects, and infrastructure improvements.
  • Implement and maintain Active Directory security hardening standards and privileged access controls.
Public Key Infrastructure (PKI)
  • Administer and support Microsoft Active Directory Certificate Services (AD CS).
  • Manage Certificate Authorities, certificate templates, certificate enrolment, and certificate lifecycle processes.
  • Support Offline Root CA and Issuing CA infrastructure.
  • Administer Certificate Revocation Lists (CRL), Authority Information Access (AIA), and certificate distribution services.
  • Monitor certificate compliance, renewals, revocations, and expiration management.
  • Maintain PKI operational documentation, recovery procedures, and security standards.
  • Support cryptographic and certificate-related troubleshooting across infrastructure and security platforms.
Identity Infrastructure & Authentication Services
  • Support Microsoft Entra Connect and hybrid identity infrastructure.
  • Maintain LDAP, LDAPS, Kerberos, and NTLM authentication services.
  • Support integrations between Active Directory and enterprise identity platforms including MIM, Entra ID, Okta, and BeyondTrust.
  • Assist with identity-related service improvements and platform optimisation initiatives.
  • Support authentication, directory, and identity infrastructure incidents through to resolution.
  • Work collaboratively with the IDAM engineering team to support critical identity lifecycle services.
IDAM Support Activities
  • Provide L2/L3 support for identity-related incidents and service requests.
  • Assist with troubleshooting user provisioning, synchronisation, and authentication issues.
  • Support MIM, Entra ID, Okta, and BeyondTrust integrations where infrastructure expertise is required.
  • Collaborate with IDAM engineers to investigate root causes and implement long-term solutions.
  • Support operational activities across the wider identity ecosystem during periods of increased demand.
Automation & Continuous Improvement
  • Develop and maintain PowerShell automation for identity infrastructure administration.
  • Drive service improvements, platform optimisation, and operational efficiencies.
  • Contribute to security improvement initiatives, vulnerability remediation, and infrastructure modernisation.
  • Produce and maintain technical documentation, operational procedures, and support runbooks.
Essential Experience / Skills
  • Extensive hands-on experience administering enterprise Active Directory environments.
  • Strong knowledge of:
    • Active Directory Domain Services (AD DS)
    • Active Directory Sites and Services
    • Forest and Domain Administration
    • DNS
    • Group Policy
    • LDAP / LDAPS
    • Kerberos Authentication
    • Trusts and Replication
    • AD Backup and Recovery
  • Experience troubleshooting complex authentication and directory service issues.
PKI
  • Strong experience administering Microsoft Active Directory Certificate Services (AD CS).
  • Experience managing:
    • Certificate Authorities
    • Certificate Templates
    • CRL and AIA Infrastructure
    • Certificate Lifecycle Management
    • Certificate Enrolment Services
    • Key Recovery and Archival
  • Experience supporting enterprise PKI environments.
Infrastructure Platforms
  • Windows Server 2016/2019/2022 administration.
  • PowerShell scripting and automation.
  • Security hardening and privileged administration.
  • High Availability and Disaster Recovery planning.
  • Infrastructure monitoring and operational support.
Identity Technologies

Working knowledge of:

  • Microsoft Entra ID
  • Microsoft Entra Connect / Cloud Sync
  • Microsoft Identity Manager (MIM)
  • Okta
  • BeyondTrust
Understanding of:
  • Identity and Access Management (IAM)
  • Joiner, Mover, Leaver Processes
  • Identity Lifecycle Management
  • Authentication and Authorisation
  • Access Governance
  • Role-Based Access Control (RBAC)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Infrastructure Engineer -
Infrastructure Engineer -

Career Choices Dewis Gyrfa Ltd • Manchester

On-site
GBP 59,000 - 98,000
Infrastructure Engineer
Infrastructure Engineer

Onyx-Conseil • Manchester

Hybrid
GBP 89,000 - 111,000
Infrastructure Engineer
Infrastructure Engineer

LA International • Manchester

On-site
GBP 83,000 - 109,000
AD Engineer
AD Engineer

La-Fosse-1 • Greater London

Hybrid
GBP 94,000 - 127,000
Active Directory Specialist
Active Directory Specialist

La Fosse • Greater London

On-site
GBP 70,000 - 95,000
Identity and Access Management Engineer (IDAM and Azure)
Identity and Access Management Engineer (IDAM and Azure)

Methods • Greater London

On-site
GBP 65,000 - 100,000
Pension Salary Exchange Scheme with 4%
Private Medical Insurance
Life Assurance
+5
IDAM MIM Engineer
IDAM MIM Engineer

Experis • Manchester

On-site
GBP 110,000 - 140,000
Senior Identity Infrastructure Engineer – AD & PKI (Onsite)
Senior Identity Infrastructure Engineer – AD & PKI (Onsite)

LA International • Manchester

On-site
GBP 83,000 - 109,000
AD Engineer
AD Engineer

La Fosse Associates • Greater London

Hybrid
GBP 94,000 - 127,000
AD SME - DV Cleared
AD SME - DV Cleared

CBS Butler • Corsham

Hybrid
GBP 70,000 - 100,000