Senior AD/ICAM Administrator

Leidos LLC

United States

Remote

USD 131,000 - 237,000

Full time

13 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Leidos LLC is seeking a Senior AD/ICAM Administrator to deliver modern ICAM solutions and Zero Trust Architectures across on‑prem and cloud environments. You will lead the directory services team, implement and optimize Active Directory and Entra ID, and drive hybrid identity initiatives with Azure AD Connect and cloud technologies.

The role requires 12+ years of relevant experience, Windows Server/Directory Services expertise, and strong scripting with PowerShell.

Qualifications

  • BS degree and 12+ years of relevant experience.
  • MCSE or MCSA certification in Windows Server / Directory Services required.
  • Proven experience with enterprise-level Windows Server administration and Directory Services.
  • Strong experience with Azure services: Azure VMs, Entra ID, hybrid identity, and cloud migration.
  • Ability to obtain and maintain Public Trust.

Responsibilities

  • Lead directory services tasks and ensure timely project delivery.
  • Design, implement, and manage AD DS architecture, trusts, and high availability.
  • Drive hybrid identity initiatives using Azure AD Connect and Entra ID.
  • Develop ICAM/ZT solutions, perform requirements decomposition, and prototype solutions.
  • Manage GPOs, OU structures, and security baselines; monitor AD health and DR planning.

Skills

Active Directory
Entra ID
Azure AD Connect
RBAC
PIM
Conditional Access
PowerShell
Cloud migration

Education

BS degree
MCSE or MCSA certification

Tools

PowerShell scripting
Azure AD Connect
Azure AD Domain Services

Job description

Leidos is seeking a Senior AD/ICAM Administrator responsible for delivering modern Identity Access Credential Management (ICAM) solutions and Zero Trust Architectures (ZTA). Role responsibilities include technical leadership for modernization initiatives, translating business requirements into technical solutions alternatives, hands‑on implementation/prototyping of identified solutions, and IPT project management activities across multiple ICAM service capabilities. The ideal candidate will be a technical leader for designing, implementing, managing, troubleshooting, and optimizing enterprise‑grade Active Directory and Entra ID solutions. This role is critical in maintaining secure, scalable, and highly available identity infrastructure across on‑premises and cloud environments.

Key Responsibilities
  • Manage and prioritize tasks within the team directory services team, ensuring timely delivery of projects and effective resource utilization.
  • Design, implement, and manage Active Directory Domain Services (AD DS), including forest/domain architecture, trusts, replication, and high availability.
  • Lead hybrid identity initiatives using Azure AD Connect, Entra ID, and cloud sync technologies.
  • Develop best‑of‑breed ZT and ICAM solutions through COTS integration activities Perform technical triage, business to technical requirements decomposition, and solutioning as part of the requirements process that inform downstream feature development Manage and optimize Group Policy Objects (GPOs), OU structures, and security baselines.
  • Implement and maintain identity governance, role‑based access control (RBAC), Privileged Identity Management (PIM), and Conditional Access policies in Azure.
  • Perform AD health monitoring, performance tuning, backup/recovery, and disaster recovery planning.
  • Migrate and modernize legacy AD environments to Azure‑native or hybrid solutions.
  • Perform hands‑on implementation / prototyping of solutions Provide oral and written presentations to senior leaders describing solution options along with advantages and disadvantages of alternatives Champions the development, documentation, and execution of system policies Influence project/team leaders regarding solution design, process and/or approaches.
Qualifications

BS degree and 12+ years of prior relevant experience; additional experience in lieu of degree 8+ years of hands‑on experience in a lead role MCSE or MCSA certification in Windows Server / Directory Services is required Proven experience/proficiency in enterprise‑level Windows Server administration and Directory Services management. Proven experience with Azure services: Azure Virtual Machines, Azure AD Domain Services, Azure Arc, and Microsoft Entra suite. Understanding of Attributes Based Access Control (ABAC) implementation, Role-Based Access Control (RBAC), and Policy‑Based Access Control (PBAC) Strong expertise in Azure AD / Entra ID, hybrid identity, and cloud migration projects. Deep knowledge of Windows Server operating systems (2016/2019/2022), AD DS, DNS, DHCP, PKI, and certificate services. Proven experience with Azure services: Azure Virtual Machines, Azure AD Domain Services, Azure Arc, and Microsoft Entra suite. PowerShell scripting proficiency for automation and reporting. Demonstrated experience with one of more of the following: Digital Identity Management and Identity Governance Authorization ICAM services Data Security Architecture and Data Protection Services Customer Identity Access Management (CIAM) solutioning Authentication and Multi‑Factor Authentication (MFA) solutions Cloud first and cloud native architectures (any or all of Amazon Web Services, Azure, Google Cloud) Utilizing cloud services to build infrastructure as code in an automated fashion Must have a solid understanding of IdAM / ICAM Services like Authentication, Authorization, Identity, and Data Protection through Digital Policy Demonstrated experience for client support of large scale enterprise applications Strong communication skills via documentation and verbally with senior management US Citizenship Ability to obtain and maintain Public Trust.

Desirable Skills

Certifications: Microsoft Certified: Azure Administrator Associate (AZ-104) Microsoft Certified: Identity and Access Administrator Associate (AZ-305 or SC-300) Microsoft Certified: Windows Server Hybrid Administrator Associate (preferred) Familiarity with Power BI or other reporting tools Experience with Azure Landing Zones, Governance (Azure Policy, Blueprints), and Bicep/Terraform. Knowledge of modern authentication protocols (SAML, OAuth, OpenID Connect, Kerberos, NTLM). Familiarity with security tools such as Microsoft Defender for Identity, Sentinel, and Privileged Access Workstation (PAW). Experience with DevOps and automation: PowerShell, Lambda Remote Interview / Identification Notice **** Please be advised that during the interview, you will be required to keep your camera on, and your interviewer will be taking your picture for identification purposes if an offer letter is extended to you. If you're looking for comfort, keep scrolling.

Company Culture

At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 — and moving faster than anyone else dares.

Original Posting and Pay Range

Original Posting: September 11, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $131,300.00 - $237,350.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $17.2 billion for the fiscal year ended January 2, 2026. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and Benefits Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available here.

Securing Your Data

Leidos will never ask you to provide payment‑related information at any part of the employment application process. And Leidos will communicate with you only through emails that are sent from a Leidos.com email address. If you receive an email purporting to be from Leidos that asks for payment‑related information or any other personal information, please report the email to spam.leidos@leidos.com.

Commitment and Diversity

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior AD/ICAM Administrator
Senior AD/ICAM Administrator

Leidos Inc • Virginia (MN)

On-site
USD 131,000 - 237,000
Senior AD/ICAM Administrator
Senior AD/ICAM Administrator

Leidos • Virginia (MN)

On-site
USD 142,000 - 237,000
Senior ICAM Engineer
Senior ICAM Engineer

Leidos LLC • Fort Meade (MD)

On-site
USD 131,000 - 237,000
Lead Identity and Access Management (ICAM) Engineer
Lead Identity and Access Management (ICAM) Engineer

Leidos LLC • Rockville (MD)

On-site
USD 131,000 - 237,000
Health and Wellness programs
Paid Leave
Retirement benefits
Senior ICAM Federation and App Integration Engineer
Senior ICAM Federation and App Integration Engineer

Leidos LLC • Fort Meade (MD)

On-site
USD 131,000 - 237,000
Health and Wellness programs
Income Protection
Paid Leave
+1
Lead Identity and Access Management (ICAM) Engineer
Lead Identity and Access Management (ICAM) Engineer

Leidos Inc • Rockville (MD)

On-site
USD 131,000 - 237,000
Principal IAM-Zero Trust Solutions Architect
Principal IAM-Zero Trust Solutions Architect

Leidos LLC • Fort Meade (MD)

On-site
USD 154,000 - 278,000
Systems Engineer Expert
Systems Engineer Expert

Leidos LLC • Chantilly (VA)

On-site
USD 131,000 - 237,000
Mid/Sr. System Administrator TS/SCI Poly
Mid/Sr. System Administrator TS/SCI Poly

Leidos LLC • Maryland

On-site
USD 92,000 - 167,000
Paid Time Off
11 paid Holidays
401K with 6% company match
+5
Senior ICAM Identity Governance and Provisioning Engineer
Senior ICAM Identity Governance and Provisioning Engineer

Leidos LLC • Fort Meade (MD)

On-site
USD 131,000 - 237,000
Health and Wellness programs
Paid leave and retirement