Active Directory Architect

Clark Davis Associates

Morristown (NJ)

On-site

USD 150,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical insurance
401(k)

Job summary

A staffing and recruiting agency in Morristown is looking for an experienced Active Directory Engineer to design, secure, and maintain enterprise directory infrastructure. Applicants should have deep expertise in Active Directory and Azure AD, experience with Okta for SSO, and strong PowerShell skills. The role involves ensuring directory health and automating administrative functions.

Qualifications

  • 5+ years of experience in enterprise environments with Active Directory and Azure AD.
  • Strong understanding of AD architecture, LDAP, Kerberos, and Group Policy.
  • Hands-on experience with Okta and identity lifecycle processes.

Responsibilities

  • Design, deploy, and maintain Active Directory forests and GPOs.
  • Manage domain controllers, DNS, DHCP, and AD replication.
  • Implement Azure AD synchronization and hybrid identity solutions.

Skills

Active Directory
Azure AD
Okta
PowerShell
identity and access management (IAM)
LD-PK management

Education

Bachelor’s degree in Computer Science, Information Systems, or related field

Tools

Azure AD Connect
Entra ID
Privileged Access Management (PAM)

Job description

About the Role

We’re seeking an experienced Active Directory Engineer to design, secure, and maintain our enterprise directory infrastructure. The ideal candidate will have deep expertise in Active Directory and Azure AD, with additional experience integrating and managing Okta for single sign‑on (SSO) and identity federation. You will be responsible for ensuring directory health, automating administrative functions, and advancing our hybrid identity and access strategy.

Key Responsibilities
  • Design, deploy, and maintain Active Directory forests, domains, and Group Policy Objects (GPOs).
  • Manage domain controllers, DNS, DHCP, FSMO roles, AD replication, and trust relationships.
  • Implement and maintain Azure AD synchronization and hybrid identity solutions.
  • Integrate Okta with Active Directory for SSO, MFA, and lifecycle management.
  • Develop and maintain PowerShell scripts to automate user provisioning, group management, and reporting.
  • Conduct regular AD health checks, resolve replication and authentication issues, and ensure high availability.
  • Apply security best practices, including auditing, privileged access controls, and zero‑trust principles.
  • Support identity lifecycle processes — joiners, movers, leavers, and access reviews.
  • Collaborate with Cybersecurity and Infrastructure teams to strengthen directory hardening and compliance posture.
  • Maintain documentation, architecture diagrams, and operational runbooks for AD and IAM systems.
Required Qualifications
  • Bachelor’s degree in Computer Science, Information Systems, or related field (or equivalent experience).
  • 5+ years of experience designing and supporting Active Directory and Azure Active Directory in enterprise environments.
  • Strong understanding of AD architecture, LDAP, Kerberos, and Group Policy.
  • Hands‑on experience with Okta, Azure AD Connect, and Entra ID.
  • Strong scripting and automation skills in PowerShell (required).
  • Working knowledge of identity and access management (IAM), including SSO, MFA, and RBAC.
  • Experience troubleshooting complex authentication and directory synchronization issues.
Preferred Qualifications
  • Microsoft Certified: Identity and Access Administrator or Windows Server Hybrid Administrator Associate.
  • Okta Certified Professional or Administrator certification.
  • Experience with Privileged Access Management (PAM) solutions (CyberArk, BeyondTrust, etc.).
  • Familiarity with PKI, certificate management, and secure LDAP.
  • Understanding of Zero Trust and identity governance frameworks.
  • Experience with AD disaster recovery, backups, and domain migrations.
Soft Skills
  • Strong analytical and problem‑solving abilities.
  • Excellent written and verbal communication skills.
  • Highly organized with attention to detail.
  • Collaborative mindset and ability to work across infrastructure and security teams.
Pay Range

$150,000.00/yr - $160,000.00/yr

Seniority level

Mid‑Senior level

Employment type

Full‑time

Job function

Information Technology

Industries

Staffing and Recruiting

Benefits

Medical insurance, 401(k)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Active Directory Engineer
Active Directory Engineer

Tata Consultancy Services • Clinton (NJ)

On-site
USD 85,000 - 100,000
Active Directory Architect - Remote
Active Directory Architect - Remote

Covetus • Texas City (TX)

On-site
USD 100,000 - 130,000
Senior Directory Infrastructure engineer
Senior Directory Infrastructure engineer

AHU Technologies Inc • United States

Remote
USD 100,000 - 140,000
Active Directory Architect
Active Directory Architect

Pipe Recruit • United States

On-site
USD 110,000 - 130,000
Active Directory Engineer
Active Directory Engineer

Insight Global • Houston (TX)

On-site
USD 100,000 - 120,000
Active Directory Lead/Manager
Active Directory Lead/Manager

Revel IT • Houston (TX)

Hybrid
USD 120,000 - 150,000
Competitive salary and benefits package
Opportunities for professional growth
Flexible work options
Windows Active Directory Architect
Windows Active Directory Architect

PRI Technology • New York (NY)

On-site
USD 120,000 - 180,000
Senior Active Directory (On-prem) Engineer
Senior Active Directory (On-prem) Engineer

Software Technology Inc. • Charlotte (NC)

On-site
Global Directory Services Engineer
Global Directory Services Engineer

Compunnel, Inc. • Charlotte (NC)

On-site
USD 120,000 - 150,000
Senior Directory Infrastructure engineer with 10Yrs experience
Senior Directory Infrastructure engineer with 10Yrs experience

AHU Technologies Inc • United States

Remote
USD 90,000 - 130,000
Competitive salary
Opportunity for advancement
Training & development