Senior Systems Engineer Active Directory and Entra ID
Insi · Remoto, BR
**Senior Systems Engineer – IAM / M\&A** ======================================== **Role Overview** ----------------- The Senior Systems Engineer will lead identity integration initiatives supporting M\&A projects, with a focus on: * Active Directory domain consolidations * Microsoft Entra ID tenant integrations * Hybrid identity environments * Identity migration and post\-migration stabilization The engineer will work within Insi's IAM Directory Services team, designing migration strategies, executing complex identity migrations, and ensuring stable, secure, and compliant environments. **Key Responsibilities** ------------------------ ### **Identity Integration \& Migration** * Execute Active Directory and Microsoft Entra ID integration activities supporting M\&A projects. * Develop and execute detailed migration plans, including AD object migrations using industry\-standard tools. * Design and implement AD domain consolidation and Entra ID tenant integration strategies. * Configure Entra ID services, including synchronization, authentication methods, Conditional Access, and hybrid identity integrations. * Support identity lifecycle management throughout migration projects. ### **PowerShell \& Automation** * Develop PowerShell automation for:Migration activitiesProvisioningReportingValidationOperational processes * Migration activities * Provisioning * Reporting * Validation * Operational processes * Use automation tools such as PowerShell DSC, Azure Automation, and Task Scheduler. ### **Subject Matter Expertise** * Provide technical guidance on identity architecture, domain consolidation, and tenant integration strategies. * Troubleshoot complex identity, authentication, synchronization, and directory service issues across on\-premises and cloud environments. * Perform Active Directory health assessments and implement best\-practice recommendations. * Advise IT and security teams on identity\-related compliance, governance, and risk mitigation. * Create and maintain technical documentation, migration runbooks, architecture diagrams, and operational procedures. ### **Infrastructure \& Operational Support** * Support DNS, Group Policy, PKI, Kerberos, and authentication\-related configurations during migrations. * Monitor identity services following deployment and implement continuous improvement actions. * Deliver post\-migration stabilization and knowledge transfer. * Provide ongoing operational support for identity environments. * Collaborate with cross\-functional teams to ensure integrations meet security and regulatory requirements. **Technical Environment** ------------------------- ### **Core Platforms** * Windows Server 2016/2019/2022 * Microsoft Entra ID (Azure AD) * Active Directory Domain Services (AD DS) * Azure AD Connect / Microsoft Entra Connect * PowerShell ### **Identity \& Security** * Identity Lifecycle Management * M\&A Domain Consolidation * Hybrid Identity Integration * Conditional Access * Multi\-Factor Authentication (MFA) * Identity Governance * Azure AD Identity Protection ### **Automation** * PowerShell DSC * Azure Automation * Task Scheduler **Required Qualifications** --------------------------- * 5\+ years of hands\-on experience with Microsoft Active Directory and Microsoft Entra ID. * Proven experience with M\&A integration projects, AD domain consolidations, or Entra ID tenant integrations. * Deep knowledge of:Active DirectoryGroup PolicyDNSKerberosPKI * Active Directory * Group Policy * DNS * Kerberos * PKI * Strong expertise in Entra Connect / Cloud Sync and hybrid identity architectures. * Strong understanding of Conditional Access, MFA, identity synchronization, and identity governance. * Advanced PowerShell scripting and automation skills. * Demonstrated ability to troubleshoot, monitor, and analyze event logs in complex identity environments. * Experience with SSO protocols such as SAML and OAuth. * Excellent written and verbal communication skills. * Ability to work independently in an enterprise environment. * Bachelor's degree in Computer Science, MIS, Information Technology, or a related field is preferred. **Nice to Have** ---------------- * Experience with Azure AD B2B/B2C and external identity collaboration. * Familiarity with Zero Trust security models. * Experience with Microsoft Defender for Identity. * Microsoft certifications such as:Microsoft Certified: Identity and Access AdministratorAzure Solutions Architect Expert * Microsoft Certified: Identity and Access Administrator * Azure Solutions Architect Expert * Knowledge of Infrastructure as Code (IaC) tools such as Terraform or ARM templates. * Exposure to containerized workloads and identity integration with Kubernetes.