Enable job alerts via email!

Microsoft Platform Support Engineer - Active Directory

BT Group

Birmingham

Hybrid

GBP 45,000 - 70,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading telecommunications company is seeking an Active Directory professional to enhance its security posture by managing and supporting a multi-forest AD environment. This role involves implementing the Zero Trust Security Model and collaborating with IT teams on identity solutions. The ideal candidate will have extensive experience with Microsoft Active Directory, Azure AD, and relevant certifications, contributing to a dynamic team focused on security and compliance.

Benefits

Annual bonus of 10%
BT Pension scheme with contributions
Life Assurance
Discounts on BT broadband and EE mobile plans
Healthcare benefits
25 days annual leave
Volunteering days
Electric vehicle salary sacrifice scheme

Qualifications

  • In-depth knowledge of Microsoft Active Directory and Entra ID (Azure AD).
  • Experience configuring and managing ADFS for federation services.
  • Ability to troubleshoot and resolve AD Connect sync issues.

Responsibilities

  • Manage and maintain Active Directory (AD), including user accounts and groups.
  • Implement and enforce security policies in line with IT best practices.
  • Collaborate with IT teams on access management and identity federation solutions.

Skills

Microsoft Active Directory
Entra ID (Azure AD)
PowerShell scripting
Authentication protocols
AD backup tools
Identity Protection
Conditional Access Policies
Privileged Identity Management
SSPR
RBAC

Education

Microsoft certifications (e.g., MCSA, MCSE, Azure Administrator Associate)

Job description

Press Tab to Move to Skip to Content Link

Select how often (in days) to receive an alert:

Posting Date: 22 May 2025

Function: Software Engineering

Unit: Digital

Location:

Snowhill, Birmingham, United Kingdom

This role is based out of our Snowhill, Birmingham digital hub. We have a hybrid working model of 3 days in the office and 2 days remote.

Why this job matters

You will be part of a dynamic team designing and implementing the Zero Trust Security Model to enhance BT’s security posture. You will work on Active Directory, Microsoft Entra ID (Azure Active Directory), and new data security and compliance tools such as MDI and MDE.


We are seeking a skilled and detail-oriented Active Directory professional to manage, maintain, and support our large enterprise Active Directory (AD) multi-forest environment. This role ensures the integrity, security, and efficient operation of our AD/Entra ID infrastructure across multiple domains and environments.

What you’ll be doing
  • Manage and maintain Active Directory (AD), including user accounts, groups, OUs, GPOs, DNS, delegation, AD-integrated services, and trust relationships.
  • Configure and manage domain controllers (demote/promote), replication, and forests/domains.
  • Configure and manage Certificate Authority and secure certificate templates, with an understanding of PKI infrastructure.
  • Monitor system performance, availability, and security using relevant tools.
  • Implement and enforce security policies in line with IT best practices and compliance standards.
  • Troubleshoot and resolve AD-related issues, including login problems, replication errors, and access control issues.
  • Plan and execute changes to AD infrastructure, including migrations, upgrades, and disaster recovery.
  • Collaborate with IT teams on access management, SSO, SailPoint, and identity federation solutions.
  • Document AD configurations, processes, and procedures.
  • Improve Active Directory security posture by implementing controls like MDI, CrowdStrike, Qualys, and patch management.
  • Write PowerShell scripts to generate reports and explore new Active Directory and Microsoft Entra ID (Azure AD) security features for implementation.
Skills and Experience

Must Have:

  • In-depth knowledge of Microsoft Active Directory and Entra ID (Azure AD), including Microsoft Entra ID Connect (AD Connect).
  • Proficiency with AD backup tools such as Quest RMAD.
  • Experience configuring and managing ADFS for federation services.
  • Ability to troubleshoot and resolve AD Connect sync issues.
  • Knowledge of Identity Protection, Conditional Access Policies, Privileged Identity Management, SSPR, and RBAC.
  • Expertise in authentication protocols like Kerberos, SAML, OAuth 2.0, OIDC.
  • Familiarity with MDI.
  • Ability to write PowerShell scripts as required.
  • Experience with migration tools such as ADMT, Quest Migration, or others.
  • Relevant Microsoft certifications (e.g., MCSA, MCSE, Azure Administrator Associate).
  • Experience working with ServiceNow incidents, requests, and change management.
  • Knowledge of Active Directory security and vulnerability remediation.

Benefits include:

  • Annual bonus of 10% (personal and company multipliers)
  • BT Pension scheme with a minimum 5% employee contribution and 10% BT contribution
  • Life Assurance
  • Exclusive discounts on BT broadband, EE mobile plans, and other retail offers
  • Access to discounts via My Discounts
  • Discounted EE TV and entertainment memberships
  • Support for working parents, including paid leave options
  • Options for healthcare benefits like dental insurance and gym memberships
  • 25 days annual leave, increasing with service, with buy holiday options
  • Volunteering days
  • Electric vehicle salary sacrifice scheme ('My EV')

Our Values and Culture

Leading inclusively and safely: Inspiring trust through honesty and integrity.
Owning outcomes: Making decisions that benefit the organization.
Delivering for the customer: Executing on priorities that add value.
Being commercially savvy: Demonstrating strong commercial focus.
Growth mindset: Embracing opportunities for growth.
Building for the future: Developing diverse, future-ready teams.

About us

BT Group is a pioneering telecommunications company with a rich heritage. We are investing in the UK’s largest digital infrastructure project, connecting over 25 million premises with full fibre broadband, and advancing 5G technology. We focus on simplifying systems and processes, leveraging AI and technology, to create the UK’s best telco and enhance customer experiences. We are committed to diversity, inclusion, and creating a workplace where everyone can thrive. We welcome applications from all backgrounds and encourage those who may not meet every criterion to apply, as we value diverse perspectives and experiences.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Application Support Engineer

ZipRecruiter

Coventry

Remote

GBP 42,000 - 49,000

8 days ago

Application Support Engineer

TN United Kingdom

Coventry

Remote

GBP 42,000 - 50,000

8 days ago

Application Support Engineer

Mana Resourcing Ltd

Coventry

Remote

GBP 42,000 - 49,000

10 days ago

Technical Support Engineer (Zend Framework / PHP) - Global Software company

Hawksworth

Remote

GBP 30,000 - 50,000

Today
Be an early applicant

2nd Line Support Engineer (M365) - Remote - Outside IR35

Supermercados Guanabara

Leeds

Remote

GBP 60,000 - 80,000

Today
Be an early applicant

Technical Support Engineer (Zend Framework / PHP) - Global Software company

JR United Kingdom

Remote

GBP 50,000 - 55,000

Today
Be an early applicant

Technical Support Engineer - Haematology

Siemens Mobility

Remote

GBP 35,000 - 55,000

Today
Be an early applicant

Senior CFD Support Engineer - M-Star

TN United Kingdom

Remote

GBP 50,000 - 80,000

Yesterday
Be an early applicant

Principal Support Engineer

TN United Kingdom

London

Remote

GBP 60,000 - 90,000

Yesterday
Be an early applicant