Sr. Systems Engineer (Active Directory)
Berkley Technology Services - Manassas, VA
Hiring: Sr. Systems Engineer (Active Directory) Company: Berkley Technology Services Location: Manassas, VA Job Posted Time: 2026-09-10 13:35:18 Employment Type: Full-time / Hybrid Target Skills & Keywords : Auth0, Change Management, DNS, IAM, Okta, PKI, Project Management, RBAC, Root Cause Analysis, Windows Server, Zero Trust About the job Experience: •5 years of experience) •Minimum 5 years of experience) Required Skills: •The Sr. Systems Engineer (Active Directory) •Systems Planning and Implementation: Serve as the enterprise subject matter expert (SME) for Active Directory architectural designs, ensuring they align with business needs and security requirements. •AD Management: Develop, implement, and maintain the AD architecture, including forests, domains, organizational units (OUs), and Group Policies (GPOs). Perform advanced troubleshooting and root cause analysis for complex AD infrastructure issues, including replication, DNS, and authentication. •Scripting/Automation : Utilize DevOps and Platform Engineering principles to support the automation of administrative tasks across the Active Directory and Entra environment. Ensures critical AD roles and Entra Identity services have health monitoring and alerting. •Security Standards: Ensure the security of the AD environment by implementing best practices for authentication, authorization, and auditing. Perform periodic Domain Controller security hardening. •Documentation: Develop and maintain comprehensive documentation, including architectural designs, configuration standards, and standard operating procedures (SOPs). •Project and cross-matrix Leadership: Lead projects, working directly with Project Management, Account Management, and Customer teams. Collaborate and consult with other Berkley Technology Services teams, including security, networking, and application development to ensure seamless integration and operational efficiency. •Mentorship: Mentor and cross-train technical staff, peers, and subordinate team members in AD/ IAM technologies and best practices. Qualifications: •Extensive, hands-on experience in designing, implementing, and managing large, complex, multi-forest Active Directory environments •(Minimum 5 years of experience) •. Deep expertise in AD components such as DNS, DC, GPOs, Sites and Services, and trusts. •Proven experience implementing, configuring, and managing NDM (or similar products ) to provide a policy-based delegated AD administration and governance model within a least -privilege d security framework. •In-depth knowledge of Windows Server operating systems (2016, 2019, 2022, 2025) and their roles within an enterprise environment. •In-depth knowledge of AD security best practices, including privileged access management (PAM), role-based access control (RBAC), and security hardening techniques. Previous experience with server hardening within an AD environment is preferred. •Demonstrated capacity to integrate Active Directory with IAM solutions aligned with Zero Trust, identity governance, and adaptive authentication concepts . Previous experience with Okta/Auth0, Microsoft Entra ID, MFA , LDAPS preferred. •Excellent written and verbal communication skills, with the ability to document and convey complex technical concepts to both technical and non-technical audiences. Compensation: •$107,000 - $198,000 / year Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!