Lead Identity Engineer - Active Directory & Microsoft Entra

Simeio

Mumbai

On-site

INR 1,800,000 - 2,600,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Simeio is seeking an Active Directory & Microsoft Entra Engineer to design, implement, and support enterprise identity services across on-premises and cloud environments in Mumbai. You will manage AD/Entra IDs, automation, and hybrid identity workflows while collaborating with security, infrastructure, and application teams.

Main responsibilities include configuring AD/Entra environments, implementing security controls, and driving identity governance and onboarding initiatives.

Qualifications

  • 5-8 years of hands-on experience managing Active Directory in large-scale enterprise environments.
  • Strong hands-on experience with Microsoft Entra ID (Azure AD) administration and hybrid identity architectures.
  • Deep understanding of Active Directory architecture, Group Policy, DNS, Sites and Services, and replication.
  • Strong PowerShell scripting expertise with experience in automation and process optimization.
  • Advanced knowledge of LDAP, directory schema, queries, and application integrations.
  • Experience with Microsoft Entra Connect (Azure AD Connect), synchronization, and federation services.
  • Hands-on experience with identity and access management concepts, including SSO, MFA, Conditional Access, and RBAC.
  • Experience supporting Windows Server environments related to directory services.
  • Strong troubleshooting skills across authentication protocols such as Kerberos, NTLM, SAML, OAuth, and OpenID Connect.
  • Familiarity with security monitoring, auditing, and directory hardening best practices.

Responsibilities

  • Design, deploy, and maintain AD and Entra ID environments.
  • Manage users, groups, OUs, GPOs, and identity governance.
  • Administer Entra Connect and hybrid identity solutions.
  • Automate tasks with PowerShell.
  • Troubleshoot authentication and directory sync issues.
  • Support LDAP integrations with enterprise apps.
  • Maintain identity security controls (MFA, CA, PIM, access reviews).
  • Monitor directory health and performance.
  • Collaborate with infra, security, and app teams on identity projects.
  • Support onboarding, SSO, and access management initiatives.
  • Develop technical docs and support guides.
  • Participate in incident, problem, and change management.
  • Provide escalation support and on-call rotations.
  • Ensure compliance with security policies.

Skills

Active Directory
Azure AD administration
PowerShell scripting
LDAP & directory services
Identity & access management

Tools

Azure AD Connect
PowerShell

Job description

About the Role

The Active Directory & Microsoft Entra Engineer is responsible for the design, implementation, administration, and support of enterprise identity services across on-premises and cloud environments. This role focuses on Active Directory, Microsoft Entra ID (Azure AD), directory synchronization, identity lifecycle management, and infrastructure automation. The engineer will leverage strong PowerShell scripting and LDAP expertise to enhance operational efficiency, maintain secure identity platforms, and support business-critical authentication and authorization services.


What You’ll Do


  • Design, deploy, and maintain Active Directory and Microsoft Entra ID environments.

  • Manage directory services, including users, groups, organizational units, group policies, and identity governance processes.

  • Administer and support Microsoft Entra Connect (Azure AD Connect) and hybrid identity solutions.

  • Develop, maintain, and automate administrative tasks using PowerShell scripting.

  • Troubleshoot complex authentication, authorization, and directory synchronization issues.

  • Implement and support LDAP integrations with enterprise applications and third-party platforms.

  • Maintain identity security controls, including Conditional Access, MFA, Privileged Identity Management (PIM), and access reviews.

  • Monitor directory health, performance, and availability, ensuring adherence to operational standards.

  • Collaborate with infrastructure, security, and application teams to deliver identity-related projects and enhancements.

  • Support application onboarding, SSO integrations, and access management initiatives.

  • Develop and maintain technical documentation, operational procedures, and support guides.

  • Participate in incident management, problem resolution, and change management activities.

  • Provide escalation support for identity-related production issues and participate in on-call rotations as required.

  • Ensure compliance with organizational security policies and industry best practices.


What You Bring


  • 5-8 years of hands-on experience managing Active Directory in large-scale enterprise environments.

  • Strong hands-on experience with Microsoft Entra ID (Azure AD) administration and hybrid identity architectures.

  • Deep understanding of Active Directory architecture, Group Policy, DNS, Sites and Services, and replication.

  • Strong PowerShell scripting expertise with experience in automation and process optimization.

  • Advanced knowledge of LDAP, directory schema, queries, and application integrations.

  • Experience with Microsoft Entra Connect (Azure AD Connect), synchronization, and federation services.

  • Hands-on experience with identity and access management concepts, including SSO, MFA, Conditional Access, and RBAC.

  • Experience supporting Windows Server environments related to directory services.

  • Strong troubleshooting skills across authentication protocols such as Kerberos, NTLM, SAML, OAuth, and OpenID Connect.

  • Familiarity with security monitoring, auditing, and directory hardening best practices.

  • Experience working in enterprise environments with ITIL-based service management processes.

  • Excellent communication, documentation, and stakeholder management skills.


Nice to Have


  • Experience with Microsoft Identity Manager (MIM) or similar identity governance platforms.

  • Knowledge of Entra ID Governance, Privileged Identity Management (PIM), and Identity Protection.

  • Experience with cloud platforms such as Microsoft Azure.

  • Familiarity with Infrastructure as Code (IaC) and automation frameworks.

  • Relevant Microsoft certifications (e.g., Microsoft Certified: Identity and Access Administrator Associate).


About Simeio and What We Do

Simeio has over 650 talented employees across the globe. We have offices in USA (Atlanta HQ and Texas), India, Canada, Costa Rica and UK.


Founded in 2007, and now backed by private equity company ZMC, Simeio is recognized as a top IAM provider by industry analysts.


Alongside Simeio’s identity orchestration tool \"Simeio IO\", Simeio partners with industry-leading IAM software vendors to provide access management, identity governance and administration, privileged access management, and risk intelligence services across on-premises, cloud, and hybrid technology environments.


Simeio provides services to numerous Fortune 1000 companies across all industries including financial services, technology, healthcare, media, retail, public sector, utilities, and education.


Diversity & Inclusion

Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre- employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our recruitment team atrecruitment@simeio.com.


About Your Application

We carefully review every application we receive. If your skills and experience match our needs, we’ll be in touch. If you don’t hear from us within 10 days, please don’t be discouraged. We may retain your application for future opportunities, and we encourage you to check our careers page for other openings.


Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre- employment testing, or otherwise participating in the employee selection process, please direct your inquiries to any of the recruitment team at recruitment@simeio.com or +1 404-882-3700.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Identity Engineer - Active Directory & Microsoft Entra
Lead Identity Engineer - Active Directory & Microsoft Entra

Simeio • Bengaluru

On-site
INR 2,000,000 - 3,200,000
Senior Identity Engineer -MS Entra ID
Senior Identity Engineer -MS Entra ID

Simeio • India

On-site
INR 1,200,000 - 1,800,000
Talent Acquisition Specialist
Talent Acquisition Specialist

Simeio • Bengaluru

On-site
INR 600,000 - 1,200,000
Senior Identity Engineer - Saviynt Consultant with Java experience
Senior Identity Engineer - Saviynt Consultant with Java experience

Simeio • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Senior DevOps Engineer - Immediate joiners preferred
Senior DevOps Engineer - Immediate joiners preferred

Simeio • Bengaluru

On-site
INR 350,000 - 650,000
Lead Identity Engineer - PKI / Venafi
Lead Identity Engineer - PKI / Venafi

Simeio • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Sr Identity Engineer
Sr Identity Engineer

Applied Systems • Bengaluru

On-site
INR 3,200,000 - 4,200,000
IAM Engineer - Associate
IAM Engineer - Associate

Kroll • Bengaluru

On-site
INR 1,200,000 - 2,200,000
Operations Engineer
Operations Engineer

Accenture • Bengaluru

On-site
INR 900,000 - 1,300,000
Systems Engineering Senior Specialist
Systems Engineering Senior Specialist

NTT DATA BUSINESS SOLUTIONS • Dadri

On-site
INR 900,000 - 1,400,000