Senior Platform Engineer - Directory Services

Disney Cruise Line - The Walt Disney Company

Bengaluru

On-site

Confidential

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Disney Cruise Line – The Walt Disney Company seeks a senior Directory Platform Engineer to lead and harden large-scale Active Directory environments across multiple domains, including Radiant Logic's Virtual Directory System.

You will implement RBAC-based access models, integrate with Entra ID, and mentor junior engineers while ensuring security, compliance, and enterprise resilience in a hybrid cloud setup.

Qualifications

  • 8+ years hands-on experience engineering and operating large-scale Active Directory environments.
  • Deep expertise in AD architecture, trusts, replication, DNS, PKI.
  • Multi-domain / multi-forest designs.
  • AD security hardening and recovery.
  • Radiant Logic’s Virtual Directory Services.
  • RBAC, PIM, and PAM deployment or support.
  • Strong troubleshooting in complex, regulated environments.
  • Experience in enterprise-scale IAM or directory services teams.

Responsibilities

  • Engineer, harden, and operate enterprise and multidomain Active Directory environments.
  • Lead Active Directory consolidation and domain rationalization.
  • Support Radiant Logic’s Virtual Directory System operations.
  • Establish and enforce multi-domain baseline identity security standards.
  • Implement and mature RBAC-based access models across Active Directory.
  • Integrate AD with PIM and PAM platforms.
  • Eliminate standing privilege with group-based, time-bound, and JIT access.
  • Implement and support synchronization between AD and Entra ID.
  • Support cross-tenant identity governance for multiple business units.
  • Enable automated identity governance for human and non-human identities.
  • Reduce directory sprawl while maintaining reliability.
  • Mentor junior engineers and contribute to patterns and documentation.

Skills

8+ years
Large-scale Active Directory
AD architecture
Multi-domain / multi-forest
AD security hardening
Radiant Logic
RBAC
PIM
PAM
Troubleshooting
Enterprise IAM

Education

Bachelor’s degree in Computer Science / Information Systems / Engineering

Tools

Radiant Logic
Entra ID / Azure AD
PIM / PAM

Job description

Department Description:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS)organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment‑specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.
  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.
  • Innovate by investing in core capabilities to enhance operational efficiency.
Team Description:
  • The Identity & Access Management (IAM) – Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across The Walt Disney Company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non‑human identities.
  • Our mission is to move identity governance from manual, reactive processes to automated, policy‑driven enforcement, ensuring identities are secure, compliant, and healthy by default across their lifecycle. We partner closely with security, infrastructure, and application teams to eliminate legacy risk, reduce operational toil, and enable modern, cloud‑first identity capabilities at enterprise scale.
What You’ll Do:

Directory Platform Engineering & Operations

  • Engineer, harden, and operateenterprise and multidomain Active Directory environmentssupporting critical business workloads.
  • LeadActive Directory consolidation and domain rationalizationefforts, including enterprise, eCommerce, and business‑unit directories.
  • Support RadiantLogic’s Virtual Directory System operations and enhancements.
  • Establish and enforcemulti‑domain baseline identity security standardsacross environments.
  • Implement and matureRBAC‑based access modelsacross Active Directory.
  • Integrate AD withPrivileged Identity Management (PIM)andPrivileged Access Management (PAM)platforms.
  • Help with eliminating standing privilege throughgroup‑based, time‑bound, and JIT access patterns.
  • Implement and support synchronization between Active Directory and Entra ID.
  • Supportcrosstenant identity governancefor business segments and federated environments.
  • Enableautomated human and non‑human identity governance, including monitoring, remediation, and compliance reporting.
  • Reduce directory and tool sprawl while maintaining service reliability and business continuity.
  • Mentor and uplift junior engineers; contribute to repeatable engineering patterns and documentation.
Required Qualifications & Skills:
  • 8+ yearsof hands‑on experience engineering and operatinglarge‑scale Active Directory environments.
  • Deep expertise in:
    • Active Directory architecture, trusts, replication, DNS, PKI
    • Multi‑domain / multi‑forestdesigns
    • AD security hardening and recovery
    • Radiant Logic’s Virtual Directory Services
  • Proven experience implementing or supporting:
    • RBAC,PIM, andPAM
    • Privileged account separation and Tier 0 controls
  • Strong troubleshooting skills in complex, highly regulated environments.
  • Experience working inenterprise‑scale IAM or directory services teams.
Preferred Qualifications:
  • Experience integrating AD withEntra ID / Azure ADin hybrid or cloud‑first environments.
  • Familiarity withidentity governance automation, non‑human identity management, and continuous compliance.
  • Experience supportingcross‑tenant or multi‑business‑unit identity models.
  • Background indirectory consolidation, legacy system sunset, or M&A identity integration.
  • Comfort operating in environments withhigh security, resilience, and audit expectations.
Required Education:

Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

Engineer, harden, and operate large‑scale, multi‑domain Active Directory environments supporting critical business workloads.

Lead Active Directory consolidation and domain rationalization, reducing directory sprawl across enterprise, eCommerce, and business units.

Operate and enhance Virtual Directory services (RadiantLogic) to support federated and multi‑source identity use cases.

Define, implement, and enforce baseline identity security standards across complex, multi‑domain environments.

Design and mature RBAC‑based access models within Active Directory.

Integrate Active Directory with Privileged Identity and Access Management (PIM/PAM) platforms.

Eliminate standing privilege through group‑based, time‑bound, just‑in‑time (JIT) access patterns.

Implement and sustain Tier 0 security posture, including privileged account separation and Privileged Access Workstations (PAW).

Design and operate bi‑directional synchronization between Active Directory and Entra ID, partnering with cloud identity teams for consistent governance.

Improve identity governance and lifecycle accuracy through authoritative attribute synchronization, cross‑tenant governance, automation, documentation, and mentoring of junior engineers.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

The Walt Disney Company • Bengaluru

On-site
INR 4,000,000 - 6,000,000
Active Directory Engineer
Active Directory Engineer

OP • Bengaluru

On-site
INR 2,500,000 - 4,200,000
Active Directory Administrator
Active Directory Administrator

Mindfire Solutions • India

On-site
INR 600,000 - 900,000
Active Directory Administrator
Active Directory Administrator

Mindfire Solutions • Khordha

On-site
INR 600,000 - 1,200,000
Senior Analyst - AD/Entra ID SME
Senior Analyst - AD/Entra ID SME

PepsiCo • Hyderabad

On-site
INR 350,000 - 520,000
Executive Manager - IAM / Azure AD
Executive Manager - IAM / Azure AD

PepsiCo • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Active Directory Consultant
Active Directory Consultant

Daimler Trucks Innovation Center • Bengaluru

Hybrid
INR 1,500,000 - 2,300,000
Active Directory (AD) and Tier-0 Infrastructure Automation Engineer
Active Directory (AD) and Tier-0 Infrastructure Automation Engineer

Rwindia • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Active Directory Administration:Infrastructure & Support_AFL
Active Directory Administration:Infrastructure & Support_AFL

Axis Finance Limited • Mumbai

On-site
INR 1,500,000 - 2,200,000
Windows & Active Directory Engineer
Windows & Active Directory Engineer

Mold-Masters DME India Private Limited, Coimbatore • Coimbatore District

On-site
INR 1,800,000 - 3,200,000