Position Summary:
We are seeking an exceptionally skilled and experienced Active Directory & MS Exchange Administrator (L2) to join our enterprise BSS managed services engagement with Ericsson and stc on a full-time on-site basis in Riyadh, Saudi Arabia, via Trio Telecom. In this critical identity layer and email backbone role, you will be responsible for owning, administering, and securing Microsoft Active Directory domain controllers, Group Policy, and Exchange messaging infrastructure that all BSS applications authenticate against. The ideal candidate will bring 5 to 10 years of professional AD and Exchange administration experience, expert knowledge of Kerberos, LDAP, ADFS, and hybrid identity architectures, and strong PowerShell automation capabilities. If you possess a distinguished background in enterprise directory services and messaging operations, we invite you to apply.
Detailed Job Description:
As an Active Directory & MS Exchange Administrator (L2) in Riyadh, Saudi Arabia via Trio Telecom, you will serve as a principal technical authority responsible for managing core identity management systems and high-availability email backbones for large-scale telecommunications BSS environments. Your daily responsibilities will encompass administering AD DS domain controllers, managing OU structures, configuring Group Policies, maintaining FSMO roles, and administering Microsoft Exchange Server 2016/2019 or Exchange Online environments including DAG high availability. You will resolve L2 incidents spanning replication failures, GPO errors, transport queue backlogs, integrate BSS applications with LDAP/AD, and execute patching under Change Management protocols. Candidates are required to submit their updated resume via email to mohamed.elhakim@trio-services.net with the exact subject line: KSA-064 – AD & MS Exchange Administrator.
Key Responsibilities:
- Administer Microsoft Active Directory (AD DS) infrastructure including domain controllers, organizational unit (OU) structures, Group Policy, Sites and Services, FSMO roles, schema maintenance, and forest/domain health checks.
- Manage AD user accounts, security groups, role-based access control (RBAC), and enterprise security policies.
- Administer Microsoft Exchange Server 2016/2019 or Exchange Online mailboxes, Database Availability Group (DAG) high availability, transport rules, mail flow connectors, and anti-spam policies.
- Resolve complex L2 incidents across Active Directory and Exchange platforms including login/replication failures, GPO errors, trust relationship issues, mail flow failures, and transport queue backlogs.
- Run ADFS and Azure AD Connect to support Single Sign-On (SSO) and hybrid identity synchronization.
- Integrate BSS application authentication with Active Directory and LDAP, including Microsoft Dynamics CRM, SharePoint, and Skype for Business.
- Support AD-integrated privileged access management (PAM) tooling, LAPS (Local Administrator Password Solution), and identity compliance reporting.
- Deliver AD and Exchange patching, cumulative updates, and major upgrades under Change Management governance.
- Maintain comprehensive disaster recovery (DR) procedures, backup verification, and AD/Exchange configuration records.
- Provide strong written and spoken English communication while coordinating incidents with Ericsson, stc, and Trio stakeholders.
Required Qualifications & Skills:
- University degree in Computer Science, Information Technology, Computer Engineering, or an equivalent discipline.
- Minimum of 5 to 10 years of professional experience in Active Directory and Exchange administration within enterprise environments.
- Expert technical knowledge of Active Directory Domain Services (AD DS), Group Policy Objects (GPO), ADFS, Azure AD Connect, Kerberos, and LDAP protocols.
- Strong hands-on Exchange administration skills including Database Availability Groups (DAG), mail transport, mailbox management, and compliance rules.
- Proficient PowerShell scripting automation capabilities for AD and Exchange bulk operations and reporting.
- Practical experience with hybrid identity architectures combining on-premises AD plus Azure AD / M365.
- Deep understanding of BSS or enterprise application LDAP/AD integration patterns.
- Working awareness of ITIL incident management, change management, and service delivery frameworks.
- Outstanding problem-solving, analytical troubleshooting, and cross-functional communication capabilities.
- Mandatory residency/work authorization: Ability to operate fully on-site in Riyadh, Saudi Arabia.
Nice-to-Have Skills:
- Professional certifications such as Microsoft Certified: Identity and Access Administrator Associate or equivalent MCSE/MCITP accreditations.
- Prior professional experience working within telecommunications managed services engagements involving Ericsson and stc.
- Familiarity with enterprise privileged access management (PAM) solutions and identity governance tools.
- Immediate availability for on-site mobilization in Riyadh.
Application Information:
- Recruiter: Trio Telecom / Trio Services (Managed Services Division)
- Contact Name: Mohamed Elhakim
- Email: mohamed.elhakim@trio-services.net (Subject line: KSA-064 – AD & MS Exchange Administrator)
- Phone:
- Application URL:
- Salary/Rate: Competitive market rate
- Deadline: Immediate
- Notice Period: Immediate to 30 Days
- Contract Duration: Full Time / Permanent (Riyadh, KSA – On-site)
Recruitment Pro Tip:
When applying for this Active Directory & MS Exchange Administrator position with Trio Services, ensure your resume explicitly highlights your AD DS/Exchange DAG production experience, your PowerShell automation scripts, and your familiarity with telecommunications BSS identity integrations.