Full-Time

Active Directory Architect

Posted on 10/3/2025

Deadline 10/31/25
Zensar

Zensar

No salary listed

India

In Person

Category
IT & Security (4)
, , ,
Required Skills
PowerShell
Requirements
  • Must have 8-16+ years’ experience in architecture, designing solutions, migrating on-prem Active Directory and any Identity Access solution, and cloud solutions.
  • Must have 10+ years of relevant experience.
  • Define IAM architecture, including identity lifecycle management, single sign-on (SSO), multi-factor authentication (MFA), and privileged access management (PAM)
  • Lead the implementation of IAM solutions, integrating with systems and applications, both on-premises and in the cloud
  • Configure IAM tools and platforms to meet functional requirements and security policies
  • Collaborate with development teams to ensure IAM capabilities are integrated into applications and services seamlessly
  • Establish IAM policies, procedures, and standards to enforce security best practices
  • Conduct risk assessments and audits to identify security vulnerabilities and compliance gaps
  • Ensure IAM solutions comply with relevant regulations such as GDPR, HIPAA, and PCI DSS
  • Design and automate processes for user provisioning, de-provisioning, and access recertification
  • Implement role-based access control (RBAC) and attribute-based access control (ABAC) mechanisms
  • Monitor user activity and enforce least privilege access principles
  • Collaborate with cross-functional teams, including IT operations, security, compliance, and business units
  • Provide technical leadership and mentorship to junior team members
  • Active Directory 2003/2008 R2/2012 Services design, sizing, migration and implementation for at least 6000 objects
  • Intra and Inter-Active Directory Forests Migration and Co-existence
  • Azure AD, Conditional Access and MFA/SSPR configuration.
  • Active Directory Consolidation
  • Must have designed and implemented File & Print and DFS environments
  • Must have executed File & Print migrations
  • Must have executed File Server to DFS migrations
  • Hands on experience in migrating large scale users, computers and member servers from various source Forest to target Forest
  • Knowledge on Azure - PaaS and IaaS
  • Knowledge of Access Management Solutions - Active Directory Federation Services (AD FS) to design the integration for Azure and Office 365
  • Active Directory Integration Capability with Identity Management Systems (MS FIM, MIM, etc.)
  • Windows platform upgrade
  • Design and implementation of Hyper V cluster and migration of work load
  • Working knowledge of Application migration and migration tools like AppZero
  • Application Assessment and compatibility test tools like Factfinder from Blue stripe and Change Base from Quest
  • Assess existing AD infrastructures and make recommendations for improving design and performance
  • Working experience on various migration tools such as ADMT, Quest/Binary Tree Tools, Data migration tools like Double take, Quest, Sharegate
  • Provision and Configure Azure AD and integrating with onprem AD
  • OneDrive Deployment using Share gate and metalogic
  • Previous experience of working on similar Active Directory Transformation projects, working on customer sites and liaising with client community
  • Create detailed design, migration/transition documentation based on the project requirements
  • Design and execute complex build and migration projects on other Wintel technologies like DNS, Hyper-V, KMS, WINS, DHCP, IPAM, PKI, RADIUS, File Services, Print Services, Direct Access and terminal services(RDS)
  • AD Replication, Authentication and Authorization, Group Policies, ADAM and AD LDS, AD Performance tuning, domain and forest migrations.
  • ODFB migration
  • Work to integrate other tools, platforms, and applications to realise robust solutions that tie into AD
  • Assist in developing and maintaining DR Plans for the AD environment.
  • Knowledge of migration processes with specific emphasis on resource migration on file, DFS, print & DHCP.
  • Third-party solutions on file and print solutions like Cerato, follow me printing, managed printing, secure printing, Ctera, Ricoh printing and Double-take
  • Knowledge of business applications integration with Active Directory through LDAP, SSO Providers, etc.
  • Collaborate with Project Managers, Delivery Managers & Solution Architects to translate requirements into technical specifications
  • Microsoft PowerShell scripting and tool-making skills to automate any of the above workload.
  • Experience in carrying the assessment of Active directory environment to achieve security, reliability, availability and operational efficiency
Responsibilities
  • Lead the design, build, deploy, and governance of IAM solutions across on-prem and cloud environments.
  • Design and implement identity and access solutions (IAM) including SSO, MFA, PAM, RBAC and ABAC.
  • Guide and support migration projects from on-prem to cloud and hybrid deployments.
  • Collaborate with cross-functional teams to understand business requirements and define technical specifications.
  • Develop and maintain IAM policies, standards, and procedures to enforce security best practices.
  • Conduct risk assessments and audits to identify security vulnerabilities and compliance gaps.
  • Ensure IAM solutions comply with GDPR, HIPAA, PCI DSS, and other regulations.
  • Define and automate processes for user provisioning, de-provisioning, and access recertification.
  • Design and implement monitoring and reporting for IAM activities and access events.
  • Provide technical leadership and mentorship to junior team members.
  • Review and validate high-level and low-level designs (HLD/LLD) and project documents.
  • Create time estimates and project plans for IAM initiatives.
  • Lead presales activities for on-prem, cloud and hybrid deployments.
  • Design IAM architecture, including identity lifecycle management, SSO, MFA, and PAM
  • Lead the implementation of IAM solutions, integrating with systems and applications, both on-premises and in the cloud
  • Configure IAM tools and platforms to meet functional requirements and security policies
  • Collaborate with development teams to ensure IAM capabilities are integrated into applications and services seamlessly
  • Establish IAM policies, procedures, and standards to enforce security best practices
  • Conduct risk assessments and audits to identify security vulnerabilities and compliance gaps
  • Ensure IAM solutions comply with relevant regulations such as GDPR, HIPAA, and PCI DSS
  • Design and automate processes for user provisioning, de-provisioning, and access recertification
  • Implement RBAC and ABAC mechanisms
  • Monitor user activity and enforce least privilege access principles
  • Collaborate with cross-functional teams, including IT operations, security, compliance, and business units
  • Provide technical leadership and mentorship to junior team members
Desired Qualifications
  • Experience in public cloud security
  • Experience with identity governance and administration (IGA)
  • Familiarity with zero trust architecture and security concepts
  • Certifications such as CISSP, CISM, or CCSP
  • Experience with DevOps practices in IAM
  • Knowledge of APIs and integration patterns with IAM platforms
  • Experience with SCIM and REST APIs for IAM
  • Experience with cloud identity providers (Azure AD, Okta) and on-prem AD integration
  • Experience with remote work and zero trust models
  • Experience with IAM in regulated industries (finance, healthcare)

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

INACTIVE