Senior Platform Engineer - Directory Services

The Walt Disney Company (France)

Bengaluru

On-site

INR 4,000,000 - 7,000,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

The Walt Disney Company in Bengaluru seeks a senior Directory Platform Engineer to secure and optimize large‑scale Active Directory estates. You will lead consolidation, enable Radiant Logic, and implement robust identity security standards across domains.

You’ll drive RBAC‑based access, PIM/PAM integration, and bi‑directional Entra ID synchronization, mentoring juniors and ensuring high reliability in a security‑driven environment.

Qualifications

  • 8+ years of hands‑on experience engineering and operating large‑scale Active Directory environments.
  • Deep expertise in AD architecture, trusts, replication, DNS, PKI; multi‑domain/multi‑forest designs.
  • Experience with RBAC, PIM, PAM and privileged access controls in enterprise settings.
  • Experience integrating AD with Entra ID/Azure AD in hybrid or cloud environments.

Responsibilities

  • Engineer, harden, and operate large‑scale Active Directory environments across multiple domains.
  • Lead AD consolidation and domain rationalization for enterprise, ecommerce, and business units.
  • Support Radiant Logic’s Virtual Directory System operations and enhancements.
  • Define and enforce baseline identity security standards across complex environments.
  • Design and mature RBAC‑based access models within Active Directory.
  • Integrate AD with PIM and PAM platforms and enable JIT access patterns.
  • Synchronize AD with Entra ID and support cross‑tenant identity governance.

Skills

Active Directory architecture
Large-scale AD management
RBAC
PIM
PAM
Entra ID / Azure AD integration
Identity governance
Problem solving

Education

Bachelor’s degree in Computer Science / Information Systems / related field

Tools

Radiant Logic Virtual Directory Services

Job description

Department Description:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS)organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.
  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.
  • Innovate by investing in core capabilities to enhance operational efficiency.
Team Description:
  • The Identity & Access Management (IAM) – Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across The Walt Disney Company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non‑human identities.
  • Our mission is to move identity governance from manual, reactive processes to automated, policy‑driven enforcement, ensuring identities are secure, compliant, and healthy by default across their lifecycle. We partner closely with security, infrastructure, and application teams to eliminate legacy risk, reduce operational toil, and enable modern, cloud‑first identity capabilities at enterprise scale.
What You’ll Do:
Directory Platform Engineering & Operations
  • Engineer, harden, and operateenterprise and multidomain Active Directory environmentssupporting critical business workloads.
  • LeadActive Directory consolidation and domain rationalizationefforts, including enterprise, eCommerce, and business‑unit directories.
  • Support RadiantLogic’s Virtual Directory System operations and enhancements.
  • Establish and enforcemulti‑domain baseline identity security standardsacross environments.
  • Implement and matureRBAC‑based access modelsacross Active Directory.
  • Integrate AD withPrivileged Identity Management (PIM)andPrivileged Access Management (PAM)platforms.
  • Help with eliminating standing privilege throughgroup‑based, time‑bound, and JIT access patterns.
  • Implement and support synchronization between Active Directory and Entra ID.
  • Supportcrosstenant identity governancefor business segments and federated environments.
  • Enableautomated human and non‑human identity governance, including monitoring, remediation, and compliance reporting.
  • Reduce directory and tool sprawl while maintaining service reliability and business continuity.
  • Mentor and uplift junior engineers; contribute to repeatable engineering patterns and documentation.
Required Qualifications & Skills:
  • 8+ yearsof hands‑on experience engineering and operatinglarge‑scale Active Directory environments.
  • Deep expertise in:
    • Active Directory architecture, trusts, replication, DNS, PKI
    • Multi‑domain / multi‑forest designs
    • AD security hardening and recovery
    • Radiant Logic’s Virtual Directory Services
  • Proven experience implementing or supporting:
    • RBAC,PIM, andPAM
    • Privileged account separation and Tier 0 controls
  • Strong troubleshooting skills in complex, highly regulated environments.
  • Experience working inenterprise‑scale IAM or directory services teams.
Preferred Qualifications:
  • Experience integrating AD withEntra ID / Azure ADin hybrid or cloud‑first environments.
  • Familiarity withidentity governance automation, non‑human identity management, and continuous compliance.
  • Experience supportingcross‑tenant or multi‑business‑unit identity models.
  • Background indirectory consolidation, legacy system sunset, or M&A identity integration.
  • Comfort operating in environments withhigh security, resilience, and audit expectations.
Required Education:

Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

Engineer, harden, and operate large‑scale, multi‑domain Active Directory environments supporting critical business workloads.

Lead Active Directory consolidation and domain rationalization, reducing directory sprawl across enterprise, eCommerce, and business units.

Operate and enhance Virtual Directory services (RadiantLogic) to support federated and multi‑source identity use cases.

Define, implement, and enforce baseline identity security standards across complex, multi‑domain environments.

Design and mature RBAC‑based access models within Active Directory.

Integrate Active Directory with Privileged Identity and Access Management (PIM/PAM) platforms.

Eliminate standing privilege through group‑based, time‑bound, just‑in‑time (JIT) access patterns.

Implement and sustain Tier 0 security posture, including privileged account separation and Privileged Access Workstations (PAW).

Design and operate bi‑directional synchronization between Active Directory and Entra ID, partnering with cloud identity teams for consistent governance.

Improve identity governance and lifecycle accuracy through authoritative attribute synchronization, cross‑tenant governance, automation, documentation, and mentoring of junior engineers.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

The Walt Disney Company (France) • Bengaluru

On-site
INR 3,500,000 - 5,200,000
Security Engineer
Security Engineer

The Walt Disney Company • India

On-site
INR 350,000 - 700,000
Senior Platform Engineer - Directory Services
Senior Platform Engineer - Directory Services

The Walt Disney Company • India

On-site
INR 2,500,000 - 3,800,000
Security Engineer
Security Engineer

The Walt Disney Company • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Directory Services Engineer
Directory Services Engineer

Jobgether • India

Hybrid
INR 1,800,000 - 3,200,000
Health benefits
Flexible work options
Career growth opportunities
+1
Executive Manager - IAM / Azure AD
Executive Manager - IAM / Azure AD

PepsiCo • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Active Directory Administration:Infrastructure & Support_AFL
Active Directory Administration:Infrastructure & Support_AFL

Axis Finance Limited • Mumbai

On-site
INR 1,500,000 - 2,200,000
AD Architect
AD Architect

Tekskills • Pune District

On-site
INR 2,800,000 - 4,000,000
Active Directory Administrator
Active Directory Administrator

Axis Finance (AFL) • Mumbai

On-site
INR 2,000,000 - 4,000,000
Windows & Active Directory Engineer
Windows & Active Directory Engineer

Mold-Masters DME India Private Limited, Coimbatore • Coimbatore District

On-site
INR 1,800,000 - 3,200,000