Identity & Access Management Professional
We are looking for an Identity & Access Management (IAM) Professional with deep expertise in Microsoft Active Directory and cloud identity technologies to support and modernize enterprise identity infrastructure. This role will be responsible for designing, engineering, administering, and securing Active Directory environments while extending identity services into AWS and hybrid cloud platforms.
The ideal candidate combines hands-on engineering capabilities with architecture and strategy experience. This role will lead Active Directory modernization initiatives, develop cloud authentication patterns, strengthen security controls, and support enterprise IAM and Privileged Access Management (PAM) integrations. Success in this role requires strong technical leadership, operational excellence, and the ability to mentor team members while driving best practices across the organization.
Key Responsibilities:
· Design, engineer, administer, and secure Microsoft Active Directory forests, domains, trusts, organizational units (OUs), Group Policy Objects (GPOs), and domain controllers.
· Lead Active Directory modernization efforts across hybrid and cloud environments, including AWS integration initiatives.
· Design and implement authentication and authorization solutions leveraging LDAP, Kerberos, and hybrid identity architectures.
· Develop and maintain integration patterns between Active Directory, AWS Managed Microsoft AD, self-hosted AD environments, and enterprise applications.
· Partner with IAM and PAM teams to implement privileged access controls, delegated administration models, and security governance frameworks.
· Monitor, troubleshoot, and resolve Active Directory issues related to authentication, replication, DNS, domain controller health, and account lifecycle management.
· Support integrations between Active Directory and identity governance, access request, certification, authentication, and privileged access platforms.
· Contribute to cloud modernization efforts through Infrastructure as Code (IaC), automation, CI/CD practices, and DevOps methodologies.
· Develop operational standards, runbooks, architectural documentation, and technical procedures.
· Participate in incident response, audit activities, change management processes, and continuous improvement initiatives.
Qualifications:
Core Qualifications:
· 8+ years of hands-on experience administering and engineering Microsoft Active Directory in large-scale enterprise environments.
· Strong expertise with Active Directory forests, domains, trusts, domain controllers, OU management, and Group Policy administration.
· Proven experience designing, implementing, and securing enterprise Active Directory environments.
· Deep understanding of Active Directory security, delegation models, privileged group administration, and identity governance principles.
· Experience troubleshooting authentication, replication, DNS, domain controller, and access-related issues.
· Hands-on experience integrating Active Directory with AWS environments, including AWS Managed Microsoft AD and self-hosted AD solutions.
· Experience developing LDAP and Kerberos authentication solutions and enterprise integration patterns.
· Strong knowledge of hybrid identity architectures and Microsoft Entra ID integration.
· Experience supporting Active Directory within a broader IAM and PAM ecosystem.
· Experience working in global, multi-domain, and multi-region Active Directory environments.
· Ability to design architecture-level solutions while remaining actively involved in implementation and operational support.
· Strong communication, collaboration, documentation, and stakeholder management skills.
Preferred Qualifications:
· Experience establishing Active Directory domains and enterprise environments from the ground up.
· Experience leading enterprise identity modernization and cloud transformation initiatives.
· Knowledge of Infrastructure as Code (Terraform, CloudFormation, ARM, Bicep, or similar technologies).
· Experience implementing automation, scripting, and DevOps practices within identity management environments.
· Familiarity with CI/CD pipelines and automated infrastructure deployment.
· Experience integrating Active Directory with identity governance, access certification, and privileged access management solutions.
· Experience supporting enterprise cloud platforms and hybrid cloud identity services.
· Proven ability to mentor engineers, establish operational standards, and drive technical best practices.
· Relevant certifications such as Microsoft Certified: Identity and Access Administrator, AWS Certified Security Specialty, AWS Solutions Architect, or similar credentials.
Compensation
$66.00-$72.00 HourlyAbout Us
Technology Doesn't Change the World, People Do.®
Robert Half is the world’s first and largest specialized talent solutions firm that connects highly qualified job seekers to opportunities at great companies. We offer contract, temporary and permanent placement solutions for finance and accounting, technology, marketing and creative, legal, and administrative and customer support roles.
Robert Half works to put you in the best position to succeed. We provide access to top jobs, competitive compensation and benefits, and free online training. Stay on top of every opportunity - whenever you choose - even on the go. Download the Robert Half app and get 1-tap apply, notifications of AI-matched jobs, and much more.
All applicants applying for U.S. job openings must be legally authorized to work in the United States. Benefits are available to contract/temporary professionals, including medical, vision, dental, and life and disability insurance. Hired contract/temporary professionals are also eligible to enroll in our company 401(k) plan. Visit roberthalf.gobenefits.net for more information.
© 2025 Robert Half. An Equal Opportunity Employer. M/F/Disability/Veterans. By clicking “Apply Now,” you’re agreeing to Robert Half’s Terms of Use and Privacy Notice.
