Active Directory Engineer(L2)

AVATAR MODERN TECHNO SERVICES PTE. LTD.

Singapore

On-site

SGD 90,000 - 130,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

AVATAR MODERN TECHNO SERVICES PTE. LTD. is seeking an L2 Active Directory Engineer to support and administer enterprise IAM services, Active Directory and Microsoft Entra ID (Azure AD) within our directory infrastructure.

You will act as the escalation point for identity incidents from Service Desk, manage user provisioning and access requests, implement GPOs and CAC, and help ensure security, audit, and SLA compliance across the organization.

Qualifications

  • Bachelor's Degree in Computer Science, Information Technology, or related discipline.
  • Microsoft Identity and Access related certifications preferred.
  • Azure Administrator or Identity-related certifications preferred.
  • 5+ years of experience supporting enterprise Active Directory environments.

Responsibilities

  • Administer and support Microsoft Active Directory infrastructure.
  • Manage user, group, computer, and organizational unit (OU) administration.
  • Perform user lifecycle management (Joiner, Mover, Leaver processes).
  • Create and maintain Group Policies (GPOs).
  • Manage Active Directory replication and directory health monitoring.
  • Perform account audits and directory clean-up activities.
  • Support troubleshooting of authentication and directory-related issues.
  • Manage Microsoft Entra ID (Azure AD) tenant administration.
  • Support identity synchronization and hybrid identity operations.
  • Administer Conditional Access Policies.
  • Manage Azure AD Connect synchronization health.
  • Support Self-Service Password Reset (SSPR).
  • Troubleshoot authentication and synchronization failures.
  • Support identity governance initiatives.
  • Provision, modify, and deprovision user access.
  • Manage role-based access controls (RBAC).
  • Handle access requests and approvals in accordance with organization policies.
  • Manage privileged account administration.
  • Support access certification and review exercises.
  • Ensure compliance with segregation of duties requirements.
  • Provide L2 support for directory and identity-related incidents.
  • Troubleshoot account lockouts, authentication failures, access issues.
  • Coordinate with infrastructure, security, and application teams for issue resolution.
  • Support major incident management when identity services are impacted.
  • Security & Compliance: support security monitoring and remediation activities; maintain compliance with audit and regulatory requirements; participate in access reviews and certification exercises; support vulnerability remediation and security hardening activities; maintain compliance with corporate security standards and governance policies.
  • Automation & Continuous Improvement: develop PowerShell scripts for automation of repetitive tasks; automate user provisioning and reporting processes; improve operational efficiency through workflow optimization; identify opportunities to enhance identity management services; support self-service and automation initiatives.
  • Reporting & Documentation: maintain accurate documentation, SOPs, and knowledge articles; produce operational and compliance reports; update runbooks and support documentation regularly; participate in governance reviews and service improvement initiatives.

Skills

Microsoft Active Directory
Microsoft Entra ID (Azure AD)
Azure AD Connect
Group Policy Administration
LDAP & Authentication Services
DNS & DHCP Fundamentals
Identity & Access Management
User Lifecycle Management (JML)
Microsoft Windows Server Admin
Multi-Factor Authentication (MFA)

Education

Bachelor's Degree in Computer Science, Information Technology, or related discipline

Job description

Role Overview

The L2Active Directory Engineer will be responsible for supporting and administering enterprise Identity and Access Management (IAM) services, Active Directory, Microsoft Entra ID (Azure AD), user provisioning, access management, authentication services, and directory infrastructure operations.

The role will serve as the escalation point from Service Desk and Deskside teams for identity-related incidents, service requests, and operational activities while ensuring compliance with security standards, audit requirements, and operational service levels.

As defined within the SOW, the engineer will support account management, password management, access provisioning, and directory services operations across the enterprise environment.

Key Responsibilities
Active Directory Administration
  • Administer and support Microsoft Active Directory infrastructure.
  • Manage user, group, computer, and organizational unit (OU) administration.
  • Perform user lifecycle management (Joiner, Mover, Leaver processes).
  • Create and maintain Group Policies (GPOs).
  • Manage Active Directory replication and directory health monitoring.
  • Perform account audits and directory clean-up activities.
  • Support troubleshooting of authentication and directory-related issues.
MicrosoftEntra ID (Azure AD) Administration
  • Manage Microsoft Entra ID tenant administration.
  • Support identity synchronization and hybrid identity operations.
  • Administer Conditional Access Policies.
  • Manage Azure AD Connect synchronization health.
  • Support Self-Service Password Reset (SSPR).
  • Troubleshoot authentication and synchronization failures.
  • Support identity governance initiatives.
Identity& Access Management
  • Provision, modify, and deprovision user access.
  • Manage role-based access controls (RBAC).
  • Handle access requests and approvals in accordance with organization policies.
  • Manage privileged account administration.
  • Support access certification and review exercises.
  • Ensure compliance with segregation of duties requirements.
Incident& Service Request Management
  • Provide L2 support for directory and identity-related incidents.
  • Troubleshoot account lockouts, authentication failures, access issues, and synchronization problems.
  • Resolve complex user access issues escalated from Service Desk.
  • Perform root cause analysis for recurring IAM incidents.
  • Coordinate with infrastructure, security, and application teams for issue resolution.
  • Support major incident management when identity services are impacted.
Security& Compliance
  • Support security monitoring and remediation activities.
  • Maintain compliance with audit and regulatory requirements.
  • Participate in access reviews and certification exercises.
  • Support vulnerability remediation and security hardening activities.
  • Maintain compliance with corporate security standards and governance policies.
Automation& Continuous Improvement
  • Develop PowerShell scripts for automation of repetitive tasks.
  • Automate user provisioning and reporting processes.
  • Improve operational efficiency through workflow optimization.
  • Identify opportunities to enhance identity management services.
  • Support self-service and automation initiatives.
Reporting& Documentation
  • Maintain accurate documentation, SOPs, and knowledge articles.
  • Produce operational and compliance reports.
  • Update runbooks and support documentation regularly.
  • Participate in governance reviews and service improvement initiatives.
RequiredTechnical Skills
PrimarySkills
  • Microsoft Active Directory
  • Microsoft Entra ID (Azure AD)
  • Azure AD Connect
  • Group Policy Administration
  • LDAP & Authentication Services
  • DNS & DHCP Fundamentals
  • Identity & Access Management (IAM)
  • User Lifecycle Management (JML)
  • Microsoft Windows Server Administration
  • Multi-Factor Authentication (MFA)
Qualifications
  • Bachelor's Degree in Computer Science, Information Technology, or related discipline.
  • Microsoft Identity and Access related certifications preferred.
  • Azure Administrator or Identity-related certifications preferred.
  • 5+ years of experience supporting enterprise Active Directory environments.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Active Directory & Azure AD IAM Engineer II
Active Directory & Azure AD IAM Engineer II

AVATAR MODERN TECHNO SERVICES PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Active Directory Engineer
Active Directory Engineer

HCLTech • Singapore

Hybrid
SGD 90,000 - 120,000
Senior Windows Infrastructure Engineer (L3)
Senior Windows Infrastructure Engineer (L3)

AVATAR MODERN TECHNO SERVICES PTE. LTD. • Singapore

On-site
SGD 70,000 - 110,000
Senior / Security Engineer / IAM Engineer / Enterprise Tools & Observability Engineer (Ref 26505)
Senior / Security Engineer / IAM Engineer / Enterprise Tools & Observability Engineer (Ref 26505)

JOBLINE RESOURCES PTE. LTD. • Singapore

On-site
SGD 90,000 - 150,000
IT Support (L2, IAM, Contract)
IT Support (L2, IAM, Contract)

TECH GRID ASIA PTE. LTD. • Singapore

On-site
SGD 60,000 - 90,000
Active Directory Engineer
Active Directory Engineer

Epergne Solutions • Singapore

On-site
SGD 90,000 - 120,000
IT Infra Engineer (Identity and Security)
IT Infra Engineer (Identity and Security)

User Experience Researchers Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
IT Support Engineer - IAM (Bank, Contract)
IT Support Engineer - IAM (Bank, Contract)

GMP TECHNOLOGIES (S) PTE LTD • Singapore

On-site
SGD 40,000 - 65,000
IT Security Engineer #IDO
IT Security Engineer #IDO

RECRUIT EXPRESS PTE LTD • Singapore

On-site
SGD 120,000 - 180,000
IT Infrastructure Engineer
IT Infrastructure Engineer

Hirsch Bedner Associates Pte Ltd • Singapore

Hybrid
SGD 90,000 - 110,000